--------[ AIDA64 Extreme ]----------------------------------------------------------------------------------------------

                                                AIDA64 v4.70.3200/ru
                                        4.1.622-x64
                                      http://www.aida64.com/
                                              
                                             ACER
                                              
                                   Microsoft Windows 8 Professional with Media Center 6.2.9200.16581 (Win8 RTM)
                                                  2014-10-21
                                                 22:29


--------[   ]----------------------------------------------------------------------------------------

    :
                                           ACPI    x64  (Mobile)
                                     Microsoft Windows 8 Professional with Media Center
                                       -
      Internet Explorer                                 10.0.9200.16599 (IE 10.0.6)
      DirectX                                           DirectX 11.1
                                           ACER
                                          
                                              ACER
       /                                       2014-10-21 / 22:29

     :
                                                   Mobile DualCore Intel Core i5-2450M, 3100 MHz (31 x 100)
                                          Acer Aspire 5750G
                                    Intel Cougar Point HM65, Intel Sandy Bridge
                                         3947   (DDR3-1333 DDR3 SDRAM)
      DIMM1: Kingston HP594908-HR1-ELD                  2  DDR3-1333 DDR3 SDRAM  (9-9-9-24 @ 666 )  (8-8-8-22 @ 609 )  (7-7-7-20 @ 533 )  (6-6-6-17 @ 457 )
      DIMM3: SK Hynix HMT325S6CFR8C-H9                  2  DDR3-1333 DDR3 SDRAM  (9-9-9-24 @ 666 )  (8-8-8-22 @ 609 )  (7-7-7-20 @ 533 )  (6-6-6-17 @ 457 )  (5-5-5-14 @ 380 )
       BIOS                                          Insyde (12/30/2011)

    :
                                            Intel(R) HD Graphics 3000  (1890230 )
                                            Intel(R) HD Graphics 3000  (1890230 )
                                            NVIDIA GeForce GT 630M  (1 )
                                            NVIDIA GeForce GT 630M  (1 )
      3D-                                    Intel HD Graphics 3000
                                                 AU Optronics B156XW02 V6  [15.6" LCD]

    :
                                         Intel Cougar Point HDMI @ Intel Cougar Point PCH - High Definition Audio Controller [B-2]
                                         Realtek ALC269 @ Intel Cougar Point PCH - High Definition Audio Controller [B-2]

     :
       IDE                                    Intel(R) Mobile Express Chipset SATA AHCI Controller
                                   ()
                                      Hitachi HTS547575A9E384  (750 , 5400 RPM, SATA-II)
                                    PIONEER DVD-RW DVRTD11RS
      SMART-                         OK

    :
      C: (NTFS)                                         69899  (32754  )
      D: (NTFS)                                         630.3  (158.0  )
                                              698.5  (190.0  )

    :
                                                PS/2
                                                    ELAN PS/2 Port Smart-Pad
                                                    HID- 

    :
        IP                                169.254.74.180
        MAC                               64-16-F0-A1-C2-95
                                          Broadcom 802.11n Network Adapter
                                          WiMAX Network Adapter  (169.254.74.180)
                                          Wimax  (100.88.127.160)
                                            Wi-Fi Direct ()
                                            Broadcom NetLink (TM) Gigabit Ethernet

     :
                                                 Fax
                                                 Microsoft XPS Document Writer
                                                   OneNote 2013
       USB2                                   Intel Cougar Point PCH - USB EHCI #1 Controller [B-2]
       USB2                                   Intel Cougar Point PCH - USB EHCI #2 Controller [B-2]
      USB-                                    1.3M HD WebCam
      USB-                                    Generic USB Hub
      USB-                                    Generic USB Hub
      USB-                                    USB- 
      USB-                                    WiMAX Bus Driver
      USB-                                     USB 
                                                    ()
                                                   ACPI-  ()

    DMI:
      DMI  BIOS                                Acer
      DMI  BIOS                                   V1.17
      DMI                           Acer
      DMI                                        Aspire 5750G
      DMI                                V1.17
      DMI                         LXRXP0C00620519BD63400
      DMI  UUID                                6A78FC63-377011E1-89F4DC0E-A18FBCFF
      DMI                    Acer
      DMI                                 JE50_HR
      DMI                           Base Board Version
      DMI                    Base Board Serial Number
      DMI                             Acer
      DMI                                    V1.17
      DMI                             Chassis Serial Number
      DMI Asset-                                
      DMI                                       Notebook
      DMI  /                 4 / 2


--------[   ]----------------------------------------------------------------------------------------------

          
     NetBIOS                 ACER
      DNS               acer
      DNS              
      DNS              acer
     NetBIOS                 ACER
      DNS               acer
      DNS              
      DNS              acer


--------[ DMI ]---------------------------------------------------------------------------------------------------------

  [ BIOS ]

     BIOS:
                                           Acer
                                                  V1.17
                                             12/30/2011
                                                  2560 
       BIOS                                17.240
                                   Floppy Disk, Hard Disk, CD-ROM
                                             Flash BIOS, Shadow BIOS, Selectable Boot, EDD, BBS
                                 DMI, ACPI, UEFI
                                   PCI, USB
                                       

  [  ]

     :
                                           Acer
                                                 Aspire 5750G
                                                  V1.17
                                           LXRXP0C00620519BD63400
        ID                       6A78FC63-377011E1-89F4DC0E-A18FBCFF
                                           

  [   ]

      :
                                           Acer
                                                 JE50_HR
                                                  Base Board Version
                                           Base Board Serial Number
                                            Base Board Asset Tag

      :
                                                   Acer Inc.
                                     http://us.acer.com/ac/en/US/content/group/desktops
        BIOS                          http://us.acer.com/ac/en/US/content/drivers
                                     http://www.aida64.com/driver-updates
       BIOS                                 http://www.aida64.com/bios-updates

  [  ]

     :
                                           Acer
                                                  V1.17
                                           Chassis Serial Number
                                                Notebook
                                     
                               
                                  
                                   

  [   ]

      :
                                  
                                         
                              1-Way
                                1-Way
                           8192 
                                           2

  [  / Intel(R) Core(TM) i5-2450M CPU @ 2.50GHz ]

     :
                                           Intel(R) Corporation
                                                  Intel(R) Core(TM) i5-2450M CPU @ 2.50GHz
                                            FFFF
                                          1333 
                                     4000 
                                          2500 
                                                     Central Processor
                                                  
                                              1
      HTT / CMP                                         2 / 2
                                             64-bit

     :
                                                   Intel Corporation
                                     http://ark.intel.com/search.aspx?q=Intel Core i5-2450M
                                     http://www.aida64.com/driver-updates

  [ - / L1 Cache ]

     :
                                                     
                                                  
                                             Write-Through
                                         8-way Set-Associative
                                       32 
                                      32 
        SRAM                           Synchronous
        SRAM                                  Synchronous
                                         Single-bit ECC
                                               L1

  [ - / L1 Cache ]

     :
                                                     
                                                  
                                             Write-Through
                                         8-way Set-Associative
                                       32 
                                      32 
        SRAM                           Synchronous
        SRAM                                  Synchronous
                                         Single-bit ECC
                                               L1

  [ - / L2 Cache ]

     :
                                                     
                                                  
                                             Write-Through
                                         8-way Set-Associative
                                       256 
                                      256 
        SRAM                           Synchronous
        SRAM                                  Synchronous
                                         Single-bit ECC
                                               L2

  [ - / L3 Cache ]

     :
                                                     
                                                  
                                             Write-Through
                                         12-way Set-Associative
                                       3072 
                                      3072 
        SRAM                           Synchronous
        SRAM                                  Synchronous
                                         Single-bit ECC
                                               L3

  [   / System Memory ]

      :
                                               
                                     
                                         
      .                                  16 
                                        2

  [   / ChannelA-DIMM0 ]

      :
                                              ChannelA-DIMM0
                                                     DIMM
                                      2048 
                                         2048 

  [   / ChannelA-DIMM1 ]

      :
                                              ChannelA-DIMM1
                                                     DIMM
                                       
                                          

  [   / ChannelB-DIMM0 ]

      :
                                              ChannelB-DIMM0
                                                     DIMM
                                      2048 
                                         2048 

  [   / ChannelB-DIMM1 ]

      :
                                              ChannelB-DIMM1
                                                     DIMM
                                       
                                          

  [   / ChannelA-DIMM0 ]

      :
      -                                       SODIMM
                                                     DDR3
                                                     Synchronous
                                                  2 
      .                                      1333 
                                          1333 
                                             64 
                                            64 
                                              ChannelA-DIMM0
                                                    BANK 0
                                           Kinston
                                           921F502F
                                            0123456789
                                          HP594908-HR1-ELD

  [   / ChannelA-DIMM1 ]

      :
      -                                       DIMM
                                              ChannelA-DIMM1
                                                    BANK 1
                                            0123456789

  [   / ChannelB-DIMM0 ]

      :
      -                                       SODIMM
                                                     DDR3
                                                     Synchronous
                                                  2 
      .                                      1333 
                                          1333 
                                             64 
                                            64 
                                              ChannelB-DIMM0
                                                    BANK 2
                                           309F6CD8
                                            0123456789
                                          HMT325S6CFR8C-H9

  [   / ChannelB-DIMM1 ]

      :
      -                                       DIMM
                                              ChannelB-DIMM1
                                                    BANK 3
                                            0123456789

  [   / J5C1 ]

      :
                                       J5C1
                                                     PCI-E x16
                                           
                                        x16
                                                   

  [   / J6C1 ]

      :
                                       J6C1
                                                     PCI-E x4
                                           
                                        x4
                                                   

  [   / J6C2 ]

      :
                                       J6C2
                                                     PCI-E x1
                                           
                                        x1
                                                   

  [   / J6D2 ]

      :
                                       J6D2
                                                     PCI-E x1
                                           
                                        x1
                                                   

  [   / J7C1 ]

      :
                                       J7C1
                                                     PCI-E x1
                                           
                                        x1
                                                   

  [   / J7D2 ]

      :
                                       J7D2
                                                     PCI-E x1
                                           
                                        x1
                                                   

  [   / J8C2 ]

      :
                                       J8C2
                                                     PCI-E x16
                                           
                                        x16
                                                   

  [   / Touch Pad ]

     :
                                           Touch Pad
                                               PS/2
                                             4

  [   / Intel Video Graphics Controller ]

      :
                                                Intel Video Graphics Controller
                                                     Video
                                                  

  [   / Broadcom Lan Controller ]

      :
                                                Broadcom Lan Controller
                                                     Ethernet
                                                  

  [   / Hanksville Gbe Lan Connection ]

      :
                                                Hanksville Gbe Lan Connection
                                                     Ethernet
                                                  
       /  /                        0 / 0 / 1

  [   / OEM_Define1 ]

      :
                                           OEM_Define1
                                           OEM_Define2
                                           OEM_Define3
                                            OEM_Define4
                                          OEM_Define5
                                                     Regulator
                                              OEM_Define0
                                                  OK
                                           

  [  / CRB Battery 0 ]

     :
                                           CRB Battery 0
                                           -Virtual Battery 0-
                                             10/12/2007
                                           Battery 0
                                              Fake
                                              Li-Ion

  [   / Voltage Probe Description. ]

     :
                                      Voltage Probe Description.

  [ Cooling Device / Cooling Device Description. ]

     :
                                      Cooling Device Description.
                                           Fan
                                                  OK
      Nominal Speed                                     2000 RPM

  [ Intel AMT ]

     Intel AMT:
      Intel AMT                                         , 
      IDE Redirection                                   
      SOL                                               
        AMT                             

  [  ]

    :
      OEM String                                        String1 for Original Equipment Manufacturer
      OEM String                                        String2 for Original Equipment Manufacturer
      OEM String                                        String3 for Original Equipment Manufacturer
      OEM String                                        String4 for Original Equipment Manufacturer
      OEM String                                        String5 for Original Equipment Manufacturer
      System Configuration Option                       String1 for Type12 Equipment Manufacturer


--------[  ]------------------------------------------------------------------------------------------------------

     :
                                                   Mobile DualCore Intel Core i5-2450M
                                             Sandy Bridge-MB
                                              D2
      Engineering Sample                                
        CPUID                                      Intel(R) Core(TM) i5-2450M CPU @ 2.50GHz
       CPUID                                      000206A7h
      CPU VID                                           0.8005 V

     :
                                               798.3 MHz  (: 2500 MHz)
                                             8x
      CPU FSB                                           99.8 MHz  (: 100 MHz)
                                   798.3 MHz
                                              665.3 MHz
       DRAM:FSB                              20:3

     :
       L1                                        32  per core
       L1                                      32  per core
       L2                                            256  per core  (On-Die, ECC, Full-Speed)
       L3                                            3   (On-Die, ECC, Full-Speed)

      :
      ID                                  <DMI>
                                          Acer Aspire 5750G

       ():
                                    Intel Cougar Point HM65, Intel Sandy Bridge
                                          9-9-9-24  (CL-RCD-RP-RAS)
      Command Rate (CR)                                 1T
      DIMM1: Kingston HP594908-HR1-ELD                  2  DDR3-1333 DDR3 SDRAM  (9-9-9-24 @ 666 )  (8-8-8-22 @ 609 )  (7-7-7-20 @ 533 )  (6-6-6-17 @ 457 )
      DIMM3: SK Hynix HMT325S6CFR8C-H9                  2  DDR3-1333 DDR3 SDRAM  (9-9-9-24 @ 666 )  (8-8-8-22 @ 609 )  (7-7-7-20 @ 533 )  (6-6-6-17 @ 457 )  (5-5-5-14 @ 380 )

     BIOS:
       BIOS                                  12/30/2011
       BIOS                            06/16/11
      DMI  BIOS                                   V1.17

      :
                                            Intel Sandy Bridge-MB - Integrated Graphics Controller (MB GT2 1.3GHz+)
                                       Sandy Bridge-MB GT2  (Integrated 8086 / 0126, Rev 09)
                                               649   (original: 649 MHz)


--------[  ]----------------------------------------------------------------------------------------------

     :
                                  
                                        100 % ( )
                              
                          

     :
                                           Li_Ion_4000mA
                                           SANYO
                                           E8DD
                                           E8DDSANYO Li_Ion_4000mA
                                               Li-Ion
                                       47520 mWh
                                 26665 mWh
                                          26665 mWh  (100 %)
                                       12.519 V
                                     43 %
                                               


--------[   ]----------------------------------------------------------------------------------------------

    Centrino (Carmel)  :
      : Intel Pentium M (Banias/Dothan)                 (Mobile Intel Core i5-2450M)
      : Intel i855GM/PM                             (Intel Cougar Point HM65, Intel Sandy Bridge)
      WLAN: Intel PRO/Wireless                          
      : Centrino-                     

    Centrino (Sonoma)  :
      : Intel Pentium M (Dothan)                        (Mobile Intel Core i5-2450M)
      : Intel i915GM/PM                             (Intel Cougar Point HM65, Intel Sandy Bridge)
      WLAN: Intel PRO/Wireless 2200/2915                
      : Centrino-                     

    Centrino (Napa)  :
      : Intel Core (Yonah) / Core 2 (Merom)             (Mobile Intel Core i5-2450M)
      : Intel i945GM/PM                             (Intel Cougar Point HM65, Intel Sandy Bridge)
      WLAN: Intel PRO/Wireless 3945/3965                
      : Centrino-                     

    Centrino (Santa Rosa)  :
      : Intel Core 2 (Merom/Penryn)                     (Mobile Intel Core i5-2450M)
      : Intel GM965/PM965                           (Intel Cougar Point HM65, Intel Sandy Bridge)
      WLAN: Intel Wireless WiFi Link 4965               
      : Centrino-                     

    Centrino 2 (Montevina)  :
      : Intel Core 2 (Penryn)                           (Mobile Intel Core i5-2450M)
      : Mobile Intel 4 Series                       (Intel Cougar Point HM65, Intel Sandy Bridge)
      WLAN: Intel WiFi Link 5000 Series                 
      : Centrino 2-                   

    Centrino (Calpella)  :
      : Intel Core i3/i5/i7 (Arrandale/Clarksfield)     (Mobile Intel Core i5-2450M)
      : Mobile Intel 5 Series                       (Intel Cougar Point HM65, Intel Sandy Bridge)
      WLAN: Intel Centrino Advanced-N / Ultimate-N / Wireless-N
      : Centrino-                     

    Centrino (Huron River)  :
      : Intel Core i3/i5/i7 (Sandy Bridge-MB)           (Mobile Intel Core i5-2450M)
      : Mobile Intel 6 Series                       (Intel Cougar Point HM65, Intel Sandy Bridge)
      WLAN: Intel Centrino Advanced-N / Ultimate-N / Wireless-N
      : Centrino-                     

    Centrino (Chief River)  :
      : Intel Core i3/i5/i7 (Ivy Bridge-MB)             (Mobile Intel Core i5-2450M)
      : Mobile Intel 7 Series                       (Intel Cougar Point HM65, Intel Sandy Bridge)
      WLAN: Intel Centrino Advanced-N / Ultimate-N / Wireless-N
      : Centrino-                     

    Centrino (Shark Bay-MB)  :
      : Intel Core i3/i5/i7 (Haswell-MB)                (Mobile Intel Core i5-2450M)
      : Mobile Intel 8/9 Series                     (Intel Cougar Point HM65, Intel Sandy Bridge)
      WLAN: Intel Centrino Advanced-N / Ultimate-N / Wireless-N
      : Centrino-                     


--------[  ]-----------------------------------------------------------------------------------------------------

     :
                                              CPU, HDD, PCH, SNB

    :
      CPU Package                                       48 C  (118 F)
      CPU IA Cores                                      48 C  (118 F)
      CPU GT Cores                                      48 C  (118 F)
       1 /  1                                     48 C  (118 F)
       1 /  2                                     47 C  (117 F)
       PCH                                          60 C  (140 F)
      Hitachi HTS547575A9E384                           32 C  (90 F)

    :
                                                  0.966 V
                                                 12.519 V

     :
      CPU Package                                       8.38 W
      CPU IA Cores                                      4.40 W
      CPU GT Cores                                      0.08 W
      CPU Uncore                                        3.90 W
                                  


--------[  ]----------------------------------------------------------------------------------------------------------

     :
                                                   Mobile DualCore Intel Core i5-2450M, 3100 MHz (31 x 100)
                                             Sandy Bridge-MB
                                              D2
                                        x86, x86-64, MMX, SSE, SSE2, SSE3, SSSE3, SSE4.1, SSE4.2, AVX, AES
                                         2500 
      ./.                             8x / 25x
      Engineering Sample                                
       L1                                        32  per core
       L1                                      32  per core
       L2                                            256  per core  (On-Die, ECC, Full-Speed)
       L3                                            3   (On-Die, ECC, Full-Speed)

       :
                                              988 Pin rPGA
                                          37.5 mm x 37.5 mm
                                       624 .
                                  32 nm, CMOS, Cu, High-K + Metal Gate
                                         149 mm2
                                        35 W

     :
                                                   Intel Corporation
                                     http://ark.intel.com/search.aspx?q=Intel Core i5-2450M
                                     http://www.aida64.com/driver-updates

    Multi CPU:
      CPU #1                                            Intel(R) Core(TM) i5-2450M CPU @ 2.50GHz, 2494 
      CPU #2                                            Intel(R) Core(TM) i5-2450M CPU @ 2.50GHz, 2494 
      CPU #3                                            Intel(R) Core(TM) i5-2450M CPU @ 2.50GHz, 2494 
      CPU #4                                            Intel(R) Core(TM) i5-2450M CPU @ 2.50GHz, 2494 

     :
       1 /  1 / HTT 1                             0%
       1 /  1 / HTT 2                             0%
       1 /  2 / HTT 1                             0%
       1 /  2 / HTT 2                             0%


--------[ CPUID ]-------------------------------------------------------------------------------------------------------

     CPUID:
       CPUID                               GenuineIntel
        CPUID                                      Intel(R) Core(TM) i5-2450M CPU @ 2.50GHz
       CPUID                                      000206A7h
        IA                            00h  ()
                                  29h / MC 10h  (rPGA988B)
                               28h
      HTT / CMP                                         2 / 2
       Tjmax                                 100 C  (212 F)
      CPU Thermal Design Power                          35 W
      CPU IA Cores Thermal Design Current               97.5 A
      CPU GT Cores Thermal Design Current               32.5 A
      CPU Max Power Limit                               56 W / 64.00 sec
      CPU Power Limit 1 (Long Duration)                 35 W / 28.00 sec  (Locked)
      CPU Power Limit 2 (Short Duration)                43.8 W / Unlimited Time  (Locked)
      Max Turbo Boost Multipliers                       1C: 31x, 2C: 29x

     :
      64- x86- (AMD64, Intel64)            
      AMD 3DNow!                                         
      AMD 3DNow! Professional                            
      AMD 3DNowPrefetch                                  
      AMD Enhanced 3DNow!                                
      AMD Extended MMX                                   
      AMD FMA4                                           
      AMD MisAligned SSE                                 
      AMD SSE4A                                          
      AMD XOP                                            
      Cyrix Extended MMX                                 
      Enhanced REP MOVSB/STOSB                           
      Float-16 Conversion Instructions                   
      IA-64                                              
      IA AES Extensions                                 
      IA AVX                                            , 
      IA AVX2                                            
      IA AVX-512 (AVX512F)                               
      IA AVX-512 52-bit Integer Instructions (AVX512IFMA52) 
      IA AVX-512 Byte and Word Instructions (AVX512BW)   
      IA AVX-512 Conflict Detection Instructions (AVX512CD) 
      IA AVX-512 Doubleword and Quadword Instructions (AVX512DQ) 
      IA AVX-512 Exponential and Reciprocal Instructions (AVX512ER) 
      IA AVX-512 Prefetch Instructions (AVX512PF)        
      IA AVX-512 Vector Bit Manipulation Instructions (AVX512VBMI) 
      IA AVX-512 Vector Length Extensions (AVX512VL)     
      IA BMI1                                            
      IA BMI2                                            
      IA FMA                                             
      IA MMX                                            
      IA SHA Extensions                                  
      IA SSE                                            
      IA SSE2                                           
      IA SSE3                                           
      IA Supplemental SSE3                              
      IA SSE4.1                                         
      IA SSE4.2                                         
      VIA Alternate Instruction Set                      
       ADCX / ADOX                             
       CLFLUSH                                
       CLFLUSHOPT                              
       CMPXCHG8B                              
       CMPXCHG16B                             
       Conditional Move                       
       INVPCID                                 
       LAHF / SAHF                            
       LZCNT                                   
       MONITOR / MWAIT                        
       MONITORX / MWAITX                       
       MOVBE                                   
       PCLMULQDQ                              
       POPCNT                                 
       PREFETCHWT1                             
       RDFSBASE / RDGSBASE / WRFSBASE / WRGSBASE 
       RDRAND                                  
       RDSEED                                  
       RDTSCP                                 
       SKINIT / STGI                           
       SYSCALL / SYSRET                        
       SYSENTER / SYSEXIT                     
      Trailing Bit Manipulation Instructions             
       VIA FEMMS                               

     :
      Advanced Cryptography Engine (ACE)                 
      Advanced Cryptography Engine 2 (ACE2)              
         (DEP, NX, EDB)           
      Hardware Random Number Generator (RNG)             
      Hardware Random Number Generator 2 (RNG2)          
      Memory Protection Extensions (MPX)                 
      PadLock Hash Engine (PHE)                          
      PadLock Hash Engine 2 (PHE2)                       
      PadLock Montgomery Multiplier (PMM)                
      PadLock Montgomery Multiplier 2 (PMM2)             
         (PSN)                    
      Safer Mode Extensions (SMX)                        
      Software Guard Extensions (SGX)                    
      Supervisor Mode Access Prevention (SMAP)           
      Supervisor Mode Execution Protection (SMEP)        

     :
      Application Power Management (APM)                 
      Automatic Clock Control                           
      Core C6 State (CC6)                                
      Digital Thermometer                               
      Dynamic FSB Frequency Switching                    
      Enhanced Halt State (C1E)                         , 
      Enhanced SpeedStep Technology (EIST, ESS)         , 
      Frequency ID Control                               
      Hardware P-State Control                           
      Hardware Thermal Control (HTC)                     
      LongRun                                            
      LongRun Table Interface                            
      Overstress                                         
      Package C6 State (PC6)                             
      Parallax                                           
      PowerSaver 1.0                                     
      PowerSaver 2.0                                     
      PowerSaver 3.0                                     
      Processor Duty Cycle Control                      
      Software Thermal Control                           
                                                
      Thermal Monitor 1                                 
      Thermal Monitor 2                                 
      Thermal Monitor 3                                  
      Thermal Monitoring                                 
      Thermal Trip                                       
      Voltage ID Control                                 

     :
      Extended Page Table (EPT)                         
      Hypervisor                                        
       INVEPT                                 
       INVVPID                                
      Nested Paging (NPT, RVI)                           
      Secure Virtual Machine (SVM, Pacifica)             
      Virtual Machine Extensions (VMX, Vanderpool)      
      Virtual Processor ID (VPID)                       

     CPUID:
      1 GB Page Size                                     
      36-bit Page Size Extension                        
      64-bit DS Area                                    
      Adaptive Overclocking                              
      Address Region Registers (ARR)                     
      Configurable TDP (cTDP)                            
      Core Performance Boost (CPB)                       
      Core Performance Counters                          
      CPL Qualified Debug Store                         
      Data Breakpoint Extension                          
      Debug Trace Store                                 
      Debugging Extension                               
      Deprecated FPU CS and FPU DS                       
      Direct Cache Access                                
      Dynamic Acceleration Technology (IDA)              
      Dynamic Configurable TDP (DcTDP)                   
      Extended APIC Register Space                       
      Fast Save & Restore                               
      Hardware Lock Elision (HLE)                        
      Hybrid Boost                                       
      Hyper-Threading Technology (HTT)                  , 
      Instruction Based Sampling                         
      Invariant Time Stamp Counter                      
      L1 Context ID                                      
      L2I Performance Counters                           
      Lightweight Profiling                              
      Local APIC On Chip                                
      Machine Check Architecture (MCA)                  
      Machine Check Exception (MCE)                     
      Memory Configuration Registers (MCR)               
      Memory Type Range Registers (MTRR)                
      Model Specific Registers (MSR)                    
      NB Performance Counters                            
      Page Attribute Table (PAT)                        
      Page Global Extension                             
      Page Size Extension (PSE)                         
      Pending Break Event (PBE)                         
      Performance Time Stamp Counter (PTSC)              
      Physical Address Extension (PAE)                  
      Platform Quality of Service Enforcement (PQE)      
      Platform Quality of Service Monitoring (PQM)       
      Process Context Identifiers (PCID)                
      Processor Feedback Interface                       
      Processor Trace (PT)                               
      Restricted Transactional Memory (RTM)              
      Self-Snoop                                        
      Time Stamp Counter (TSC)                          
      Turbo Boost                                       , 
      Virtual Mode Extension                            
      Watchdog Timer                                     
      x2APIC                                            , 
      XGETBV / XSETBV OS Enabled                        
      XSAVE / XRSTOR / XSETBV / XGETBV Extended States  
      XSAVEOPT                                          

    CPUID Registers (CPU #1):
      CPUID 00000000                                    0000000D-756E6547-6C65746E-49656E69 [GenuineIntel]
      CPUID 00000001                                    000206A7-00100800-1FBAE3BF-BFEBFBFF
      CPUID 00000002                                    76035A01-00F0B2FF-00000000-00CA0000
      CPUID 00000003                                    00000000-00000000-00000000-00000000
      CPUID 00000004                                    1C004121-01C0003F-0000003F-00000000 [SL 00]
      CPUID 00000004                                    1C004122-01C0003F-0000003F-00000000 [SL 01]
      CPUID 00000004                                    1C004143-01C0003F-000001FF-00000000 [SL 02]
      CPUID 00000004                                    1C03C163-02C0003F-00000FFF-00000006 [SL 03]
      CPUID 00000005                                    00000040-00000040-00000003-00021120
      CPUID 00000006                                    00000077-00000002-00000009-00000000
      CPUID 00000007                                    00000000-00000000-00000000-00000000
      CPUID 00000008                                    00000000-00000000-00000000-00000000
      CPUID 00000009                                    00000000-00000000-00000000-00000000
      CPUID 0000000A                                    07300403-00000000-00000000-00000603
      CPUID 0000000B                                    00000001-00000002-00000100-00000000 [SL 00]
      CPUID 0000000B                                    00000004-00000004-00000201-00000000 [SL 01]
      CPUID 0000000C                                    00000000-00000000-00000000-00000000
      CPUID 0000000D                                    00000007-00000340-00000340-00000000 [SL 00]
      CPUID 0000000D                                    00000001-00000000-00000000-00000000 [SL 01]
      CPUID 0000000D                                    00000100-00000240-00000000-00000000 [SL 02]
      CPUID 80000000                                    80000008-00000000-00000000-00000000
      CPUID 80000001                                    00000000-00000000-00000001-28100000
      CPUID 80000002                                    20202020-49202020-6C65746E-20295228 [       Intel(R) ]
      CPUID 80000003                                    65726F43-294D5428-2D356920-30353432 [Core(TM) i5-2450]
      CPUID 80000004                                    5043204D-20402055-30352E32-007A4847 [M CPU @ 2.50GHz]
      CPUID 80000005                                    00000000-00000000-00000000-00000000
      CPUID 80000006                                    00000000-00000000-01006040-00000000
      CPUID 80000007                                    00000000-00000000-00000000-00000100
      CPUID 80000008                                    00003024-00000000-00000000-00000000

    CPUID Registers (CPU #2 Virtual):
      CPUID 00000000                                    0000000D-756E6547-6C65746E-49656E69 [GenuineIntel]
      CPUID 00000001                                    000206A7-01100800-1FBAE3BF-BFEBFBFF
      CPUID 00000002                                    76035A01-00F0B2FF-00000000-00CA0000
      CPUID 00000003                                    00000000-00000000-00000000-00000000
      CPUID 00000004                                    1C004121-01C0003F-0000003F-00000000 [SL 00]
      CPUID 00000004                                    1C004122-01C0003F-0000003F-00000000 [SL 01]
      CPUID 00000004                                    1C004143-01C0003F-000001FF-00000000 [SL 02]
      CPUID 00000004                                    1C03C163-02C0003F-00000FFF-00000006 [SL 03]
      CPUID 00000005                                    00000040-00000040-00000003-00021120
      CPUID 00000006                                    00000077-00000002-00000009-00000000
      CPUID 00000007                                    00000000-00000000-00000000-00000000
      CPUID 00000008                                    00000000-00000000-00000000-00000000
      CPUID 00000009                                    00000000-00000000-00000000-00000000
      CPUID 0000000A                                    07300403-00000000-00000000-00000603
      CPUID 0000000B                                    00000001-00000002-00000100-00000001 [SL 00]
      CPUID 0000000B                                    00000004-00000004-00000201-00000001 [SL 01]
      CPUID 0000000C                                    00000000-00000000-00000000-00000000
      CPUID 0000000D                                    00000007-00000340-00000340-00000000 [SL 00]
      CPUID 0000000D                                    00000001-00000000-00000000-00000000 [SL 01]
      CPUID 0000000D                                    00000100-00000240-00000000-00000000 [SL 02]
      CPUID 80000000                                    80000008-00000000-00000000-00000000
      CPUID 80000001                                    00000000-00000000-00000001-28100000
      CPUID 80000002                                    20202020-49202020-6C65746E-20295228 [       Intel(R) ]
      CPUID 80000003                                    65726F43-294D5428-2D356920-30353432 [Core(TM) i5-2450]
      CPUID 80000004                                    5043204D-20402055-30352E32-007A4847 [M CPU @ 2.50GHz]
      CPUID 80000005                                    00000000-00000000-00000000-00000000
      CPUID 80000006                                    00000000-00000000-01006040-00000000
      CPUID 80000007                                    00000000-00000000-00000000-00000100
      CPUID 80000008                                    00003024-00000000-00000000-00000000

    CPUID Registers (CPU #3):
      CPUID 00000000                                    0000000D-756E6547-6C65746E-49656E69 [GenuineIntel]
      CPUID 00000001                                    000206A7-02100800-1FBAE3BF-BFEBFBFF
      CPUID 00000002                                    76035A01-00F0B2FF-00000000-00CA0000
      CPUID 00000003                                    00000000-00000000-00000000-00000000
      CPUID 00000004                                    1C004121-01C0003F-0000003F-00000000 [SL 00]
      CPUID 00000004                                    1C004122-01C0003F-0000003F-00000000 [SL 01]
      CPUID 00000004                                    1C004143-01C0003F-000001FF-00000000 [SL 02]
      CPUID 00000004                                    1C03C163-02C0003F-00000FFF-00000006 [SL 03]
      CPUID 00000005                                    00000040-00000040-00000003-00021120
      CPUID 00000006                                    00000077-00000002-00000009-00000000
      CPUID 00000007                                    00000000-00000000-00000000-00000000
      CPUID 00000008                                    00000000-00000000-00000000-00000000
      CPUID 00000009                                    00000000-00000000-00000000-00000000
      CPUID 0000000A                                    07300403-00000000-00000000-00000603
      CPUID 0000000B                                    00000001-00000002-00000100-00000002 [SL 00]
      CPUID 0000000B                                    00000004-00000004-00000201-00000002 [SL 01]
      CPUID 0000000C                                    00000000-00000000-00000000-00000000
      CPUID 0000000D                                    00000007-00000340-00000340-00000000 [SL 00]
      CPUID 0000000D                                    00000001-00000000-00000000-00000000 [SL 01]
      CPUID 0000000D                                    00000100-00000240-00000000-00000000 [SL 02]
      CPUID 80000000                                    80000008-00000000-00000000-00000000
      CPUID 80000001                                    00000000-00000000-00000001-28100000
      CPUID 80000002                                    20202020-49202020-6C65746E-20295228 [       Intel(R) ]
      CPUID 80000003                                    65726F43-294D5428-2D356920-30353432 [Core(TM) i5-2450]
      CPUID 80000004                                    5043204D-20402055-30352E32-007A4847 [M CPU @ 2.50GHz]
      CPUID 80000005                                    00000000-00000000-00000000-00000000
      CPUID 80000006                                    00000000-00000000-01006040-00000000
      CPUID 80000007                                    00000000-00000000-00000000-00000100
      CPUID 80000008                                    00003024-00000000-00000000-00000000

    CPUID Registers (CPU #4 Virtual):
      CPUID 00000000                                    0000000D-756E6547-6C65746E-49656E69 [GenuineIntel]
      CPUID 00000001                                    000206A7-03100800-1FBAE3BF-BFEBFBFF
      CPUID 00000002                                    76035A01-00F0B2FF-00000000-00CA0000
      CPUID 00000003                                    00000000-00000000-00000000-00000000
      CPUID 00000004                                    1C004121-01C0003F-0000003F-00000000 [SL 00]
      CPUID 00000004                                    1C004122-01C0003F-0000003F-00000000 [SL 01]
      CPUID 00000004                                    1C004143-01C0003F-000001FF-00000000 [SL 02]
      CPUID 00000004                                    1C03C163-02C0003F-00000FFF-00000006 [SL 03]
      CPUID 00000005                                    00000040-00000040-00000003-00021120
      CPUID 00000006                                    00000077-00000002-00000009-00000000
      CPUID 00000007                                    00000000-00000000-00000000-00000000
      CPUID 00000008                                    00000000-00000000-00000000-00000000
      CPUID 00000009                                    00000000-00000000-00000000-00000000
      CPUID 0000000A                                    07300403-00000000-00000000-00000603
      CPUID 0000000B                                    00000001-00000002-00000100-00000003 [SL 00]
      CPUID 0000000B                                    00000004-00000004-00000201-00000003 [SL 01]
      CPUID 0000000C                                    00000000-00000000-00000000-00000000
      CPUID 0000000D                                    00000007-00000340-00000340-00000000 [SL 00]
      CPUID 0000000D                                    00000001-00000000-00000000-00000000 [SL 01]
      CPUID 0000000D                                    00000100-00000240-00000000-00000000 [SL 02]
      CPUID 80000000                                    80000008-00000000-00000000-00000000
      CPUID 80000001                                    00000000-00000000-00000001-28100000
      CPUID 80000002                                    20202020-49202020-6C65746E-20295228 [       Intel(R) ]
      CPUID 80000003                                    65726F43-294D5428-2D356920-30353432 [Core(TM) i5-2450]
      CPUID 80000004                                    5043204D-20402055-30352E32-007A4847 [M CPU @ 2.50GHz]
      CPUID 80000005                                    00000000-00000000-00000000-00000000
      CPUID 80000006                                    00000000-00000000-01006040-00000000
      CPUID 80000007                                    00000000-00000000-00000000-00000100
      CPUID 80000008                                    00003024-00000000-00000000-00000000

    MSR Registers:
      MSR 00000017                                      0010-0000-0000-0000 [PlatID = 4]
      MSR 0000001B                                      0000-0000-FEE0-0900
      MSR 00000035                                      0000-0000-0002-0004
      MSR 0000008B                                      0000-0028-0000-0000
      MSR 000000CE                                      0000-0800-6001-1900
      MSR 000000E7                                      0000-0000-01D6-2E0D
      MSR 000000E8                                      0000-0000-023E-31BB
      MSR 00000194                                      0000-0000-0001-FF00
      MSR 00000198                                      0000-2712-0000-1F00
      MSR 00000199                                      0000-0000-0000-1F00
      MSR 0000019A                                      0000-0000-0000-0008
      MSR 0000019B                                      0000-0000-0000-0000
      MSR 0000019C                                      0000-0000-882C-0000
      MSR 0000019D                                      0000-0000-0000-0000
      MSR 000001A0                                      0000-0000-0085-0089
      MSR 000001A2                                      0000-0000-0064-0E00
      MSR 000001A4                                      0000-0000-0000-0000
      MSR 000001AA                                      0000-0000-0040-0000
      MSR 000001AC                                      < FAILED >
      MSR 000001AD                                      0000-0000-1D1D-1D1F
      MSR 000001B0                                      0000-0000-0000-0006
      MSR 000001B1                                      0000-0000-882C-0000
      MSR 000001B2                                      0000-0000-0000-0000
      MSR 000001FC                                      0000-0000-0004-005F
      MSR 00000300                                      < FAILED >
      MSR 00000480                                      00DA-0400-0000-0010
      MSR 00000481                                      0000-007F-0000-0016
      MSR 00000482                                      FFF9-FFFE-0401-E172
      MSR 00000483                                      007F-FFFF-0003-6DFF
      MSR 00000484                                      0000-FFFF-0000-11FF
      MSR 00000485                                      0000-0000-1004-01E5
      MSR 00000486                                      0000-0000-8000-0021
      MSR 00000487                                      0000-0000-FFFF-FFFF
      MSR 00000488                                      0000-0000-0000-2000
      MSR 00000489                                      0000-0000-0006-27FF
      MSR 0000048A                                      0000-0000-0000-002A
      MSR 0000048B                                      0000-00FF-0000-0000
      MSR 0000048C                                      0000-0F01-0611-4141
      MSR 0000048D                                      0000-007F-0000-0016
      MSR 0000048E                                      FFF9-FFFE-0400-6172
      MSR 0000048F                                      007F-FFFF-0003-6DFB
      MSR 00000490                                      0000-FFFF-0000-11FB
      MSR 00000601                                      1814-1494-8000-030C
      MSR 00000602                                      1814-1494-8000-0104
      MSR 00000603                                      0000-0000-8030-3030
      MSR 00000604                                      0000-0000-8064-6464
      MSR 00000606                                      0000-0000-000A-1003
      MSR 0000060A                                      0000-0000-0000-8850
      MSR 0000060B                                      0000-0000-0000-8868
      MSR 0000060C                                      0000-0000-0000-886D
      MSR 0000060D                                      0000-0401-7D1B-E248
      MSR 00000610                                      8000-815E-00DC-8118
      MSR 00000611                                      0000-0000-94F3-D58E
      MSR 00000613                                      < FAILED >
      MSR 00000614                                      0010-01C0-00C0-0118
      MSR 00000618                                      < FAILED >
      MSR 00000619                                      < FAILED >
      MSR 0000061B                                      < FAILED >
      MSR 0000061C                                      < FAILED >
      MSR 00000638                                      0000-0000-8000-0000
      MSR 00000639                                      0000-0000-A373-8A43
      MSR 0000063A                                      0000-0000-0000-0000
      MSR 0000063B                                      < FAILED >
      MSR 00000640                                      0000-0000-8000-0000
      MSR 00000641                                      0000-0000-10F1-84EC
      MSR 00000642                                      0000-0000-0000-0018


--------[   ]---------------------------------------------------------------------------------------------

      :
      ID                                  <DMI>
                                          Acer Aspire 5750G

      FSB:
                                                 BCLK
                                         100 
                                      100 

      :
                                                 Dual DDR3 SDRAM
                                              128 
       DRAM:FSB                              20:3
                                         667  (DDR)
                                      1333 
                                   21333 /

      :
                                                 Intel Direct Media Interface v2.0

      :
                                                   Acer Inc.
                                     http://us.acer.com/ac/en/US/content/group/desktops
        BIOS                          http://us.acer.com/ac/en/US/content/drivers
                                     http://www.aida64.com/driver-updates
       BIOS                                 http://www.aida64.com/bios-updates


--------[  ]------------------------------------------------------------------------------------------------------

     :
                                                   3948 
                                                  2277 
                                                1671 
                                                58 %

       :
                                                   7916 
                                                  2699 
                                                5217 
                                                34 %

     :
                                                   11864 
                                                  4976 
                                                6888 
                                                42 %

     :
                                            C:\pagefile.sys
                                           3968 
      /                           265  / 311 
                                                7 %

    Physical Address Extension (PAE):
                                        
                                        
                                                


--------[ SPD ]---------------------------------------------------------------------------------------------------------

  [ DIMM1: Kingston HP594908-HR1-ELD ]

      :
                                               Kingston HP594908-HR1-ELD
                                           921F502Fh (793780114)
                                              32 / 2010
                                            2  (2 ranks, 8 banks)
                                               SO-DIMM
                                               DDR3 SDRAM
                                          DDR3-1333 (667 )
                                            64 bit
                                        1.5 V
                                  
                                       (7.8 us)

     :
      @ 666                                          9-9-9-24  (CL-RCD-RP-RAS) / 33-74-4-10-5-5-20  (RC-RFC-RRD-WR-WTR-RTP-FAW)
      @ 609                                          8-8-8-22  (CL-RCD-RP-RAS) / 30-68-4-10-5-5-19  (RC-RFC-RRD-WR-WTR-RTP-FAW)
      @ 533                                          7-7-7-20  (CL-RCD-RP-RAS) / 27-59-4-8-4-4-16  (RC-RFC-RRD-WR-WTR-RTP-FAW)
      @ 457                                          6-6-6-17  (CL-RCD-RP-RAS) / 23-51-3-7-4-4-14  (RC-RFC-RRD-WR-WTR-RTP-FAW)

      :
      Auto Self Refresh (ASR)                            
      DLL-Off Mode                                      
      Extended Temperature Range                        
      Extended Temperature Refresh Rate                  
      On-Die Thermal Sensor Readout (ODTS)               
      Partial Array Self Refresh (PASR)                 
      RZQ/6                                             
      RZQ/7                                             

      :
                                                   Kingston Technology Corporation
                                     http://www.kingston.com/products/default.asp

  [ DIMM3: SK Hynix HMT325S6CFR8C-H9 ]

      :
                                               SK Hynix HMT325S6CFR8C-H9
                                           309F6CD8h (3630997296)
                                              50 / 2011
                                            2  (1 rank, 8 banks)
                                               SO-DIMM
                                               DDR3 SDRAM
                                          DDR3-1333 (667 )
                                            64 bit
                                        1.5 V
                                  
                                       (7.8 us)
       DRAM                                SK Hynix

     :
      @ 666                                          9-9-9-24  (CL-RCD-RP-RAS) / 33-107-4-10-5-5-20  (RC-RFC-RRD-WR-WTR-RTP-FAW)
      @ 609                                          8-8-8-22  (CL-RCD-RP-RAS) / 30-98-4-10-5-5-19  (RC-RFC-RRD-WR-WTR-RTP-FAW)
      @ 533                                          7-7-7-20  (CL-RCD-RP-RAS) / 27-86-4-8-4-4-16  (RC-RFC-RRD-WR-WTR-RTP-FAW)
      @ 457                                          6-6-6-17  (CL-RCD-RP-RAS) / 23-74-3-7-4-4-14  (RC-RFC-RRD-WR-WTR-RTP-FAW)
      @ 380                                          5-5-5-14  (CL-RCD-RP-RAS) / 19-61-3-6-3-3-12  (RC-RFC-RRD-WR-WTR-RTP-FAW)

      :
      Auto Self Refresh (ASR)                           
      DLL-Off Mode                                      
      Extended Temperature Range                        
      Extended Temperature Refresh Rate                  
      On-Die Thermal Sensor Readout (ODTS)               
      Partial Array Self Refresh (PASR)                  
      RZQ/6                                             
      RZQ/7                                             


--------[  ]------------------------------------------------------------------------------------------------------

  [  : Intel Sandy Bridge-MB IMC ]

      :
                                            Intel Sandy Bridge-MB IMC
       Intel                                   Huron River
                                DDR3-1066, DDR3-1333 SDRAM
                                 16 
                                                  09
                                  32 nm
      VT-d                                               
      Extended APIC (x2APIC)                            

     :
                                                     Dual Channel  (128 )
                                           Dual Channel  (128 )

     :
      CAS Latency (CL)                                  9T
      RAS To CAS Delay (tRCD)                           9T
      RAS Precharge (tRP)                               9T
      RAS Active Time (tRAS)                            24T
      Row Refresh Cycle Time (tRFC)                     107T
      Command Rate (CR)                                 1T
      RAS To RAS Delay (tRRD)                           4T
      Write Recovery Time (tWR)                         10T
      Read To Read Delay (tRTR)                         Same Rank: 4T, Different Rank: 1T, Different DIMM: 3T
      Read To Write Delay (tRTW)                        Same Rank: 3T, Different Rank: 3T, Different DIMM: 3T
      Write To Read Delay (tWTR)                        5T, Different Rank: 1T, Different DIMM: 1T
      Write To Write Delay (tWTW)                       Same Rank: 4T, Different Rank: 3T, Different DIMM: 4T
      Read To Precharge Delay (tRTP)                    5T
      Four Activate Window Delay (tFAW)                 20T
      Write CAS Latency (tWCL)                          7T
      CKE Min. Pulse Width (tCKE)                       4T
      Refresh Period (tREF)                             5199T
      Round Trip Latency (tRTL)                         DIMM1: 34T, DIMM2: 32T, DIMM4: 32T
      I/O Latency (tIOL)                                DIMM1: 2T, DIMM2: 0T, DIMM3: 0T, DIMM4: 0T
      Burst Length (BL)                                 8

     :
      ECC                                                
      ChipKill ECC                                       
      RAID                                               
      ECC Scrubbing                                      

     :
       DRAM #1                                    2   (DDR3-1333 DDR3 SDRAM)
       DRAM #2                                    2   (DDR3-1333 DDR3 SDRAM)

      :
                              Intel HD Graphics 3000
                           
        -                  128 

     PCI Express:
      PCI-E 2.0 x16 port #2                              @ x16

     :
                                                   Intel Corporation
                                     http://www.intel.com/products/chipsets
                                       http://support.intel.com/support/chipsets
       BIOS                                 http://www.aida64.com/bios-updates
                                     http://www.aida64.com/driver-updates

  [  : Intel Cougar Point HM65 ]

      :
                                               Intel Cougar Point HM65
       Intel                                   Huron River
       / Stepping                                 05 / B3
                                              989 Pin FC-BGA
                                          25 mm x 25 mm
                                  65 nm
                                         100.73 mm2
                                   1.05 V
      TDP                                               3.9 W

    High Definition Audio:
                                               Realtek ALC269
      ID                                          10EC0269h / 10250504h
                                            1001h
                                               Audio

    High Definition Audio:
                                               Intel Cougar Point HDMI
      ID                                          80862805h / 80860101h
                                            1000h
                                               Audio

     PCI Express:
      PCI-E 2.0 x1 port #1                               @ x1  (Broadcom NetLink BCM57785 PCI-E Gigabit Ethernet Controller, Broadcom SD Card Reader)
      PCI-E 2.0 x1 port #2                               @ x1  (Broadcom BCM43227 802.11b/g/n Wireless Network Adapter)

     :
                                                   Intel Corporation
                                     http://www.intel.com/products/chipsets
                                       http://support.intel.com/support/chipsets
       BIOS                                 http://www.aida64.com/bios-updates
                                     http://www.aida64.com/driver-updates


--------[ BIOS ]--------------------------------------------------------------------------------------------------------

     BIOS:
       BIOS                                          Insyde EFI
       BIOS                                       V1.17
       BIOS                                  12/30/2011
       BIOS                            06/16/11

     BIOS:
                                                   Insyde Software Corp.
                                     http://www.insydesw.com/products
       BIOS                                 http://www.aida64.com/bios-updates


--------[ ACPI ]--------------------------------------------------------------------------------------------------------

  [ APIC: Multiple APIC Description Table ]

      ACPI:
       ACPI                                      APIC
                                         Multiple APIC Description Table
                                             96FFA000h
                                           140 
      OEM ID                                            ACRSYS
      OEM Table ID                                      ACRPRDCT
      OEM Revision                                      00000001h
      Creator ID                                        1025
      Creator Revision                                  00040000h
      Local APIC Address                                FEE00000h

    Processor Local APIC:
      ACPI Processor ID                                 01h
      APIC ID                                           00h
                                                  

    Processor Local APIC:
      ACPI Processor ID                                 02h
      APIC ID                                           01h
                                                  

    Processor Local APIC:
      ACPI Processor ID                                 03h
      APIC ID                                           02h
                                                  

    Processor Local APIC:
      ACPI Processor ID                                 04h
      APIC ID                                           03h
                                                  

    Processor Local APIC:
      ACPI Processor ID                                 05h
      APIC ID                                           00h
                                                  

    Processor Local APIC:
      ACPI Processor ID                                 06h
      APIC ID                                           00h
                                                  

    Processor Local APIC:
      ACPI Processor ID                                 07h
      APIC ID                                           00h
                                                  

    Processor Local APIC:
      ACPI Processor ID                                 08h
      APIC ID                                           00h
                                                  

    I/O APIC:
      I/O APIC ID                                       00h
      I/O APIC Address                                  FEC00000h
      Global System Interrupt Base                      00000000h

    Interrupt Source Override:
                                                    ISA
                                                IRQ0
      Global System Interrupt                           00000002h
                                              Conforms to the specifications of the bus
      Trigger Mode                                      Conforms to the specifications of the bus

    Interrupt Source Override:
                                                    ISA
                                                IRQ9
      Global System Interrupt                           00000009h
                                              Active High
      Trigger Mode                                      Level-Triggered

  [ ASF!: Alert Standard Format Table ]

      ACPI:
       ACPI                                      ASF!
                                         Alert Standard Format Table
                                             96FFD000h
                                           165 
      OEM ID                                            ACRSYS
      OEM Table ID                                      ACRPRDCT
      OEM Revision                                      00000001h
      Creator ID                                        1025
      Creator Revision                                  00040000h

    ASF_INFO:
      Min Watchdog Reset Value                          5 
      Min ASF Sensor Interpoll Wait Time                1275 msec
      System ID                                         0001h
      IANA Manufacturer ID                              00-00-01-57h

    ASF_ALRT:
      Numer of Alerts                                   3
      Array Element Length                              12

    ASF_RCTL:
      Numer of Controls                                 4
      Array Element Length                              4

    ASF_RMCP:
      Remote Control Capabilities                       20-F8-00-00-00-1F-F0h
      RMCP Boot Options Completion Code                 00h  (Successful)
      RMCP IANA Enterprise ID                           00-00-00-00h
      RMCP Special Command                              00h
      RMCP Special Command Parameter                    0000h
      RMCP Boot Options                                 0000h
      RMCP OEM Parameters                               0000h

  [ ASPT: ACPI System Performance Tuning Table ]

      ACPI:
       ACPI                                      ASPT
                                         ACPI System Performance Tuning Table
                                             96FE9000h
                                           52 
      OEM ID                                            ACRSYS
      OEM Table ID                                      ACRPRDCT
      OEM Revision                                      00000001h
      Creator ID                                        1025
      Creator Revision                                  00040000h
      SPTT Address                                      00000000-00000000h
      AMRT Address                                      00000000-00000000h

  [ BOOT: Simple Boot Flag Table ]

      ACPI:
       ACPI                                      BOOT
                                         Simple Boot Flag Table
                                             96FEC000h
                                           40 
      OEM ID                                            ACRSYS
      OEM Table ID                                      ACRPRDCT
      OEM Revision                                      00000001h
      Creator ID                                        1025
      Creator Revision                                  00040000h

  [ DSDT: Differentiated System Description Table ]

      ACPI:
       ACPI                                      DSDT
                                         Differentiated System Description Table
                                             00000000-96FF0000h
                                           36697 
      OEM ID                                            ACRSYS
      OEM Table ID                                      ACRPRDCT
      OEM Revision                                      00000000h
      Creator ID                                        1025
      Creator Revision                                  00040000h

    nVIDIA SLI:
      SLI Certification                                 
      PCI 0-0-0-0 (Direct I/O)                          8086-0104  (Intel)
      PCI 0-0-0-0 (HAL)                                 8086-0104  (Intel)

    Lucid Virtu:
      Virtu Certification                               

  [ FACP: Fixed ACPI Description Table ]

      ACPI:
       ACPI                                      FACP
                                         Fixed ACPI Description Table
                                             96FFC000h
                                           244 
      OEM ID                                            ACRSYS
      OEM Table ID                                      ACRPRDCT
      OEM Revision                                      00000001h
      Creator ID                                        1025
      Creator Revision                                  00040000h
      FACS Address                                      96F6D000h / 00000000-96F6D000h
      DSDT Address                                      96FF0000h / 00000000-96FF0000h
      SMI Command Port                                  000000B2h
      PM Timer                                          00000408h

  [ FACS: Firmware ACPI Control Structure ]

      ACPI:
       ACPI                                      FACS
                                         Firmware ACPI Control Structure
                                             00000000-96F6D000h
                                           64 
      Hardware Signature                                00000000h
      Waking Vector                                     00000000h
      Global Lock                                       00000000h

  [ HPET: IA-PC High Precision Event Timer Table ]

      ACPI:
       ACPI                                      HPET
                                         IA-PC High Precision Event Timer Table
                                             96FFB000h
                                           56 
      OEM ID                                            ACRSYS
      OEM Table ID                                      ACRPRDCT
      OEM Revision                                      00000001h
      Creator ID                                        1025
      Creator Revision                                  00040000h
      HPET Address                                      00000000-FED00000h
      Vendor ID                                         8086h
      Revision ID                                       01h
      Number of Timers                                  3
      Counter Size                                      64 
      Minimum Clock Ticks                               128
      Page Protection                                   No Guarantee
      OEM Attribute                                     0h
      LegacyReplacement IRQ Routing                     

  [ MCFG: Memory Mapped Configuration Space Base Address Description Table ]

      ACPI:
       ACPI                                      MCFG
                                         Memory Mapped Configuration Space Base Address Description Table
                                             96FF9000h
                                           60 
      OEM ID                                            ACRSYS
      OEM Table ID                                      ACRPRDCT
      OEM Revision                                      00000001h
      Creator ID                                        1025
      Creator Revision                                  00040000h
      Config Space Address                              00000000-E0000000h
      PCI Segment                                       0000h
      Start Bus Number                                  00h
      End Bus Number                                    FFh

  [ RSD PTR: Root System Description Pointer ]

      ACPI:
       ACPI                                      RSD PTR
                                         Root System Description Pointer
                                             000FE020h
                                           36 
      OEM ID                                            ACRSYS
      RSDP Revision                                     2  (ACPI 2.0+)
      RSDT Address                                      96FFE0ACh
      XSDT Address                                      00000000-96FFE120h

  [ RSDT: Root System Description Table ]

      ACPI:
       ACPI                                      RSDT
                                         Root System Description Table
                                             96FFE0ACh
                                           84 
      OEM ID                                            ACRSYS
      OEM Table ID                                      ACRPRDCT
      OEM Revision                                      00000001h
      Creator Revision                                  01000013h
      RSDT Entry #0                                     96FFC000h  (FACP)
      RSDT Entry #1                                     96FFD000h  (ASF!)
      RSDT Entry #2                                     96FFB000h  (HPET)
      RSDT Entry #3                                     96FFA000h  (APIC)
      RSDT Entry #4                                     96FF9000h  (MCFG)
      RSDT Entry #5                                     96FEF000h  (SLIC)
      RSDT Entry #6                                     96FEE000h  (SSDT)
      RSDT Entry #7                                     96FEC000h  (BOOT)
      RSDT Entry #8                                     96FE9000h  (ASPT)
      RSDT Entry #9                                     96FE8000h  (SSDT)
      RSDT Entry #10                                    96FE7000h  (SSDT)
      RSDT Entry #11                                    96FE2000h  (SSDT)

  [ SLIC: Software Licensing Description Table ]

      ACPI:
       ACPI                                      SLIC
                                         Software Licensing Description Table
                                             96FEF000h
                                           374 
      OEM ID                                            ACRSYS
      OEM Table ID                                      ACRPRDCT
      OEM Revision                                      00000001h
      Creator ID                                        1025
      Creator Revision                                  00040000h

    OEM Public Key:

    SLIC Marker:

  [ SSDT: Secondary System Description Table ]

      ACPI:
       ACPI                                      SSDT
                                         Secondary System Description Table
                                             96FE2000h
                                           20312 
      OEM ID                                            ACRSYS
      OEM Table ID                                      ACRPRDCT
      OEM Revision                                      00001000h
      Creator ID                                        1025
      Creator Revision                                  00040000h

  [ SSDT: Secondary System Description Table ]

      ACPI:
       ACPI                                      SSDT
                                         Secondary System Description Table
                                             96FE7000h
                                           2454 
      OEM ID                                            ACRSYS
      OEM Table ID                                      ACRPRDCT
      OEM Revision                                      00003000h
      Creator ID                                        1025
      Creator Revision                                  00040000h

  [ SSDT: Secondary System Description Table ]

      ACPI:
       ACPI                                      SSDT
                                         Secondary System Description Table
                                             96FE8000h
                                           1986 
      OEM ID                                            ACRSYS
      OEM Table ID                                      ACRPRDCT
      OEM Revision                                      00003000h
      Creator ID                                        1025
      Creator Revision                                  00040000h

  [ SSDT: Secondary System Description Table ]

      ACPI:
       ACPI                                      SSDT
                                         Secondary System Description Table
                                             96FEE000h
                                           3010 
      OEM ID                                            ACRSYS
      OEM Table ID                                      ACRPRDCT
      OEM Revision                                      00001000h
      Creator ID                                        1025
      Creator Revision                                  00040000h

  [ XSDT: Extended System Description Table ]

      ACPI:
       ACPI                                      XSDT
                                         Extended System Description Table
                                             00000000-96FFE120h
                                           132 
      OEM ID                                            ACRSYS
      OEM Table ID                                      ACRPRDCT
      OEM Revision                                      00000001h
      Creator Revision                                  01000013h
      XSDT Entry #0                                     00000000-96FFC000h  (FACP)
      XSDT Entry #1                                     00000000-96FFD000h  (ASF!)
      XSDT Entry #2                                     00000000-96FFB000h  (HPET)
      XSDT Entry #3                                     00000000-96FFA000h  (APIC)
      XSDT Entry #4                                     00000000-96FF9000h  (MCFG)
      XSDT Entry #5                                     00000000-96FEF000h  (SLIC)
      XSDT Entry #6                                     00000000-96FEE000h  (SSDT)
      XSDT Entry #7                                     00000000-96FEC000h  (BOOT)
      XSDT Entry #8                                     00000000-96FE9000h  (ASPT)
      XSDT Entry #9                                     00000000-96FE8000h  (SSDT)
      XSDT Entry #10                                    00000000-96FE7000h  (SSDT)
      XSDT Entry #11                                    00000000-96FE2000h  (SSDT)


--------[   ]----------------------------------------------------------------------------------------

      :
                                              Microsoft Windows 8 Professional with Media Center
                                                   ()
                                        ()
                                               Multiprocessor Free (64-bit)
                                                6.2.9200.16581 (Win8 RTM)
                                       -
                                         17.10.2014
                                         C:\Windows

     :
                           
                           
      ID                                        00190-80000-00001-AA263
                                            GNBB8-YVD74-QJHX6-27H4K-8QHDG
        (WPA)                           

     :
                                           ACER
                                          
                                              ACER
                                             20108  (0 ., 5 , 35 , 8 )

     :
      Common Controls                                   6.16
      Windows Mail                                      6.2.9200.16384 (win8_rtm.120725-1247)
       Windows Media                       12.0.9200.16384 (win8_rtm.120725-1247)
      Windows Messenger                                 -
      MSN Messenger                                     -
      Internet Information Services (IIS)               -
      .NET Framework                                    4.0.30319.18010 built by: FX45RTMGDR
       Novell                                     -
      DirectX                                           DirectX 11.1
      OpenGL                                            6.2.9200.16384 (win8_rtm.120725-1247)
      ASPI                                              -

      :
                                        
       DBCS                                       
                                        
                                     
                                             
                                         
                                         
                                      
                                      


--------[  ]----------------------------------------------------------------------------------------------------

    aida64.exe               C:\Program Files (x86)\AIDA64\aida64.exe                                      32         75320             61 
    AIMP3.exe                C:\Program Files (x86)\AIMP3\AIMP3.exe                                        32         14736             26 
    armsvc.exe               C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe                  32          4088              1 
    ASCService.exe           C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCService.exe             32         12372             27 
    audiodg.exe                                                                                            64         12152              9 
    BrcmCardReader.exe       C:\Program Files\Broadcom\MemoryCard\BrcmCardReader.exe                       64          4836              1 
    conhost.exe              C:\Windows\system32\conhost.exe                                               64          2992              0 
    conhost.exe              C:\Windows\system32\conhost.exe                                               64          3784              0 
    csrss.exe                C:\Windows\system32\csrss.exe                                                 64          4132              1 
    csrss.exe                C:\Windows\system32\csrss.exe                                                 64         40964              2 
    data.dll                 C:\ProgramData\KMSAuto\data.dll                                               32          3524              1 
    dsiwmis.exe              C:\Program Files (x86)\Launch Manager\dsiwmis.exe                             32          4944              1 
    dwm.exe                  C:\Windows\system32\dwm.exe                                                   64         40204             33 
    egui.exe                 C:\Program Files\ESET\ESET Smart Security\egui.exe                            64         23788              8 
    ekrn.exe                 C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe                        32           116            112 
    ETDCtrl.exe              C:\Program Files\Elantech\ETDCtrl.exe                                         64         16300              5 
    ETDCtrlHelper.exe        C:\Program Files\Elantech\ETDCtrlHelper.exe                                   64          7244              2 
    ETDService.exe           C:\Program Files\Elantech\ETDService.exe                                      64          2644              0 
    explorer.exe             C:\Windows\Explorer.EXE                                                       64           205             92 
    GfExperienceService.exe  C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe  64          6224              1 
    HeciServer.exe           C:\Program Files\Intel\iCLS Client\HeciServer.exe                             64          5184              1 
    hkcmd.exe                C:\Windows\System32\hkcmd.exe                                                 64          5892              1 
    IAStorDataMgrSvc.exe     C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe  32           279            280 
    IAStorIcon.exe           C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe  32         26244             26 
    igfxpers.exe             C:\Windows\System32\igfxpers.exe                                              64          9248              2 
    igfxtray.exe             C:\Windows\System32\igfxtray.exe                                              64          8212              6 
    LiveComm.exe             C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe\LiveComm.exe  64         11400             20 
    LManager.exe             C:\Program Files (x86)\Launch Manager\LManager.exe                            32         17104              6 
    LMS.exe                  C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe  32          4948              1 
    LMutilps32.exe           C:\Program Files (x86)\Launch Manager\LMutilps32.exe                          32          6804              1 
    LMworker.exe             C:\Program Files (x86)\Launch Manager\LMworker.exe                            32          5832              5 
    lsass.exe                C:\Windows\system32\lsass.exe                                                 64         11176              4 
    MMDx64Fx.exe             C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe                            64          5480              1 
    Monitor.exe              C:\Program Files (x86)\IObit\Advanced SystemCare 7\Monitor.exe                32          3192             11 
    NvBackend.exe            C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe           32         16560              9 
    NvNetworkService.exe     C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe     32          5668              1 
    nvstreamsvc.exe          C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe               64         10200              3 
    nvstreamsvc.exe          C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe               64         14108              5 
    nvstreamsvc.exe          C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe               64         12852              6 
    nvtray.exe               C:\Program Files\NVIDIA Corporation\Display\nvtray.exe                        64         11244              3 
    nvvsvc.exe               C:\Windows\system32\nvvsvc.exe                                                64         13436              4 
    nvvsvc.exe               C:\Windows\system32\nvvsvc.exe                                                64          6912              1 
    nvxdsync.exe             C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe                      64         19084              7 
    opera.exe                C:\Program Files (x86)\Opera\25.0.1614.50\opera.exe                           32         56776             46 
    opera.exe                C:\Program Files (x86)\Opera\25.0.1614.50\opera.exe                           32         89740             74 
    opera.exe                C:\Program Files (x86)\Opera\25.0.1614.50\opera.exe                           32         34932             31 
    opera.exe                C:\Program Files (x86)\Opera\25.0.1614.50\opera.exe                           32         32920             30 
    opera.exe                C:\Program Files (x86)\Opera\25.0.1614.50\opera.exe                           32         23096             18 
    opera.exe                C:\Program Files (x86)\Opera\25.0.1614.50\opera.exe                           32            96             84 
    opera.exe                C:\Program Files (x86)\Opera\25.0.1614.50\opera.exe                           32         50412             43 
    opera.exe                C:\Program Files (x86)\Opera\25.0.1614.50\opera.exe                           32           118             75 
    opera_crashreporter.exe  C:\Program Files (x86)\Opera\25.0.1614.50\opera_crashreporter.exe             32          5848              4 
    pcee4.exe                C:\Dolby PCEE4\pcee4.exe                                                      64         34584             36 
    RAVBg64.exe              C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe                                64         10012              6 
    RAVCpl64.exe             C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe                               64         11588              5 
    RuntimeBroker.exe        C:\Windows\System32\RuntimeBroker.exe                                         64         22052              9 
    SearchIndexer.exe        C:\Windows\system32\SearchIndexer.exe                                         64         16576             18 
    services.exe             C:\Windows\system32\services.exe                                              64         10972              4 
    smss.exe                                                                                               64           972              0 
    splwow64.exe             C:\Windows\splwow64.exe                                                       64          4676              1 
    spoolsv.exe              C:\Windows\System32\spoolsv.exe                                               64         10156              3 
    sppsvc.exe                                                                                             64         11756              4 
    svchost.exe              C:\Windows\System32\svchost.exe                                               64         88804             76 
    svchost.exe              C:\Windows\system32\svchost.exe                                               64         30952             16 
    svchost.exe              C:\Windows\system32\svchost.exe                                               64         29044             17 
    svchost.exe              C:\Windows\system32\svchost.exe                                               64          7352              1 
    svchost.exe              C:\Windows\System32\svchost.exe                                               64         34132             16 
    svchost.exe              C:\Windows\system32\svchost.exe                                               64         10536              2 
    svchost.exe              C:\Windows\system32\svchost.exe                                               64           176            137 
    svchost.exe              C:\Windows\system32\svchost.exe                                               64         17844              6 
    svchost.exe              C:\Windows\system32\svchost.exe                                               64         12992              3 
    svchost.exe              C:\Windows\system32\svchost.exe                                               64         11408              4 
    System Idle Process                                                                                                     20              0 
    System                                                                                                 64          2144              0 
    taskhost.exe             C:\Windows\system32\taskhost.exe                                              64          8232              4 
    taskhostex.exe           C:\Windows\system32\taskhostex.exe                                            64         12080              6 
    UNS.exe                  C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe  32         11160              3 
    unsecapp.exe             C:\Windows\system32\wbem\unsecapp.exe                                         64          4456              1 
    unsecapp.exe             C:\Windows\system32\wbem\unsecapp.exe                                         64          6268              1 
    uTorrent.exe             C:\Users\ \AppData\Roaming\uTorrent\uTorrent.exe             32         46396             27 
    WiMAX Connection Manager.exe  C:\Program Files (x86)\WiMAX Connection Manager\WiMAX Connection Manager.exe  32         39508             32 
    wininit.exe              C:\Windows\system32\wininit.exe                                               64          3812              0 
    winlogon.exe             C:\Windows\system32\winlogon.exe                                              64          8284              1 
    WmiPrvSE.exe             C:\Windows\system32\wbem\wmiprvse.exe                                         64         17720              9 
    WmiPrvSE.exe             C:\Windows\system32\wbem\wmiprvse.exe                                         32         17364             12 
    WmiPrvSE.exe             C:\Windows\sysWOW64\wbem\wmiprvse.exe                                         64          6520              2 
    wuauclt.exe              C:\Windows\system32\wuauclt.exe                                               64          7348              2 


--------[   ]------------------------------------------------------------------------------------------

    1394ohci         1394 OHCI- -                                   1394ohci.sys          6.2.9200.16384                        
    3ware            3ware                                                                   3ware.sys             5.1.0.47                              
    ACPI              Microsoft ACPI                                                  ACPI.sys              6.2.9200.16384                        
    acpiex           Microsoft ACPIEx Driver                                                 acpiex.sys            6.2.9200.16384                        
    acpipagr            ACPI                                      acpipagr.sys          6.2.9200.16384                        
    AcpiPmi              ACPI                              acpipmi.sys           6.2.9200.16384                        
    acpitime          ACPI Wake Alarm                                                 acpitime.sys          6.2.9200.16384                        
    adp94xx          adp94xx                                                                 adp94xx.sys           1.6.6.4                               
    adpahci          adpahci                                                                 adpahci.sys           1.6.6.1                               
    adpu320          adpu320                                                                 adpu320.sys           7.2.0.0                               
    AFD                  Winsock                              afd.sys               6.2.9200.16384                        
    agp440           Intel -   AGP                                                 agp440.sys            6.2.9200.16384                        
    AIDA64Driver     FinalWire AIDA64 Kernel Driver                                          kerneld.x64                                                 
    AmdK8            AMD K8                                                 amdk8.sys             6.2.9200.16384                        
    AmdPPM             AMD                                                  amdppm.sys            6.2.9200.16384                        
    amdsata          amdsata                                                                 amdsata.sys           1.1.4.6                               
    amdsbs           amdsbs                                                                  amdsbs.sys            3.7.1540.30                           
    amdxata          amdxata                                                                 amdxata.sys           1.1.4.6                               
    AppID             AppID                                                           appid.sys             6.2.9200.16384                        
    arc              arc                                                                     arc.sys               5.2.0.18702                           
    arcsas           Adaptec SAS/SATA-II RAID -     Windows     arcsas.sys            5.2.0.18702                           
    AsyncMac            RAS                                       asyncmac.sys          6.2.9200.16384                        
    atapi             IDE                                                               atapi.sys             6.2.9200.16384                        
    b06bdrv          Broadcom NetXtreme II VBD                                               bxvbda.sys            7.0.1.35                              
    b57xdbd          Broadcom xD Picture Bus Driver Service                                  b57xdbd.sys           1.1.16.0                              
    b57xdmp          Broadcom xD Picture vstorp client drv                                   b57xdmp.sys           1.1.16.0                              
    BasicDisplay     BasicDisplay                                                            BasicDisplay.sys      6.2.9200.16384                        
    BasicRender      BasicRender                                                             BasicRender.sys       6.2.9200.16384                        
    bcm              WiMAX Network Adapter                                                   drxvi314_64lh.sys     5.2.116.5009                          
    BCM43XX             Broadcom 802.11                               bcmwl63a.sys          5.100.245.20                          
    bcmbusctr        WiMAX Bus Driver                                                        BcmBusCtr_64.sys      5.2.116.5006                          
    Beep             Beep                                                                                                                                
    bowser                                                           bowser.sys            6.2.9200.16384             
    bScsiMSa         bScsiMSa                                                                bScsiMSa.sys          1.0.4.0                               
    bScsiSDa         bScsiSDa                                                                bScsiSDa.sys          1.0.0.243                             
    BthAvrcpTg       HID       Bluetooth            BthAvrcpTg.sys        6.2.9200.16518                        
    BthHFEnum         HID       c  Bluetooth  bthhfenum.sys         6.2.9200.16384                        
    bthhfhid         HID      Bluetooth            BthHFHid.sys          6.2.9200.16465                        
    BTHMODEM                Bluetooth      bthmodem.sys          6.2.9200.16547                        
    cdfs             CD/DVD File System Reader                                               cdfs.sys              6.2.9200.16384             
    cdrom             CD-ROM                                                 cdrom.sys             6.2.9200.16384                        
    circlass          -                                           circlass.sys          6.2.9200.16384                        
    CLFS             Common Log (CLFS)                                                       CLFS.sys              6.2.9200.16384                        
    clwvd            CyberLink WebCam Virtual Driver                                         clwvd.sys             1.0.0.4403                            
    CmBatt              ACPI- ()                         CmBatt.sys            6.2.9200.16384                        
    CNG              CNG                                                                     cng.sys               6.2.9200.16384                        
    CompositeBus                                          CompositeBus.sys      6.2.9200.16384                        
    condrv           Console Driver                                                          condrv.sys            6.2.9200.16384                        
    CSC                                                               csc.sys               6.2.9200.16384                        
    dam              Desktop Activity Moderator Driver                                       dam.sys               6.2.9200.16693                        
    Dfsc                 DFS                                   dfsc.sys              6.2.9200.16384             
    discache         System Attribute Cache                                                  discache.sys          6.2.9200.16384                        
    disk                                                                         disk.sys              6.2.9200.16384                        
    dmvsc            dmvsc                                                                   dmvsc.sys             6.2.9200.16384                        
    drmkaud                                                 drmkaud.sys           6.2.9200.16384                        
    DXGKrnl          LDDM Graphics Subsystem                                                 dxgkrnl.sys           6.2.9200.16583                        
    E1G60              Intel(R) PRO/1000 NDIS 6                               E1G6032E.sys          8.4.13.0                              
    eamonm           eamonm                                                                  eamonm.sys            7.0.206.0                  
    ebdrv            Broadcom NetXtreme II 10 GigE VBD                                       evbda.sys             7.0.35.94                             
    edevmon          edevmon                                                                 edevmon.sys           7.0.207.0                             
    ehdrv            ehdrv                                                                   ehdrv.sys             7.0.206.0                             
    EhStorClass      Enhanced Storage Filter Driver                                          EhStorClass.sys       6.2.9200.16384                        
    EhStorTcgDrv         ,   IEEE 1667  TCG  EhStorTcgDrv.sys      6.2.9200.16384                        
    epfw             epfw                                                                    epfw.sys              7.0.206.0                             
    EpfwLWF          Epfw NDIS LightWeight Filter                                            EpfwLWF.sys           7.0.206.0                             
    epfwwfp          epfwwfp                                                                 epfwwfp.sys           7.0.206.0                             
    ErrDev           Microsoft Hardware Error Device Driver                                  errdev.sys            6.2.9200.16384                        
    ETD              ELAN PS/2 Port Input Device                                             ETD.sys               10.0.0.194                            
    exfat            exFAT File System Driver                                                                                                 
    fastfat          FAT12/16/32 File System Driver                                                                                           
    fdc                                                        fdc.sys               6.2.9200.16384                        
    FileInfo         File Information FS MiniFilter                                          fileinfo.sys          6.2.9200.16384             
    Filetrace        Filetrace                                                               filetrace.sys         6.2.9200.16384             
    flpydisk                                                     flpydisk.sys          6.2.9200.16384                        
    FltMgr                                                                  fltmgr.sys            6.2.9200.16384             
    FsDepends        File System Dependency Minifilter                                       FsDepends.sys         6.2.9200.16384             
    fvevol               BitLocker                              fvevol.sys            6.2.9200.16384                        
    FxPPM                                              fxppm.sys             6.2.9200.16384                        
    gagp30kx         Microsoft  AGPv3.0     K8-   gagp30kx.sys          6.2.9200.16384                        
    gencounter         Microsoft Hyper-V                                      vmgencounter.sys      6.2.9200.16384                        
    GPIOClx0101      Microsoft GPIO Class Extension Driver                                   msgpioclx.sys         6.2.9200.16384                        
    HdAudAddService    UAA   High Definition Audio (Microsoft),  1.1  HdAudio.sys           6.2.9200.16496                        
    HDAudBus            UAA  High Definition Audio (Microsoft)              HDAudBus.sys          6.2.9200.16384                        
    HidBatt             HID                                                 HidBatt.sys           6.2.9200.16384                        
    HidBth           Microsoft Bluetooth HID                                         hidbth.sys            6.2.9200.16579                        
    hidi2c              HID-   I2C ()            hidi2c.sys            6.2.9200.16461                        
    HidIr            Microsoft Infrared HID                                           hidir.sys             6.2.9200.16384                        
    HidUsb             HID Microsoft                                            hidusb.sys            6.2.9200.16604                        
    HpSAMD           HpSAMD                                                                  HpSAMD.sys            7.0.12.0                              
    HTTP             HTTP-                                                             HTTP.sys              6.2.9200.16556                        
    hwpolicy         Hardware Policy Driver                                                  hwpolicy.sys          6.2.9200.16384                        
    hyperkbd         hyperkbd                                                                hyperkbd.sys          6.2.9200.16384                        
    HyperVideo       HyperVideo                                                              HyperVideo.sys        6.2.9200.16384                        
    i8042prt               PS/2                                i8042prt.sys          6.2.9200.16384                        
    iaStorA          iaStorA                                                                 iaStorA.sys           11.5.0.1207                           
    iaStorV          RAID- Intel  Windows 7                                     iaStorV.sys           8.6.2.1019                            
    igfx             igfx                                                                    igdkmd64.sys          9.17.10.2843                          
    iirsp            iirsp                                                                   iirsp.sys             5.4.22.0                              
    IntcAzAudAddService  Service for Realtek HD Audio (WDM)                                      RTKVHD64.sys          6.0.1.6438                            
    IntcDAud          Intel(R)                                               IntcDAud.sys          6.14.0.3097                           
    intelide         intelide                                                                intelide.sys          6.2.9200.16384                        
    intelppm          Intel                                                 intelppm.sys          6.2.9200.16384                        
    IpFilterDriver     IP-                                              ipfltdrv.sys          6.2.9200.16384                        
    IPMIDRV          IPMIDRV                                                                 IPMIDrv.sys           6.2.9200.16384                        
    IPNAT            IP Network Address Translator                                           ipnat.sys             6.2.9200.16384                        
    IRENUM           IR Bus Enumerator                                                       irenum.sys            6.2.9200.16384                        
    isapnp           isapnp                                                                  isapnp.sys            6.2.9200.16384                        
    iScsiPrt          iScsiPort                                                       msiscsi.sys           6.2.9200.16384                        
    k57nd60a           Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0       k57nd60a.sys          14.8.1.11                             
    kbdclass                                                          kbdclass.sys          6.2.9200.16384                        
    kbdhid             HID                                                  kbdhid.sys            6.2.9200.16384                        
    kdnic            -      () (NDIS 6.20)    kdnic.sys             6.1.0.0                               
    KSecDD           KSecDD                                                                  ksecdd.sys            6.2.9200.16384                        
    KSecPkg          KSecPkg                                                                 ksecpkg.sys           6.2.9200.16384                        
    ksthunk          Kernel Streaming Thunks                                                 ksthunk.sys           6.2.9200.16384                        
    lltdio                                       lltdio.sys            6.2.9200.16384                        
    LSI_SAS          LSI_SAS                                                                 lsi_sas.sys           1.34.2.6                              
    LSI_SAS2         LSI_SAS2                                                                lsi_sas2.sys          2.0.55.84                             
    LSI_SCSI         LSI_SCSI                                                                lsi_scsi.sys          1.34.2.5                              
    LSI_SSS          LSI_SSS                                                                 lsi_sss.sys           2.10.55.81                            
    luafv                                            luafv.sys             6.2.9200.16384             
    megasas          megasas                                                                 megasas.sys           6.2.8313.0                            
    MegaSR           MegaSR                                                                  MegaSR.sys            14.6.1007.2012                        
    MEIx64           Intel(R) Management Engine Interface                                    HECIx64.sys           8.1.0.1263                            
    Modem            Modem                                                                   modem.sys             6.2.9200.16384                        
    monitor          Microsoft Monitor Class Function Driver Service                         monitor.sys           6.2.9200.16547                        
    mouclass                                                                mouclass.sys          6.2.9200.16384                        
    mouhid             HID                                                        mouhid.sys            6.2.9200.16548                        
    mountmgr                                                        mountmgr.sys          6.2.9200.16384                        
    mpsdrv              Windows                                 mpsdrv.sys            6.2.9200.16384                        
    MRxDAV              WebDav                                 mrxdav.sys            6.2.9200.16384             
    mrxsmb              - SMB                              mrxsmb.sys            6.2.9200.16521             
    mrxsmb10         - SMB 1.x                                            mrxsmb10.sys          6.2.9200.16384             
    mrxsmb20         - SMB 2.0                                            mrxsmb20.sys          6.2.9200.16521             
    MsBridge         MAC- ()                                                   bridge.sys            6.2.9200.16384                        
    Msfs             Msfs                                                                                                                     
    msgpiowin32        GPIO                                                     msgpiowin32.sys       6.2.9200.16496                        
    mshidkmdf        Pass-through HID to KMDF Filter Driver                                  mshidkmdf.sys         6.2.9200.16384                        
    mshidumdf          HID-UMDF                                               mshidumdf.sys         6.2.9200.16384                        
    msisadrv         msisadrv                                                                msisadrv.sys          6.2.9200.16384                        
    MSKSSRV             Microsoft                                   MSKSSRV.sys           6.2.9200.16384                        
    MsLldp            Microsoft LLDP                                                 mslldp.sys            6.2.9200.16384                        
    MSPCLOCK            Microsoft                               MSPCLOCK.sys          6.2.9200.16384                        
    MSPQM                Microsoft                     MSPQM.sys             6.2.9200.16384                        
    MsRPC            MsRPC                                                                                                                               
    mssmbios          Microsoft System Management BIOS                                mssmbios.sys          6.2.9200.16384                        
    MSTEE              Tee/Sink-to-Sink Microsoft                      MSTEE.sys             6.2.9200.16384                        
    MTConfig         Microsoft Input Configuration Driver                                    MTConfig.sys          6.2.9200.16384                        
    Mup              Mup                                                                     mup.sys               6.2.9200.16384             
    mvumis           mvumis                                                                  mvumis.sys            1.0.5.7                               
    NativeWifiP      NativeWiFi Filter                                                       nwifi.sys             6.2.9200.16384                        
    NDIS               NDIS                                                  ndis.sys              6.2.9200.16518                        
    NdisCap           Microsoft NDIS                                                   ndiscap.sys           6.2.9200.16384                        
    NdisImPlatform       ()                  NdisImPlatform.sys    6.2.9200.16384                        
    NdisTapi         NDIS- TAPI                                      ndistapi.sys          6.2.9200.16420                        
    Ndisuio          NDIS- -                       ndisuio.sys           6.2.9200.16384                        
    NdisWan          NDIS-                          ndiswan.sys           6.2.9200.16384                        
    NDISWANLEGACY      NDIS-       ndiswan.sys           6.2.9200.16384                        
    NDProxy          NDIS Proxy                                                                                                                          
    Ndu              Windows Network Data Usage Monitoring Driver                            Ndu.sys               6.2.9200.16384                        
    NetBIOS          NetBIOS Interface                                                       netbios.sys           6.2.9200.16384             
    NetBT            NetBT                                                                   netbt.sys             6.2.9200.16384                        
    nfrd960          nfrd960                                                                 nfrd960.sys           7.10.0.0                              
    Npfs             Npfs                                                                                                                     
    npsvctrig        Named pipe service trigger provider                                     npsvctrig.sys         6.2.9200.16384                        
    nsiproxy         NSI Proxy Service Driver                                                nsiproxy.sys          6.2.9200.16384                        
    Ntfs             Ntfs                                                                                                                     
    Null             Null                                                                                                                                
    nv_agp           NVIDIA nForce   AGP                                           nv_agp.sys            6.2.9200.16384                        
    nvlddmkm         nvlddmkm                                                                nvlddmkm.sys          9.18.13.4411                          
    nvpciflt         nvpciflt                                                                nvpciflt.sys          9.18.13.4411                          
    nvraid           nvraid                                                                  nvraid.sys            10.6.0.22                             
    nvstor           nvstor                                                                  nvstor.sys            10.6.0.22                             
    NvStreamKms      NvStreamKms                                                             NvStreamKms.sys       1.0.0.0                               
    nvvad_WaveExtensible  NVIDIA Virtual Audio Device (Wave Extensible) (WDM)                     nvvad64v.sys          1.2.25.0                              
    Parport                                                         parport.sys           6.2.9200.16384                        
    partmgr                                                                 partmgr.sys           6.2.9200.16496                        
    pci               PCI                                                         pci.sys               6.2.9200.16384                        
    pciide           pciide                                                                  pciide.sys            6.2.9200.16384                        
    pcmcia           pcmcia                                                                  pcmcia.sys            6.2.9200.16384                        
    pcw              Performance Counters for Windows Driver                                 pcw.sys               6.2.9200.16384                        
    pdc              pdc                                                                     pdc.sys               6.2.9200.16547                        
    PEAUTH           PEAUTH                                                                  peauth.sys            6.2.9200.16579                        
    PptpMiniport     -   (PPTP)                                        raspptp.sys           6.2.9200.16384                        
    Processor                                                               processr.sys          6.2.9200.16384                        
    Psched             QoS                                                 pacer.sys             6.2.9200.16384                        
    QWAVEdrv          QWAVE                                                           qwavedrv.sys          6.2.9200.16384                        
    RasAcd           Remote Access Auto Connection Driver                                    rasacd.sys            6.2.9200.16384                        
    RasAgileVpn      -   (IKEv2)                                       AgileVpn.sys          6.2.9200.16384                        
    Rasl2tp          -   (L2TP)                                        rasl2tp.sys           6.2.9200.16384                        
    RasPppoe          PPPOE                                          raspppoe.sys          6.2.9200.16384                        
    RasSstp          -   (SSTP)                                        rassstp.sys           6.2.9200.16384                        
    rdbss                                               rdbss.sys             6.2.9200.16604             
    rdpbus                          rdpbus.sys            6.2.9200.16384                        
    RDPDR            Remote Desktop Device Redirector Driver                                 rdpdr.sys             6.2.9200.16384                        
    RdpVideoMiniport  Remote Desktop Video Miniport Driver                                    rdpvideominiport.sys  6.2.9200.16384                        
    RDPWD            RDP Winstation Driver                                                                                                               
    rdyboost         ReadyBoost                                                              rdyboost.sys          6.2.9200.16384                        
    rspndr                           rspndr.sys            6.2.9200.16384                        
    s3cap            s3cap                                                                   vms3cap.sys           6.2.9200.16384                        
    sbp2port         SBP-2   /                                   sbp2port.sys          6.2.9200.16384                        
    scfilter           -  PnP                                  scfilter.sys          6.2.9200.16384                        
    sdbus            sdbus                                                                   sdbus.sys             6.2.9200.16548                        
    sdstor             SD Storage                                                sdstor.sys            6.2.9200.16384                        
    secdrv           Security Driver                                                                                                                     
    SerCx            Serial UART Support Library                                             SerCx.sys             6.2.9200.16384                        
    Serenum            Serenum                                                 serenum.sys           6.2.9200.16384                        
    Serial                                                      serial.sys            6.2.9200.16384                        
    sermouse            .                                             sermouse.sys          6.2.9200.16384                        
    sfloppy                                                            sfloppy.sys           6.2.9200.16384                        
    SiSRaid2         SiSRaid2                                                                SiSRaid2.sys          5.1.1039.2600                         
    SiSRaid4         SiSRaid4                                                                sisraid4.sys          5.1.1039.3600                         
    spaceport                                                    spaceport.sys         6.2.9200.16604                        
    SpbCx            Simple Peripheral Bus Support Library                                   SpbCx.sys             6.2.9200.16384                        
    srv                Server SMB 1.xxx                                        srv.sys               6.2.9200.16384             
    srv2               Server SMB 2.xxx                                        srv2.sys              6.2.9200.16579             
    srvnet           srvnet                                                                  srvnet.sys            6.2.9200.16579             
    stexstor         stexstor                                                                stexstor.sys          5.1.0.9                               
    storahci           SATA AHCI ()                              storahci.sys          6.2.9200.16548                        
    storflt            Hyper-V                                            vmstorfl.sys          6.2.9200.16384                        
    storvsc          storvsc                                                                 storvsc.sys           6.2.9200.16384                        
    storvsp          storvsp                                                                 storvsp.sys           6.2.9200.16384                        
    swenum                                                             swenum.sys            6.2.9200.16384                        
    Tcpip              TCP/IP                                                tcpip.sys             6.2.9200.16604                        
    TCPIP6             IPv6 (Microsoft)                                      tcpip.sys             6.2.9200.16604                        
    tcpipreg         TCP/IP Registry Compatibility                                           tcpipreg.sys          6.2.9200.16384                        
    tdx                NetIO Legacy TDI                                      tdx.sys               6.2.9200.16384                        
    terminpt         Microsoft Remote Desktop Input Driver                                   terminpt.sys          6.2.9200.16384                        
    TPM              TPM                                                                     tpm.sys               6.2.9200.16547                        
    TsUsbFlt         TsUsbFlt                                                                tsusbflt.sys          6.2.9200.16384                        
    TsUsbGD           USB-                     TsUsbGD.sys           6.2.9200.16384                        
    tunnel                Microsoft                        tunnel.sys            6.2.9200.16384                        
    uagp35           Microsoft AGPv3.5                                                 uagp35.sys            6.2.9200.16384                        
    UASPStor          USB- SCSI (UAS)                                       uaspstor.sys          6.2.9200.16384                        
    UCX01000         USB Controller Extension                                                ucx01000.sys          6.2.9200.16656                        
    udfs             udfs                                                                    udfs.sys              6.2.9200.16384             
    uliagpkx         Uli-   AGP                                                    uliagpkx.sys          6.2.9200.16384                        
    umbus            UMBus                                               umbus.sys             6.2.9200.16384                        
    UmPass            UMPass Microsoft                                                umpass.sys            6.2.9200.16384                        
    usbccgp              USB (Microsoft)         usbccgp.sys           6.2.9200.16654                        
    usbcir           eHome   (USBCIR)                                     usbcir.sys            6.2.9200.16658                        
    usbehci            Microsoft USB 2.0  -       usbehci.sys           6.2.9200.16654                        
    usbhub             USB- ()                      usbhub.sys            6.2.9200.16654                        
    USBHUB3           SuperSpeed                                                 UsbHub3.sys           6.2.9200.16654                        
    usbohci            Microsoft USB  -              usbohci.sys           6.2.9200.16461                        
    usbprint           Microsoft USB                                           usbprint.sys          6.2.9200.16656                        
    USBSTOR              USB                                  USBSTOR.SYS           6.2.9200.16384                        
    usbuhci            Microsoft USB  -         usbuhci.sys           6.2.9200.16654                        
    usbvideo         USB- (WDM)                                               usbvideo.sys          6.2.9200.16658                        
    USBXHCI          xHCI- - USB                                    USBXHCI.SYS           6.2.9200.16654                        
    vdrvroot            ()                           vdrvroot.sys          6.2.9200.16384                        
    VerifierExt      VerifierExt                                                             VerifierExt.sys       6.2.9200.16384                        
    vhdmp            vhdmp                                                                   vhdmp.sys             6.2.9200.16547                        
    viaide           viaide                                                                  viaide.sys            6.0.6000.170                          
    Vid              Vid                                                                     Vid.sys               6.2.9200.16384                        
    vmbus             VMBus                                                              vmbus.sys             6.2.9200.16384                        
    VMBusHID         VMBusHID                                                                VMBusHID.sys          6.2.9200.16384                        
    vmbusr             VMBus                                                    vmbusr.sys            6.2.9200.16384                        
    volmgr                                                             volmgr.sys            6.2.9200.16384                        
    volmgrx                                                        volmgrx.sys           6.2.9200.16384                        
    volsnap                                                         volsnap.sys           6.2.9200.16384                        
    vpci             Microsoft Hyper-V Virtual PCI Bus                                       vpci.sys              6.2.9200.16384                        
    vpcivsp           PCI Microsoft Hyper-V                                            vpcivsp.sys           6.2.9200.16384                        
    vsmraid          vsmraid                                                                 vsmraid.sys           7.0.8140.6290                         
    VSTXRAID             VIA StorX  Windows      vstxraid.sys          8.0.8220.8080                         
    vwifibus           Virtual WiFi                                               vwifibus.sys          6.2.9200.16384                        
    vwififlt         Virtual WiFi Filter Driver                                              vwififlt.sys          6.2.9200.16384                        
    vwifimp          Virtual WiFi Miniport Service                                           vwifimp.sys           6.2.9200.16384                        
    WacomPen         Wacom -                                wacompen.sys          6.2.9200.16384                        
    Wanarp              IP ARP                                       wanarp.sys            6.2.9200.16579                        
    Wanarpv6            IPv6 ARP                                     wanarp.sys            6.2.9200.16579                        
    Wd                Microsoft Watchdog                                       wd.sys                6.2.9200.16384                        
    WdBoot              Windows                                      WdBoot.sys            4.2.223.0                             
    Wdf01000                                                 Wdf01000.sys          1.11.9200.16648                       
    WdFilter          -  Windows                                  WdFilter.sys          4.2.223.0                  
    WFPLWFS          Microsoft Windows Filtering Platform                                    wfplwfs.sys           6.2.9200.16384                        
    WIMMount         WIMMount                                                                wimmount.sys          6.2.9200.16384             
    WmiAcpi          Microsoft Windows Management Interface for ACPI                         wmiacpi.sys           6.2.9200.16384                        
    wpcfltr          Family Safety Filter Driver                                             wpcfltr.sys           6.2.9200.16384                        
    WpdUpFltr        WPD Upper Class Filter Driver                                           WpdUpFltr.sys         6.2.9200.16384                        
    ws2ifsl           WinSock IFS                                                     ws2ifsl.sys           6.2.9200.16384                        
    WudfPf           User Mode Driver Frameworks Platform Driver                             WudfPf.sys            6.2.9200.16384                        
    WUDFRd           Windows Driver Foundation - User-mode Driver Framework Reflector        WUDFRd.sys            6.2.9200.16384                        
    WUDFSensorLP       UMDF  LocationProvider                             WUDFRd.sys            6.2.9200.16384                        
    WUDFWpdFs        WUDFWpdFs                                                               WUDFRd.sys            6.2.9200.16384                        


--------[  ]------------------------------------------------------------------------------------------------------

    AdobeARMservice                    Adobe Acrobat Update Service                                            armsvc.exe            1.701.8.51                     LocalSystem
    AdvancedSystemCareService7         Advanced SystemCare Service 7                                           ASCService.exe        7.0.0.15                       LocalSystem
    AeLookupSvc                                                              svchost.exe           6.2.9200.16384                       localSystem
    ALG                                                                             alg.exe               6.2.9200.16384                 NT AUTHORITY\LocalService
    AllUserInstallAgent                     Windows                          svchost.exe           6.2.9200.16384                       LocalSystem
    AppIDSvc                                                                            svchost.exe           6.2.9200.16384                       NT Authority\LocalService
    Appinfo                                                                                 svchost.exe           6.2.9200.16384                       LocalSystem
    AppMgmt                                                                              svchost.exe           6.2.9200.16384                       LocalSystem
    AudioEndpointBuilder                   Windows Audio                        svchost.exe           6.2.9200.16384                       LocalSystem
    Audiosrv                           Windows Audio                                                           svchost.exe           6.2.9200.16384                       NT AUTHORITY\LocalService
    AxInstSV                            ActiveX (AxInstSV)                                           svchost.exe           6.2.9200.16384                       LocalSystem
    BDESVC                                BitLocker                                      svchost.exe           6.2.9200.16384                       localSystem
    BFE                                                                                 svchost.exe           6.2.9200.16384                       NT AUTHORITY\LocalService
    BITS                                   (BITS)                         svchost.exe           6.2.9200.16384                       LocalSystem
    BrcmCardReader                     Broadcom Card Reader Service                                            BrcmCardReader.exe    1.0.1.0                        LocalSystem
    BrokerInfrastructure                                                       svchost.exe           6.2.9200.16384                       LocalSystem
    Browser                                                                                  svchost.exe           6.2.9200.16384                       LocalSystem
    bthserv                              Bluetooth                                              svchost.exe           6.2.9200.16384                       NT AUTHORITY\LocalService
    CertPropSvc                                                                      svchost.exe           6.2.9200.16384                       LocalSystem
    COMSysApp                            COM+                                               dllhost.exe           6.2.9200.16384                 LocalSystem
    cphs                               Intel(R) Content Protection HECI Service                                IntelCpHeciSvc.exe    1.0.1.14                       LocalSystem
    CryptSvc                                                                                 svchost.exe           6.2.9200.16384                       NT Authority\NetworkService
    CscService                                                                                  svchost.exe           6.2.9200.16384                       LocalSystem
    DcomLaunch                            DCOM-                                   svchost.exe           6.2.9200.16384                       LocalSystem
    defragsvc                                                                                 svchost.exe           6.2.9200.16384                 localSystem
    DeviceAssociationService                                                       svchost.exe           6.2.9200.16384                       LocalSystem
    DeviceInstall                                                                      svchost.exe           6.2.9200.16384                       LocalSystem
    Dhcp                               DHCP-                                                             svchost.exe           6.2.9200.16384                       NT Authority\LocalService
    Dnscache                           DNS-                                                              svchost.exe           6.2.9200.16384                       NT AUTHORITY\NetworkService
    dot3svc                                                                              svchost.exe           6.2.9200.16384                       localSystem
    DPS                                                                               svchost.exe           6.2.9200.16384                       NT AUTHORITY\LocalService
    DsiWMIService                      Dritek WMI Service                                                      dsiwmis.exe           3.8.0.3854                     LocalSystem
    DsmSvc                                                                          svchost.exe           6.2.9200.16384                       LocalSystem
    Eaphost                                (EAP)                         svchost.exe           6.2.9200.16384                       localSystem
    EFS                                   (EFS)                                      lsass.exe             6.2.9200.16384                       LocalSystem
    ehRecvr                              Windows Media Center                                    ehRecvr.exe           6.2.9200.16384                 NT AUTHORITY\networkService
    ehSched                              Windows Media Center                                ehsched.exe           6.2.9200.16384                 NT AUTHORITY\networkService
    ekrn                               ESET Service                                                            ekrn.exe              7.0.302.0                      LocalSystem
    ETDService                         Elan Service                                                            ETDService.exe        10.0.0.1                       LocalSystem
    EventLog                             Windows                                                  svchost.exe           6.2.9200.16384                       NT AUTHORITY\LocalService
    EventSystem                          COM+                                                    svchost.exe           6.2.9200.16384                       NT AUTHORITY\LocalService
    Fax                                                                                                    fxssvc.exe            6.2.9200.16384                 NT AUTHORITY\NetworkService
    fdPHost                                                                    svchost.exe           6.2.9200.16384                       NT AUTHORITY\LocalService
    FDResPub                                                               svchost.exe           6.2.9200.16384                       NT AUTHORITY\LocalService
    fhsvc                                                                                   svchost.exe           6.2.9200.16384                       LocalSystem
    FontCache                             Windows                                             svchost.exe           6.2.9200.16384                       NT AUTHORITY\LocalService
    FontCache3.0.0.0                     Windows Presentation Foundation 3.0.0.0                     PresentationFontCache.exe  3.0.6920.6387                  NT Authority\LocalService
    GfExperienceService                NVIDIA GeForce Experience Service                                       GfExperienceService.exe  1.0.0.1                        LocalSystem
    gpsvc                                                                               svchost.exe           6.2.9200.16384                       LocalSystem
    hidserv                              HID-                                                svchost.exe           6.2.9200.16384                       LocalSystem
    hkmsvc                                                      svchost.exe           6.2.9200.16384                       localSystem
    HomeGroupListener                                                              svchost.exe           6.2.9200.16384                       LocalSystem
    HomeGroupProvider                                                                   svchost.exe           6.2.9200.16384                       NT AUTHORITY\LocalService
    IAStorDataMgrSvc                     Intel(R) Rapid                                      IAStorDataMgrSvc.exe  11.5.0.1207                    LocalSystem
    IKEEXT                               IPsec        IP     svchost.exe           6.2.9200.16384                       LocalSystem
    Intel(R) Capability Licensing Service Interface  Intel(R) Capability Licensing Service Interface                         HeciServer.exe        1.24.388.1                     LocalSystem
    iphlpsvc                             IP                                               svchost.exe           6.2.9200.16384                       LocalSystem
    KeyIso                               CNG                                                     lsass.exe             6.2.9200.16384                       LocalSystem
    KMSEmulator                        KMS Server Service                                                      data.dll                                             LocalSystem
    KtmRm                              KtmRm                            svchost.exe           6.2.9200.16384                       NT AUTHORITY\NetworkService
    LanmanServer                                                                                         svchost.exe           6.2.9200.16384                       LocalSystem
    LanmanWorkstation                                                                            svchost.exe           6.2.9200.16384                       NT AUTHORITY\NetworkService
    LiveUpdateSvc                      LiveUpdate                                                              LiveUpdate.exe        2.1.0.1153                     LocalSystem
    lltdsvc                                                                             svchost.exe           6.2.9200.16384                       NT AUTHORITY\LocalService
    lmhosts                              NetBIOS  TCP/IP                                   svchost.exe           6.2.9200.16384                       NT AUTHORITY\LocalService
    LMS                                Intel(R) Management and Security Application Local Management Service   LMS.exe               8.1.0.1252                     LocalSystem
    LSM                                                                               svchost.exe           6.2.9200.16384                       LocalSystem
    Mcx2Svc                              Media Center                                      svchost.exe           6.2.9200.16384                       NT Authority\LocalService
    MMCSS                                                                         svchost.exe           6.2.9200.16384                       LocalSystem
    MpsSvc                              Windows                                                      svchost.exe           6.2.9200.16384                       NT Authority\LocalService
    MSDTC                                                                   msdtc.exe             2001.12.10130.16384                NT AUTHORITY\NetworkService
    MSiSCSI                               iSCSI                                      svchost.exe           6.2.9200.16384                       LocalSystem
    msiserver                           Windows                                                      msiexec.exe           5.0.9200.16384                 LocalSystem
    napagent                                                                         svchost.exe           6.2.9200.16384                       NT AUTHORITY\NetworkService
    NcaSvc                                                                           svchost.exe           6.2.9200.16384                       LocalSystem
    NcdAutoSetup                                                        svchost.exe           6.2.9200.16384                       NT AUTHORITY\LocalService
    Netlogon                                                                                lsass.exe             6.2.9200.16384                       LocalSystem
    Netman                                                                                   svchost.exe           6.2.9200.16384                       LocalSystem
    netprofm                                                                                  svchost.exe           6.2.9200.16384                       NT AUTHORITY\LocalService
    NetTcpPortSharing                       Net.Tcp                                  SMSvcHost.exe         4.0.30319.17929                      NT AUTHORITY\LocalService
    NlaSvc                                                                     svchost.exe           6.2.9200.16384                       NT AUTHORITY\NetworkService
    nsi                                                                          svchost.exe           6.2.9200.16384                       NT Authority\LocalService
    NvNetworkService                   NVIDIA Network Service                                                  NvNetworkService.exe  2.0.2.28                       LocalSystem
    NvStreamSvc                        NVIDIA Streamer Service                                                 nvstreamsvc.exe       3.1.200.0                      LocalSystem
    nvsvc                              NVIDIA Display Driver Service                                           nvvsvc.exe            8.17.13.4411                   LocalSystem
    ose64                              Office 64 Source Engine                                                 OSE.EXE               15.0.4420.1017                 LocalSystem
    p2pimsvc                                                            svchost.exe           6.2.9200.16384                       NT AUTHORITY\LocalService
    p2psvc                                                                         svchost.exe           6.2.9200.16384                       NT AUTHORITY\LocalService
    PcaSvc                                                               svchost.exe           6.2.9200.16384                       LocalSystem
    PeerDistSvc                        BranchCache                                                             svchost.exe           6.2.9200.16384                       NT AUTHORITY\NetworkService
    PerfHost                                                           perfhost.exe          6.2.9200.16384                 NT AUTHORITY\LocalService
    pla                                                                    svchost.exe           6.2.9200.16384                       NT AUTHORITY\LocalService
    PlugPlay                           Plug and Play                                                           svchost.exe           6.2.9200.16384                       LocalSystem
    PNRPAutoReg                            PNRP                                 svchost.exe           6.2.9200.16384                       NT AUTHORITY\LocalService
    PNRPsvc                             PNRP                                                           svchost.exe           6.2.9200.16384                       NT AUTHORITY\LocalService
    PolicyAgent                          IPsec                                                    svchost.exe           6.2.9200.16384                       NT Authority\NetworkService
    Power                                                                                               svchost.exe           6.2.9200.16384                       LocalSystem
    PrintNotify                                                              svchost.exe           6.2.9200.16384                       LocalSystem
    ProfSvc                                                                         svchost.exe           6.2.9200.16384                       LocalSystem
    QWAVE                              Quality Windows Audio Video Experience                                  svchost.exe           6.2.9200.16384                       NT AUTHORITY\LocalService
    RasAuto                                                 svchost.exe           6.2.9200.16384                       localSystem
    RasMan                                                                svchost.exe           6.2.9200.16384                       localSystem
    RemoteAccess                                                                  svchost.exe           6.2.9200.16384                       localSystem
    RemoteRegistry                                                                              svchost.exe           6.2.9200.16384                       NT AUTHORITY\LocalService
    RpcEptMapper                          RPC                                        svchost.exe           6.2.9200.16384                       NT AUTHORITY\NetworkService
    RpcLocator                             (RPC)                                locator.exe           6.2.9200.16384                 NT AUTHORITY\NetworkService
    RpcSs                                 (RPC)                                          svchost.exe           6.2.9200.16384                       NT AUTHORITY\NetworkService
    SamSs                                                                   lsass.exe             6.2.9200.16384                       LocalSystem
    SCardSvr                           -                                                             svchost.exe           6.2.9200.16384                       NT AUTHORITY\LocalService
    Schedule                                                                                 svchost.exe           6.2.9200.16384                       LocalSystem
    SCPolicySvc                          -                                            svchost.exe           6.2.9200.16384                       LocalSystem
    SDRSVC                              Windows                                                       svchost.exe           6.2.9200.16384                 localSystem
    seclogon                                                                              svchost.exe           6.2.9200.16384                       LocalSystem
    SENS                                                                    svchost.exe           6.2.9200.16384                       LocalSystem
    SensrSvc                                                                        svchost.exe           6.2.9200.16384                       NT AUTHORITY\LocalService
    SessionEnv                                                           svchost.exe           6.2.9200.16384                       localSystem
    SharedAccess                             (ICS)                            svchost.exe           6.2.9200.16384                       LocalSystem
    ShellHWDetection                                                            svchost.exe           6.2.9200.16384                       LocalSystem
    SkypeUpdate                        Skype Updater                                                           Updater.exe           6.8.0.112                      LocalSystem
    SNMPTRAP                            SNMP                                                            snmptrap.exe          6.2.9200.16384                 NT AUTHORITY\LocalService
    Spooler                                                                                     spoolsv.exe           6.2.9200.16384                 LocalSystem
    sppsvc                                                                        sppsvc.exe            6.2.9200.16693                 NT AUTHORITY\NetworkService
    SSDPSRV                             SSDP                                                        svchost.exe           6.2.9200.16384                       NT AUTHORITY\LocalService
    SstpSvc                             SSTP                                                             svchost.exe           6.2.9200.16384                       NT Authority\LocalService
    stisvc                                Windows (WIA)                               svchost.exe           6.2.9200.16384                 NT Authority\LocalService
    StorSvc                                                                                     svchost.exe           6.2.9200.16384                       LocalSystem
    svsvc                                                                                       svchost.exe           6.2.9200.16384                       LocalSystem
    swprv                                  (Microsoft)                  svchost.exe           6.2.9200.16384                 LocalSystem
    SysMain                            Superfetch                                                              svchost.exe           6.2.9200.16384                       LocalSystem
    SystemEventsBroker                                                                   svchost.exe           6.2.9200.16384                       LocalSystem
    TabletInputService                                         svchost.exe           6.2.9200.16384                       LocalSystem
    TapiSrv                                                                                           svchost.exe           6.2.9200.16384                       NT AUTHORITY\NetworkService
    TermService                                                                    svchost.exe           6.2.9200.16384                       NT Authority\NetworkService
    Themes                                                                                                 svchost.exe           6.2.9200.16384                       LocalSystem
    THREADORDER                                                                       svchost.exe           6.2.9200.16384                       NT AUTHORITY\LocalService
    TimeBroker                                                                                    svchost.exe           6.2.9200.16384                       NT AUTHORITY\LocalService
    TrkWks                                                                 svchost.exe           6.2.9200.16384                       LocalSystem
    TrustedInstaller                     Windows                                              TrustedInstaller.exe  6.2.9200.16384                 localSystem
    UI0Detect                                                                     UI0Detect.exe         6.2.9200.16384                 LocalSystem
    UmRdpService                                svchost.exe           6.2.9200.16384                       localSystem
    UNS                                Intel(R) Management and Security Application User Notification Service  UNS.exe               8.1.0.1252                     LocalSystem
    upnphost                             PNP-                                        svchost.exe           6.2.9200.16384                       NT AUTHORITY\LocalService
    VaultSvc                                                                             lsass.exe             6.2.9200.16384                       LocalSystem
    vds                                                                                         vds.exe               6.2.9200.16384                 LocalSystem
    vmicheartbeat                        (Hyper-V)                                                 svchost.exe           6.2.9200.16384                       LocalSystem
    vmickvpexchange                       (Hyper-V)                                         svchost.exe           6.2.9200.16384                       LocalSystem
    vmicrdv                                 Hyper-V                   svchost.exe           6.2.9200.16384                       LocalSystem
    vmicshutdown                             (Hyper-V)                     svchost.exe           6.2.9200.16384                       LocalSystem
    vmictimesync                          Hyper-V                                    svchost.exe           6.2.9200.16384                       NT AUTHORITY\LocalService
    vmicvss                                  Hyper-V                    svchost.exe           6.2.9200.16384                       LocalSystem
    VSS                                                                                  vssvc.exe             6.2.9200.16604                 LocalSystem
    W32Time                              Windows                                                  svchost.exe           6.2.9200.16384                       NT AUTHORITY\LocalService
    wbengine                                                                wbengine.exe          6.2.9200.16384                 localSystem
    WbioSrvc                             Windows                                           svchost.exe           6.2.9200.16384                       LocalSystem
    Wcmsvc                               Windows                                           svchost.exe           6.2.9200.16384                       NT Authority\LocalService
    wcncsvc                              Windows -                   svchost.exe           6.2.9200.16384                       NT AUTHORITY\LocalService
    WcsPlugInService                     Windows (WCS)                                          svchost.exe           6.2.9200.16384                       NT AUTHORITY\LocalService
    WdiServiceHost                                                                        svchost.exe           6.2.9200.16384                       NT AUTHORITY\LocalService
    WdiSystemHost                                                                        svchost.exe           6.2.9200.16384                       LocalSystem
    WebClient                          -                                                              svchost.exe           6.2.9200.16384                       NT AUTHORITY\LocalService
    Wecsvc                               Windows                                                 svchost.exe           6.2.9200.16384                       NT AUTHORITY\NetworkService
    wercplsupport                          "     "  svchost.exe           6.2.9200.16384                       localSystem
    WerSvc                                Windows                                       svchost.exe           6.2.9200.16384                       localSystem
    WiaRpc                                                               svchost.exe           6.2.9200.16384                       LocalSystem
    WinDefend                            Windows                                                MsMpEng.exe                                          LocalSystem
    WinHttpAutoProxySvc                   - WinHTTP                   svchost.exe           6.2.9200.16384                       NT AUTHORITY\LocalService
    Winmgmt                              Windows                                       svchost.exe           6.2.9200.16384                       localSystem
    WinRM                                 Windows (WS-Management)                    svchost.exe           6.2.9200.16384                       NT AUTHORITY\NetworkService
    WlanSvc                              WLAN                                               svchost.exe           6.2.9200.16384                       LocalSystem
    wlidsvc                                                             svchost.exe           6.2.9200.16384                       LocalSystem
    wmiApSrv                             WMI                                          WmiApSrv.exe          6.2.9200.16384                 localSystem
    WMPNetworkSvc                           Windows Media               wmpnetwk.exe                                         NT AUTHORITY\NetworkService
    WPCSvc                                                                                 svchost.exe           6.2.9200.16384                       NT Authority\LocalService
    WPDBusEnum                                                           svchost.exe           6.2.9200.16384                       LocalSystem
    wscsvc                                                                         svchost.exe           6.2.9200.16384                       NT AUTHORITY\LocalService
    WSearch                            Windows Search                                                          SearchIndexer.exe     7.0.9200.16578                 LocalSystem
    WSService                            Windows (WSService)                                     svchost.exe           6.2.9200.16384                       NT AUTHORITY\LocalService
    wuauserv                             Windows                                                svchost.exe           6.2.9200.16384                       LocalSystem
    wudfsvc                            Windows Driver Foundation - User-mode Driver Framework                  svchost.exe           6.2.9200.16384                       LocalSystem
    WwanSvc                             WWAN                                                      svchost.exe           6.2.9200.16384                       NT Authority\LocalService


--------[  AX ]----------------------------------------------------------------------------------------------------

    bdaplgin.ax                6.2.9200.16384              Microsoft BDA Device Control Plug-in for MPEG2 based networks.
    g711codc.ax                6.2.9200.16384              Intel G711 CODEC
    iac25_32.ax                2.0.5.53                      Indeo audio
    ir41_32.ax                 6.2.9200.16384              IR41_32 WRAPPER DLL
    ivfsrc.ax                  5.10.2.51                    Intel Indeo video IVF  5.10
    ksproxy.ax                 6.2.9200.16384              WDM Streaming ActiveMovie Proxy
    kstvtune.ax                6.2.9200.16384               - WDM
    kswdmcap.ax                6.2.9200.16384                WDM
    ksxbar.ax                  6.2.9200.16384              WDM Streaming Crossbar
    mpeg2data.ax               6.6.9200.16384              Microsoft MPEG-2 Section and Table Acquisition Module
    mpg2splt.ax                6.6.9200.16384              DirectShow MPEG-2 Splitter.
    msdvbnp.ax                 6.6.9200.16384              Microsoft Network Provider for MPEG2 based networks.
    msnp.ax                    6.6.9200.16384              Microsoft Network Provider for MPEG2 based networks.
    psisrndr.ax                6.6.9200.16384              Microsoft Transport Information Filter for MPEG2 based networks.
    vbicodec.ax                6.6.9200.16384              Microsoft VBI Codec
    vbisurf.ax                 6.2.9200.16384              VBI Surface Allocator Filter
    vidcap.ax                  6.2.9200.16384              Video Capture Interface Server
    wstpager.ax                6.6.9200.16384              Microsoft Teletext Server


--------[  DLL ]---------------------------------------------------------------------------------------------------

    aaclient.dll               6.2.9200.16384                  
    accessibilitycpl.dll       6.2.9200.16384                 
    acctres.dll                6.2.9200.16384                     (Microsoft)
    acledit.dll                6.2.9200.16384                 ACL
    aclui.dll                  6.2.9200.16384                
    acppage.dll                6.2.9200.16384                  ""
    actioncenter.dll           6.2.9200.16384               
    actioncentercpl.dll        6.2.9200.16384                 
    activeds.dll               6.2.9200.16384               DLL   AD
    actxprxy.dll               6.2.9200.16519              ActiveX Interface Marshaling Library
    admtmpl.dll                6.2.9200.16384               " "
    adprovider.dll             6.2.9200.16384               DLL adprovider
    adrclient.dll              6.2.9200.16434                 "  " ()
    adsldp.dll                 6.2.9200.16384              ADs LDAP Provider DLL
    adsldpc.dll                6.2.9200.16384               DLL  LDAP AD
    adsmsext.dll               6.2.9200.16384              ADs LDAP Provider DLL
    adsnt.dll                  6.2.9200.16384               DLL    Windows NT
    adtschema.dll              6.2.9200.16384                 
    advapi32.dll               6.2.9200.16384                API Windows 32
    advpack.dll                10.0.9200.16384             ADVPACK
    aecache.dll                6.2.9200.16384              AECache Sysprep Plugin
    aeevts.dll                 6.2.9200.16384                  
    amstream.dll               6.6.9200.16384              DirectShow Runtime.
    apds.dll                   6.2.9200.16384                  Microsoft
    api-ms-win-appmodel-identity-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-appmodel-runtime-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-appmodel-state-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-base-bootconfig-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-base-util-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-apiquery-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-appcompat-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-appinit-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-atoms-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-bem-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-bicltapi-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-biplmapi-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-biptcltapi-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-com-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-comm-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-com-private-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-console-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-console-l2-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-crt-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-crt-l2-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-datetime-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-datetime-l1-1-1.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-debug-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-debug-l1-1-1.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-delayload-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-delayload-l1-1-1.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-errorhandling-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-errorhandling-l1-1-1.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-fibers-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-fibers-l1-1-1.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-fibers-l2-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-file-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-file-l1-2-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-file-l2-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-firmware-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-handle-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-heap-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-heap-l1-2-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-heap-obsolete-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-interlocked-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-interlocked-l1-2-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-io-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-io-l1-1-1.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-job-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-job-l2-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-kernel32-legacy-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-kernel32-private-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-libraryloader-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-libraryloader-l1-1-1.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-localization-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-localization-l1-2-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-localization-l2-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-localization-obsolete-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-localization-private-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-localregistry-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-memory-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-memory-l1-1-1.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-multipleproviderrouter-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-namedpipe-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-namedpipe-l1-2-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-namespace-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-normalization-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-path-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-privateprofile-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-processenvironment-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-processenvironment-l1-2-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-processsecurity-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-processthreads-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-processthreads-l1-1-1.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-processtopology-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-processtopology-obsolete-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-profile-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-psapi-ansi-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-psapi-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-psapi-obsolete-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-psm-app-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-psm-info-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-psm-plm-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-realtime-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-registry-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-registry-l2-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-registry-private-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-registryuserspecific-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-rtlsupport-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-rtlsupport-l1-2-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-shlwapi-legacy-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-shlwapi-obsolete-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-shutdown-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-sidebyside-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-stringansi-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-string-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-string-l2-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-stringloader-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-string-obsolete-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-synch-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-synch-l1-2-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-sysinfo-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-sysinfo-l1-2-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-systemtopology-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-threadpool-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-threadpool-l1-2-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-threadpool-legacy-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-threadpool-private-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-timezone-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-timezone-private-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-toolhelp-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-url-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-util-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-versionansi-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-version-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-version-private-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-windowserrorreporting-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-winrt-error-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-winrt-errorprivate-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-winrt-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-winrt-propertysetprivate-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-winrt-registration-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-winrt-robuffer-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-winrt-roparameterizediid-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-winrt-string-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-wow64-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-xstate-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-core-xstate-l1-1-1.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-devices-config-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-devices-query-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-devices-swdevice-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-downlevel-advapi32-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-downlevel-advapi32-l2-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-downlevel-normaliz-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-downlevel-ole32-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-downlevel-shell32-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-downlevel-shlwapi-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-downlevel-shlwapi-l2-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-downlevel-user32-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-downlevel-version-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-dx-d3dkmt-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-eventing-classicprovider-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-eventing-consumer-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-eventing-controller-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-eventing-legacy-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-eventing-obsolete-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-eventing-provider-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-eventlog-legacy-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-eventlog-private-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-gdi-ie-rgn-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-http-time-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-input-ie-interactioncontext-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-mm-joystick-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-mm-mci-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-mm-misc-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-mm-misc-l2-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-mm-mme-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-mm-playsound-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-mm-time-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-net-isolation-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-ntuser-dc-access-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-ntuser-ie-clipboard-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-ntuser-ie-message-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-ntuser-ie-window-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-ntuser-ie-wmpointer-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-ntuser-rectangle-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-ntuser-sysparams-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-ntuser-uicontext-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-ole32-ie-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-power-base-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-power-setting-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-ro-typeresolution-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-security-activedirectoryclient-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-security-appcontainer-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-security-audit-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-security-base-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-security-base-l1-2-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-security-base-private-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-security-credentials-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-security-credentials-l2-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-security-grouppolicy-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-security-lsalookup-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-security-lsalookup-l1-1-1.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-security-lsalookup-l2-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-security-lsapolicy-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-security-provider-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-security-sddl-ansi-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-security-sddl-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-security-sddlparsecond-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-security-systemfunctions-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-security-trustee-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-service-core-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-service-core-l1-1-1.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-service-management-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-service-management-l2-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-service-private-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-service-winsvc-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-service-winsvc-l1-2-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-shcore-comhelpers-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-shcore-obsolete-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-shcore-registry-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-shcore-scaling-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-shcore-stream-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-shcore-stream-winrt-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-shcore-sysinfo-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-shcore-thread-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-shcore-unicodeansi-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-shell-shellcom-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-shell-shellfolders-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    api-ms-win-shlwapi-ie-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    apphelp.dll                6.2.9200.16384                 
    apphlpdm.dll               6.2.9200.16384                 
    appidapi.dll               6.2.9200.16384               API-  
    appidpolicyengineapi.dll   6.2.9200.16384              AppId Policy Engine API Module
    appmgmts.dll               6.2.9200.16384                
    appmgr.dll                 6.2.9200.16384                 
    apprepapi.dll              6.2.9200.16666              Application Reputation APIs Dll
    apprepsync.dll             6.2.9200.16666               AppRepSync
    appxalluserstore.dll       6.2.9200.16384              AppX All User Store DLL
    appxdeploymentclient.dll   6.2.9200.16384              DLL-   AppX
    appxpackaging.dll          6.2.9200.16384                  Appx
    appxsip.dll                6.2.9200.16384              Appx Subject Interface Package
    asferror.dll               12.0.9200.16384               ASF
    aspnet_counters.dll        4.0.30319.17929             Microsoft ASP.NET Performance Counter Shim DLL
    asycfilt.dll               6.2.9200.16384              
    atl.dll                    3.5.2284.0                  ATL Module for Windows XP (Unicode)
    atl100.dll                 10.0.40219.325              ATL Module for Windows
    atmfd.dll                  5.1.2.237                   Windows NT OpenType/Type 1 Font Driver
    atmlib.dll                 5.1.2.237                   Windows NT OpenType/Type 1 API Library.
    audiodev.dll               6.2.9200.16384                   
    audioeng.dll               6.2.9200.16578              Audio Engine
    audiokse.dll               6.2.9200.16451              Audio Ks Endpoint
    audioses.dll               6.2.9200.16578                
    auditnativesnapin.dll      6.2.9200.16384                    
    auditpolicygpinterop.dll   6.2.9200.16384                 
    auditpolmsg.dll            6.2.9200.16384                MMC  
    authbroker.dll             6.2.9200.16384              API WinRT  - 
    authext.dll                6.2.9200.16384                 
    authfwcfg.dll              6.2.9200.16384               Windows      
    authfwgp.dll               6.2.9200.16384               Windows c      
    authfwsnapin.dll           6.2.9200.16384              Microsoft.WindowsFirewall.SnapIn
    authfwwizfwk.dll           6.2.9200.16384              Wizard Framework
    authui.dll                 6.2.9200.16604                
    authz.dll                  6.2.9200.16384              Authorization Framework
    autoplay.dll               6.2.9200.16384               ( )
    auxiliarydisplayapi.dll    6.2.9200.16384              Microsoft Windows SideShow API
    auxiliarydisplaycpl.dll    6.2.9200.16384                Microsoft Windows SideShow
    avicap32.dll               6.2.9200.16384                 AVI
    avifil32.dll               6.2.9200.16384                 AVI
    avrt.dll                   6.2.9200.16384              Multimedia Realtime Runtime
    azroles.dll                6.2.9200.16384              azroles Module
    azroleui.dll               6.2.9200.16384               
    azsqlext.dll               6.2.9200.16384              AzMan Sql Audit Extended Stored Procedures Dll
    basecsp.dll                6.2.9200.16384                 - (Microsoft)
    batmeter.dll               6.2.9200.16384              Battery Meter Helper DLL
    bcp47langs.dll             6.2.9200.16604              BCP47 Language Classes
    bcrypt.dll                 6.2.9200.16384                 Windows
    bcryptprimitives.dll       6.2.9200.16384              Windows Cryptographic Primitives Library
    bidispl.dll                6.2.9200.16384              Bidispl DLL
    biocredprov.dll            6.2.9200.16384                 WinBio
    bitsperf.dll               7.6.9200.16384              Perfmon Counter Access
    bitsprx2.dll               7.6.9200.16384              Background Intelligent Transfer Service Proxy
    bitsprx3.dll               7.6.9200.16384              Background Intelligent Transfer Service 2.0 Proxy
    bitsprx4.dll               7.6.9200.16384              Background Intelligent Transfer Service 2.5 Proxy
    bitsprx5.dll               7.6.9200.16384              Background Intelligent Transfer Service 3.0 Proxy
    bitsprx6.dll               7.6.9200.16384              Background Intelligent Transfer Service 4.0 Proxy
    bitsprx7.dll               7.6.9200.16384              Background Intelligent Transfer Service 5.0 Proxy
    biwinrt.dll                6.2.9200.16604              Windows Background Broker Infrastructure
    blackbox.dll               11.0.9200.16384             BlackBox DLL
    bluetoothapis.dll          6.2.9200.16384              Bluetooth Usermode Api host
    bootvid.dll                6.2.9200.16384              VGA Boot Driver
    browcli.dll                6.2.9200.16384              Browser Service Client DLL
    browseui.dll               6.2.9200.16384              Shell Browser UI Library
    btpanui.dll                6.2.9200.16384                Bluetooth   
    bwcontexthandler.dll       1.0.0.1                      ContextH
    c_g18030.dll               6.2.9200.16384              GB18030 DBCS-Unicode Conversion DLL
    c_is2022.dll               6.2.9200.16384              ISO-2022 Code Page Translation DLL
    c_iscii.dll                6.2.9200.16384              ISCII Code Page Translation DLL
    cabinet.dll                6.2.9200.16384              Microsoft Cabinet File API
    cabview.dll                6.2.9200.16384                 CAB-
    callbuttons.dll            6.2.9200.16384              Windows Runtime CallButtonsServer DLL
    callbuttons.proxystub.dll  6.2.9200.16384              Windows Runtime CallButtonsServer ProxyStub DLL
    capiprovider.dll           6.2.9200.16384               DLL capiprovider
    capisp.dll                 6.2.9200.16384              Sysprep cleanup dll for CAPI
    catsrv.dll                 2001.12.10130.16384         COM+ Configuration Catalog Server
    catsrvps.dll               2001.12.10130.16384         COM+ Configuration Catalog Server Proxy/Stub
    catsrvut.dll               2001.12.10130.16384         COM+ Configuration Catalog Server Utilities
    cca.dll                    6.6.9200.16384              CCA DirectShow Filter.
    cdosys.dll                 6.6.9200.16384              Microsoft CDO for Windows Library
    certca.dll                 6.2.9200.16384                 Microsoft Active Directory
    certcli.dll                6.2.9200.16384                 Microsoft Active Directory
    certcredprovider.dll       6.2.9200.16384                 
    certenc.dll                6.2.9200.16384              Active Directory Certificate Services Encoding
    certenroll.dll             6.2.9200.16384                  Active Directory Microsoft
    certenrollui.dll           6.2.9200.16384                  X509
    certmgr.dll                6.2.9200.16384                
    certpoleng.dll             6.2.9200.16384                
    cewmdm.dll                 12.0.9200.16384               Windows CE WMDM
    cfgbkend.dll               6.2.9200.16384              Configuration Backend Interface
    cfgmgr32.dll               6.2.9200.16384              Configuration Manager DLL
    cfmifs.dll                 6.2.9200.16384              FmIfs Engine
    cfmifsproxy.dll            6.2.9200.16384              Microsoft FmIfs Proxy Library
    chartv.dll                 6.2.9200.16384              Chart View
    chsbrkr.dll                6.2.9200.16384              Simplified Chinese Word Breaker
    chtbrkr.dll                6.2.9200.16384              Chinese Traditional Word Breaker
    chxreadingstringime.dll    6.2.9200.16384              CHxReadingStringIME
    cic.dll                    6.2.9200.16384                CIC - MMC   
    clb.dll                    6.2.9200.16384                
    clbcatq.dll                2001.12.10130.16384         COM+ Configuration Catalog
    clfsw32.dll                6.2.9200.16384              Common Log Marshalling Win32 DLL
    cliconfg.dll               6.2.9200.16384              SQL Client Configuration Utility DLL
    clrhost.dll                6.2.9200.16384              In Proc server for managed servers in the Windows Runtime
    clusapi.dll                6.2.9200.16384               API 
    cmcfg32.dll                7.2.9200.16384                  Microsoft
    cmdext.dll                 6.2.9200.16384              cmd.exe Extension DLL
    cmdial32.dll               7.2.9200.16384               
    cmifw.dll                  6.2.9200.16384              Windows Firewall rule configuration plug-in
    cmipnpinstall.dll          6.2.9200.16384              PNP plugin installer for CMI
    cmlua.dll                  7.2.9200.16384                API   
    cmpbk32.dll                7.2.9200.16384              Microsoft Connection Manager Phonebook
    cmstplua.dll               7.2.9200.16384                API      
    cmutil.dll                 7.2.9200.16384                  (Microsoft)
    cngcredui.dll              6.2.9200.16384               Microsoft CNG CredUI
    cngprovider.dll            6.2.9200.16384               DLL cngprovider
    cnvfat.dll                 6.2.9200.16384              FAT File System Conversion Utility DLL
    colbact.dll                2001.12.10130.16384         COM+
    colorcnv.dll               6.2.9200.16384              Windows Media Color Conversion
    colorui.dll                6.2.9200.16384                 
    combase.dll                6.2.9200.16384              Microsoft COM  Windows
    comcat.dll                 6.2.9200.16384              Microsoft Component Category Manager Library
    comctl32.dll               5.82.9200.16657                  
    comdlg32.dll               6.2.9200.16384                 
    compobj.dll                2.10.35.35                  OLE 2.1 16/32 Interoperability Library
    compstui.dll               6.2.9200.16384                   
    comrepl.dll                2001.12.10130.16384         COM+
    comres.dll                 2001.12.10130.16384          COM+
    comsnap.dll                2001.12.10130.16384         COM+ Explorer MMC Snapin
    comsvcs.dll                2001.12.10130.16384         COM+ Services
    comuid.dll                 2001.12.10130.16384         COM+ Explorer UI
    connect.dll                6.2.9200.16384               
    connectedaccountstate.dll  6.2.9200.16384              ConnectedAccountState.dll
    console.dll                6.2.9200.16384                 
    cpfilters.dll              6.6.9200.16384               PTFilter & Encypter/Decrypter Tagger Filters.
    credssp.dll                6.2.9200.16384              Credential Delegation Security Package
    credui.dll                 6.2.9200.16384                 
    crtdll.dll                 4.0.1183.1                  Microsoft C Runtime Library
    crypt32.dll                6.2.9200.16727              API32 
    cryptbase.dll              6.2.9200.16384              Base cryptographic API DLL
    cryptdlg.dll               6.2.9200.16569                
    cryptdll.dll               6.2.9200.16384              Cryptography Manager
    cryptext.dll               6.2.9200.16384                
    cryptnet.dll               6.2.9200.16592              Crypto Network Related API
    cryptowinrt.dll            6.2.9200.16384              Crypto WinRT Library
    cryptsp.dll                6.2.9200.16384              Cryptographic Service Provider API
    cryptui.dll                6.2.9200.16384                
    cryptuiwizard.dll          6.2.9200.16384                 (Microsoft)
    cryptxml.dll               6.2.9200.16384              API- XML DigSig
    cscapi.dll                 6.2.9200.16384              Offline Files Win32 API
    cscdll.dll                 6.2.9200.16384              Offline Files Temporary Shim
    cscobj.dll                 6.2.9200.16384               COM-   CSC API
    csver.dll                  9.3.0.1021                  CSVer
    ctl3d32.dll                2.31.0.0                    Ctl3D 3D Windows Controls
    d2d1.dll                   6.2.9200.16384               Microsoft D2D
    d3d10.dll                  6.2.9200.16384              Direct3D 10 Runtime
    d3d10_1.dll                6.2.9200.16384              Direct3D 10.1 Runtime
    d3d10_1core.dll            6.2.9200.16384              Direct3D 10.1 Runtime
    d3d10core.dll              6.2.9200.16384              Direct3D 10 Runtime
    d3d10level9.dll            6.2.9200.16384              Direct3D 10 to Direct3D9 Translation Runtime
    d3d10warp.dll              6.2.9200.16384              Direct3D 10 Rasterizer
    d3d11.dll                  6.2.9200.16384              Direct3D 11 Runtime
    d3d8.dll                   6.2.9200.16384              Microsoft Direct3D
    d3d8thk.dll                6.2.9200.16384              Microsoft Direct3D OS Thunk Layer
    d3d9.dll                   6.2.9200.16384              Direct3D 9 Runtime
    d3dcompiler_33.dll         9.18.904.15                 Microsoft Direct3D
    d3dcompiler_34.dll         9.19.949.46                 Microsoft Direct3D
    d3dcompiler_35.dll         9.19.949.1104               Microsoft Direct3D
    d3dcompiler_36.dll         9.19.949.2111               Microsoft Direct3D
    d3dcompiler_37.dll         9.22.949.2248               Microsoft Direct3D
    d3dcompiler_38.dll         9.23.949.2378               Microsoft Direct3D
    d3dcompiler_39.dll         9.24.949.2307               Microsoft Direct3D
    d3dcompiler_40.dll         9.24.950.2656               Direct3D HLSL Compiler
    d3dcompiler_41.dll         9.26.952.2844               Direct3D HLSL Compiler
    d3dcompiler_42.dll         9.27.952.3022               Direct3D HLSL Compiler
    d3dcompiler_43.dll         9.29.952.3111               Direct3D HLSL Compiler
    d3dcsx_42.dll              9.27.952.3022               Direct3D 10.1 Extensions
    d3dcsx_43.dll              9.29.952.3111               Direct3D 10.1 Extensions
    d3dim.dll                  6.2.9200.16384              Microsoft Direct3D
    d3dim700.dll               6.2.9200.16384              Microsoft Direct3D
    d3dramp.dll                6.2.9200.16384              Microsoft Direct3D
    d3dx10.dll                 9.16.843.0                  Microsoft Direct3D
    d3dx10_33.dll              9.18.904.21                 Microsoft Direct3D
    d3dx10_34.dll              9.19.949.46                 Microsoft Direct3D
    d3dx10_35.dll              9.19.949.1104               Microsoft Direct3D
    d3dx10_36.dll              9.19.949.2009               Microsoft Direct3D
    d3dx10_37.dll              9.19.949.2187               Microsoft Direct3D
    d3dx10_38.dll              9.23.949.2378               Microsoft Direct3D
    d3dx10_39.dll              9.24.949.2307               Microsoft Direct3D
    d3dx10_40.dll              9.24.950.2656               Direct3D 10.1 Extensions
    d3dx10_41.dll              9.26.952.2844               Direct3D 10.1 Extensions
    d3dx10_42.dll              9.27.952.3001               Direct3D 10.1 Extensions
    d3dx10_43.dll              9.29.952.3111               Direct3D 10.1 Extensions
    d3dx11_42.dll              9.27.952.3022               Direct3D 10.1 Extensions
    d3dx11_43.dll              9.29.952.3111               Direct3D 10.1 Extensions
    d3dx9_24.dll               9.5.132.0                   Microsoft DirectX for Windows
    d3dx9_25.dll               9.6.168.0                   Microsoft DirectX for Windows
    d3dx9_26.dll               9.7.239.0                   Microsoft DirectX for Windows
    d3dx9_27.dll               9.8.299.0                   Microsoft DirectX for Windows
    d3dx9_28.dll               9.10.455.0                  Microsoft DirectX for Windows
    d3dx9_29.dll               9.11.519.0                  Microsoft DirectX for Windows
    d3dx9_30.dll               9.12.589.0                  Microsoft DirectX for Windows
    d3dx9_31.dll               9.15.779.0                  Microsoft DirectX for Windows
    d3dx9_32.dll               9.16.843.0                  Microsoft DirectX for Windows
    d3dx9_33.dll               9.18.904.15                 Microsoft DirectX for Windows
    d3dx9_34.dll               9.19.949.46                 Microsoft DirectX for Windows
    d3dx9_35.dll               9.19.949.1104               Microsoft DirectX for Windows
    d3dx9_36.dll               9.19.949.2111               Microsoft DirectX for Windows
    d3dx9_37.dll               9.22.949.2248               Microsoft DirectX for Windows
    d3dx9_38.dll               9.23.949.2378               Microsoft DirectX for Windows
    d3dx9_39.dll               9.24.949.2307               Microsoft DirectX for Windows
    d3dx9_40.dll               9.24.950.2656               Direct3D 9 Extensions
    d3dx9_41.dll               9.26.952.2844               Direct3D 9 Extensions
    d3dx9_42.dll               9.27.952.3001               Direct3D 9 Extensions
    d3dx9_43.dll               9.29.952.3111               Direct3D 9 Extensions
    d3dxof.dll                 6.2.9200.16384              DirectX Files DLL
    dafprintprovider.dll       6.2.9200.16384               DLL   DAF
    daotpcredentialprovider.dll  6.2.9200.16384                ,    DirectAccess
    dataclen.dll               6.2.9200.16384                 Windows
    davclnt.dll                6.2.9200.16384              Web DAV Client DLL
    davhlpr.dll                6.2.9200.16384              DAV Helper DLL
    dbgeng.dll                 6.2.9200.16384              Windows Symbolic Debugger Engine
    dbghelp.dll                6.2.9200.16384              Windows Image Helper
    dbnetlib.dll               6.2.9200.16384              Winsock Oriented Net DLL for SQL Clients
    dbnmpntw.dll               6.2.9200.16384              Named Pipes Net DLL for SQL Clients
    dciman32.dll               6.2.9200.16453              DCI Manager
    dcomp.dll                  6.2.9200.16384              Microsoft DirectComposition Library
    ddaclsys.dll               6.2.9200.16384              SysPrep module for Resetting Data Drive ACL 
    ddoiproxy.dll              6.2.9200.16384              DDOI Interface Proxy
    ddores.dll                 6.2.9200.16384                  
    ddraw.dll                  6.2.9200.16384              Microsoft DirectDraw
    ddrawex.dll                6.2.9200.16384              Direct Draw Ex
    delegatorprovider.dll      6.2.9200.16384              WMI PassThru Provider for Storage Management
    deskadp.dll                6.2.9200.16384                 
    deskmon.dll                6.2.9200.16384                
    devdispitemprovider.dll    6.2.9200.16548              DeviceItem inproc devquery subsystem
    devenum.dll                6.6.9200.16384               .
    deviceaccess.dll           6.2.9200.16384              Device Broker And Policy COM Server
    deviceassociation.dll      6.2.9200.16384              Device Association Client DLL
    devicecenter.dll           6.2.9200.16384                
    devicedisplaystatusmanager.dll  6.2.9200.16384                 
    devicemetadataparsers.dll  6.2.9200.16384              Common Device Metadata parsers
    devicepairing.dll          6.2.9200.16604               ,   
    devicepairingfolder.dll    6.2.9200.16384                 
    devicepairingproxy.dll     6.2.9200.16384              Device Pairing Proxy Dll
    deviceuxres.dll            6.2.9200.16384              Windows Device User Experience Resource File
    devmgr.dll                 6.2.9200.16384                 
    devobj.dll                 6.2.9200.16384              Device Information Set DLL
    devrtl.dll                 6.2.9200.16384              Device Management Run Time Library
    dfscli.dll                 6.2.9200.16384              Windows NT Distributed File System Client DLL
    dfshim.dll                 4.0.41209.0                     ClickOnce
    dfsshlex.dll               6.2.9200.16384                   DFS
    dhcpcmonitor.dll           6.2.9200.16384               (DLL)   DHCP
    dhcpcore.dll               6.2.9200.16384               DHCP-
    dhcpcore6.dll              6.2.9200.16384               DHCPv6
    dhcpcsvc.dll               6.2.9200.16384               DHCP-
    dhcpcsvc6.dll              6.2.9200.16384               DHCPv6
    dhcpqec.dll                6.2.9200.16384                   Microsoft DHCP
    dhcpsapi.dll               6.2.9200.16384               API  DHCP-c
    difxapi.dll                2.1.0.0                     Driver Install Frameworks for API library module
    dimsjob.dll                6.2.9200.16384               DLL  DIMS
    dimsroam.dll               6.2.9200.16384               DLL  DIMS  
    dinput.dll                 6.2.9200.16384              Microsoft DirectInput
    dinput8.dll                6.2.9200.16384              Microsoft DirectInput
    directdb.dll               6.2.9200.16384              Microsoft Direct Database API
    diskcopy.dll               6.2.9200.16384              Windows DiskCopy
    dismapi.dll                6.2.9200.16384              DISM API Framework
    dispex.dll                 5.8.9200.16384              Microsoft  DispEx
    display.dll                6.2.9200.16384                
    dlnashext.dll              12.0.9200.16384             DLNA Namespace DLL
    dmband.dll                 6.2.9200.16384              Microsoft DirectMusic Band
    dmcompos.dll               6.2.9200.16384              Microsoft DirectMusic Composer
    dmdlgs.dll                 6.2.9200.16384              Disk Management Snap-in Dialogs
    dmdskmgr.dll               6.2.9200.16384              Disk Management Snap-in Support Library
    dmdskres.dll               6.2.9200.16384                 
    dmdskres2.dll              6.2.9200.16384                 
    dmime.dll                  6.2.9200.16384              Microsoft DirectMusic Interactive Engine
    dmintf.dll                 6.2.9200.16384              Disk Management DCOM Interface Stub
    dmloader.dll               6.2.9200.16384              Microsoft DirectMusic Loader
    dmocx.dll                  6.2.9200.16384              TreeView OCX
    dmscript.dll               6.2.9200.16384              Microsoft DirectMusic Scripting
    dmstyle.dll                6.2.9200.16384              Microsoft DirectMusic Style Engline
    dmsynth.dll                6.2.9200.16384              Microsoft DirectMusic Software Synthesizer
    dmusic.dll                 6.2.9200.16384                Microsoft DirectMusic
    dmutil.dll                 6.2.9200.16384                 
    dmvdsitf.dll               6.2.9200.16578              Disk Management Snap-in Support Library
    dnsapi.dll                 6.2.9200.16384                API DNS-
    dnscmmc.dll                6.2.9200.16384               DLL  DNS  MMC
    docprop.dll                6.2.9200.16384                OLE
    dot3api.dll                6.2.9200.16384              802.3 Autoconfiguration API
    dot3cfg.dll                6.2.9200.16384               Netsh  802.3
    dot3dlg.dll                6.2.9200.16384                UI  802.3
    dot3gpclnt.dll             6.2.9200.16384                   802.3
    dot3gpui.dll               6.2.9200.16384               "   802.3"
    dot3hc.dll                 6.2.9200.16384                 Dot3
    dot3msm.dll                6.2.9200.16384                   802.3
    dot3ui.dll                 6.2.9200.16384                802.3
    dpapi.dll                  6.2.9200.16384              Data Protection API
    dpapiprovider.dll          6.2.9200.16384               DLL dpapiprovider
    dplayx.dll                 6.2.9200.16384              Microsoft DirectPlay
    dpmodemx.dll               6.2.9200.16384                      DirectPlay
    dpnaddr.dll                6.2.9200.16450              Microsoft DirectPlay8 Address
    dpnathlp.dll               6.2.9200.16450              Microsoft DirectPlay NAT Helper UPnP
    dpnet.dll                  6.2.9200.16450              Microsoft DirectPlay
    dpnhpast.dll               6.2.9200.16450              Microsoft DirectPlay NAT Helper PAST
    dpnhupnp.dll               6.2.9200.16450              Microsoft DirectPlay NAT Helper UPNP
    dpnlobby.dll               6.2.9200.16450              Microsoft DirectPlay8 Lobby
    dpwsockx.dll               6.2.9200.16384                  TCP/IP  IPX  DirectPlay
    dpx.dll                    6.2.9200.16384              Microsoft(R) Delta Package Expander
    drmmgrtn.dll               11.0.9200.16384             DRM Migration DLL
    drmv2clt.dll               11.0.9200.16384             DRMv2 Client DLL
    drprov.dll                 6.2.9200.16384                   ,        ()
    drt.dll                    6.2.9200.16384                
    drtprov.dll                6.2.9200.16384              Distributed Routing Table Providers
    drttransport.dll           6.2.9200.16384              Distributed Routing Table Transport Provider
    drvstore.dll               6.2.9200.16548              Driver Store API
    dsauth.dll                 6.2.9200.16384              DS Authorization for Services
    dsdmo.dll                  6.2.9200.16384              DirectSound Effects
    dskquota.dll               6.2.9200.16384               DLL    Windows
    dskquoui.dll               6.2.9200.16384               DLL   
    dsound.dll                 6.2.9200.16384              DirectSound
    dsparse.dll                6.2.9200.16384              Active Directory Domain Services API
    dsprop.dll                 6.2.9200.16384                Active Directory
    dsquery.dll                6.2.9200.16384                 
    dsrole.dll                 6.2.9200.16384              DS Setup Client DLL
    dssec.dll                  6.2.9200.16384                 
    dssenh.dll                 6.2.9200.16384              Microsoft Enhanced DSS and Diffie-Hellman Cryptographic Provider
    dsui.dll                   6.2.9200.16384                  
    dsuiext.dll                6.2.9200.16384                 
    dswave.dll                 6.2.9200.16384              Microsoft DirectMusic Wave
    dtsh.dll                   6.2.9200.16384               API     
    dui70.dll                  6.2.9200.16384               DirectUI Windows
    duser.dll                  6.2.9200.16518              Windows DirectUser Engine
    dwmapi.dll                 6.2.9200.16384               API     ()
    dwmcore.dll                6.2.9200.16384                Microsoft DWM
    dwrite.dll                 6.2.9200.16581               Microsoft DirectX Typography
    dxdiagn.dll                6.2.9200.16384                Microsoft DirectX
    dxgi.dll                   6.2.9200.16384              DirectX Graphics Infrastructure
    dxmasf.dll                 12.0.9200.16420             Microsoft Windows Media Component Removal File.
    dxptaskringtone.dll        6.2.9200.16384                 Microsoft
    dxptasksync.dll            6.2.9200.16384               Microsoft Windows DXP
    dxtmsft.dll                10.0.9200.16384             DirectX Media -- Image DirectX Transforms
    dxtrans.dll                10.0.9200.16384             DirectX Media -- DirectX Transform Core
    dxva2.dll                  6.2.9200.16384              DirectX Video Acceleration 2.0 DLL
    eapp3hst.dll               6.2.9200.16384              Microsoft ThirdPartyEapDispatcher
    eappcfg.dll                6.2.9200.16384                EAP
    eappgnui.dll               6.2.9200.16384                 EAP
    eapphost.dll               6.2.9200.16384                 EAPHost 
    eappprxy.dll               6.2.9200.16384              Microsoft EAPHost Peer Client DLL
    eapqec.dll                 6.2.9200.16384                   Microsoft EAP
    easwrt.dll                 6.2.9200.16384              Exchange ActiveSync Windows Runtime DLL
    efsadu.dll                 6.2.9200.16384                
    efscore.dll                6.2.9200.16384              EFS Core Library
    efsutil.dll                6.2.9200.16384              EFS Utility Library
    ehstorapi.dll              6.2.9200.16384              Windows Enhanced Storage API
    ehstorpwdmgr.dll           6.2.9200.16384                Microsoft Enhanced Storage
    els.dll                    6.2.9200.16384                
    elscore.dll                6.2.9200.16384               DLL   Els
    elshyph.dll                6.2.9200.16384              ELS Hyphenation Service
    elslad.dll                 6.2.9200.16384              ELS Language Detection
    elstrans.dll               6.2.9200.16384              ELS Transliteration Service
    encapi.dll                 6.2.9200.16384              Encoder API
    encdec.dll                 6.6.9200.16384                XDS     .
    eqossnap.dll               6.2.9200.16384                EQoS
    es.dll                     2001.12.10130.16384         COM+
    esent.dll                  6.2.9200.16561                  ESE  Microsoft(R) Windows(R)
    esentprf.dll               6.2.9200.16384              Extensible Storage Engine Performance Monitoring Library for Microsoft(R) Windows(R)
    eventcls.dll               6.2.9200.16384              Microsoft Volume Shadow Copy Service event class
    evr.dll                    6.2.9200.16384                DLL   
    explorerframe.dll          6.2.9200.16384              ExplorerFrame
    expsrv.dll                 6.0.72.9589                 Visual Basic for Applications Runtime - Expression Service
    ext-ms-win-advapi32-auth-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-advapi32-encryptedfile-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-advapi32-eventingcontroller-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-advapi32-eventlog-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-advapi32-lsa-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-advapi32-msi-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-advapi32-ntmarta-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-advapi32-psm-app-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-advapi32-registry-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-advapi32-safer-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-advapi32-shutdown-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-authz-claimpolicies-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-authz-context-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-authz-remote-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-biometrics-winbio-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-bluetooth-deviceassociation-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-branding-winbrand-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-cluster-clusapi-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-cluster-resutils-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-cmd-util-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-cng-rng-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-com-clbcatq-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-com-ole32-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-com-psmregister-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-domainjoin-netjoin-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-firewallapi-webproxy-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-fs-clfs-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-fsutilext-ifsutil-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-fsutilext-ulib-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-gdi-dc-create-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-gdi-dc-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-gdi-devcaps-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-gdi-draw-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-gdi-font-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-gdi-metafile-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-gdi-path-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-gdi-render-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-gdi-rgn-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-gdi-wcs-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-gpapi-grouppolicy-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-gui-uxinit-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-kernel32-appcompat-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-kernel32-datetime-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-kernel32-errorhandling-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-kernel32-file-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-kernel32-package-current-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-kernel32-package-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-kernel32-registry-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-kernel32-sidebyside-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-kernel32-transacted-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-kernel32-windowserrorreporting-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-kernelbase-processthread-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-mf-winmm-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-mm-msacm-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-mm-pehelper-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-mm-wmdrmsdk-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-mpr-multipleproviderrouter-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-mrmcorer-resmanager-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-msiltcfg-msi-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-networking-winipsec-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-newdev-config-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-ntdsa-activedirectoryserver-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-ntdsapi-activedirectoryclient-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-ntos-ksecurity-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-ntos-ksigningpolicy-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-ntos-tm-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-ntuser-caret-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-ntuser-dc-access-ext-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-ntuser-dialogbox-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-ntuser-draw-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-ntuser-gui-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-ntuser-keyboard-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-ntuser-menu-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-ntuser-message-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-ntuser-misc-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-ntuser-mouse-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-ntuser-powermanagement-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-ntuser-private-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-ntuser-rectangle-ext-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-ntuser-string-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-ntuser-synch-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-ntuser-sysparams-ext-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-ntuser-windowclass-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-ntuser-window-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-ntuser-windowstation-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-ole32-bindctx-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-ole32-clipboard-ie-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-ole32-ie-ext-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-ole32-oleautomation-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-printer-winspool-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-profile-profsvc-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-profile-userenv-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-ras-rasapi32-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-ras-rasdlg-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-ras-rasman-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-ras-tapi32-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-rometadata-dispenser-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-samsrv-accountstore-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-scesrv-server-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-secur32-translatename-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-security-credui-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-security-cryptui-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-security-kerberos-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-security-vaultcli-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-session-userinit-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-session-wininit-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-session-winsta-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-session-wtsapi32-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-setupapi-cfgmgr32local-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-setupapi-cfgmgr32remote-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-setupapi-classinstallers-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-setupapi-inf-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-setupapi-logging-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-shell32-shellcom-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-shell32-shellfolders-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-shell-propsys-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-shell-shell32-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-shell-shlwapi-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-smbshare-sscore-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-spinf-inf-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-sxs-oleautomation-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-umpoext-umpo-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-webio-pal-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-wer-reporting-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-wevtapi-eventlog-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-winhttp-pal-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-wininet-pal-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-wlan-grouppolicy-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-wlan-onexui-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-wlan-scard-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-wsclient-devlicense-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    ext-ms-win-wwan-wwapi-l1-1-0.dll  6.2.9200.16384              ApiSet Stub DLL
    f3ahvoas.dll               6.2.9200.16384              JP Japanese Keyboard Layout for Fujitsu FMV oyayubi-shift keyboard
    faultrep.dll               6.2.9200.16384                     Windows
    fdbth.dll                  6.2.9200.16384              Function Discovery Bluetooth Provider Dll
    fdbthproxy.dll             6.2.9200.16384              Bluetooth Provider Proxy Dll
    fde.dll                    6.2.9200.16384                 
    fdeploy.dll                6.2.9200.16384                  
    fdpnp.dll                  6.2.9200.16384              Pnp Provider Dll
    fdproxy.dll                6.2.9200.16384              Function Discovery Proxy Dll
    fdssdp.dll                 6.2.9200.16384              Function Discovery SSDP Provider Dll
    fdwcn.dll                  6.2.9200.16384              Windows Connect Now - Config Function Discovery Provider DLL
    fdwnet.dll                 6.2.9200.16384              Function Discovery WNet Provider Dll
    fdwsd.dll                  6.2.9200.16384              Function Discovery WS Discovery Provider Dll
    feclient.dll               6.2.9200.16384              Windows NT File Encryption Client Interfaces
    filemgmt.dll               6.2.9200.16384                 
    findnetprinters.dll        6.2.9200.16384              Find Network Printers COM Component
    firewallapi.dll            6.2.9200.16384              API  Windows
    firewallcontrolpanel.dll   6.2.9200.16384                -  Windows
    fltlib.dll                 6.2.9200.16384               
    fmifs.dll                  6.2.9200.16578              FM IFS Utility DLL
    fms.dll                    6.2.9200.16384                
    fontext.dll                6.2.9200.16384                Windows
    fontsub.dll                6.2.9200.16453              Font Subsetting DLL
    fphc.dll                   6.2.9200.16384               Filtering Platform Helper
    framedyn.dll               6.2.9200.16384              WMI SDK Provider Framework
    framedynos.dll             6.2.9200.16384              WMI SDK Provider Framework
    frprov.dll                 6.2.9200.16384              Folder Redirection WMI Provider
    fsutilext.dll              6.2.9200.16384              FS Utility Extension DLL
    fundisc.dll                6.2.9200.16384              DLL  
    fwcfg.dll                  6.2.9200.16384                  Windows
    fwpuclnt.dll               6.2.9200.16384              API   FWP/IPsec
    fwremotesvr.dll            6.2.9200.16384              Windows Firewall Remote APIs Server
    fxsapi.dll                 6.2.9200.16384              Microsoft  Fax API Support DLL
    fxscom.dll                 6.2.9200.16384              Microsoft Fax Server COM Client Interface
    fxscomex.dll               6.2.9200.16384              Microsoft Fax Server Extended COM Client Interface
    fxsext32.dll               6.2.9200.16384              Microsoft  Fax Exchange Command Extension
    fxsresm.dll                6.2.9200.16384               DLL   (Microsoft)
    fxsxp32.dll                6.2.9200.16384              Microsoft  Fax Transport Provider
    gameux.dll                 6.2.9200.16384               
    gameuxlegacygdfs.dll       1.0.0.1                     Legacy GDF resource DLL
    gcdef.dll                  6.2.9200.16384                   
    gdi32.dll                  6.2.9200.16622              GDI Client DLL
    gdiplus.dll                6.2.9200.16518              Microsoft GDI+
    getuname.dll               6.2.9200.16384                   UCE
    glcndfilter.dll            6.2.9200.16384              Windows Reader
    glmf32.dll                 6.2.9200.16384              OpenGL Metafiling DLL
    glu32.dll                  6.2.9200.16384                OpenGL
    gpapi.dll                  6.2.9200.16384                API  
    gpedit.dll                 6.2.9200.16384              GPEdit
    gpprefcl.dll               6.2.9200.16604                 
    gpprnext.dll               6.2.9200.16384                 
    gpscript.dll               6.2.9200.16384                
    gptext.dll                 6.2.9200.16384              GPTExt
    hbaapi.dll                 6.2.9200.16384              HBA API data interface dll for HBA_API_Rev_2-18_2002MAR1.doc
    hcproviders.dll            6.2.9200.16384                
    helppaneproxy.dll          6.2.9200.16384              Microsoft Help Proxy
    hgcpl.dll                  6.2.9200.16384                 
    hhsetup.dll                6.2.9200.16384              Microsoft HTML Help
    hid.dll                    6.2.9200.16384                HID
    hidserv.dll                6.2.9200.16384               HID
    hlink.dll                  6.2.9200.16384               Microsoft Office 2000
    hnetcfg.dll                6.2.9200.16384                 
    hnetmon.dll                6.2.9200.16384              DLL   
    httpapi.dll                6.2.9200.16384              HTTP Protocol Stack API
    htui.dll                   6.2.9200.16384                  
    ias.dll                    6.2.9200.16384                 (NPS)
    iasacct.dll                6.2.9200.16384                NPS
    iasads.dll                 6.2.9200.16384                Active Directory NPS
    iasdatastore.dll           6.2.9200.16384              NPS Datastore server
    iashlpr.dll                6.2.9200.16384                NPS
    iasmigplugin.dll           6.2.9200.16384              NPS Migration DLL
    iasnap.dll                 6.2.9200.16384              NPS NAP Provider
    iaspolcy.dll               6.2.9200.16384              NPS Pipeline
    iasrad.dll                 6.2.9200.16384                RADIUS NPS
    iasrecst.dll               6.2.9200.16384              NPS XML Datastore Access
    iassam.dll                 6.2.9200.16384              NPS NT SAM Provider
    iassdo.dll                 6.2.9200.16384               SDO NPS
    iassvcs.dll                6.2.9200.16384                NPS
    iccvid.dll                 1.10.0.12                    Cinepak
    icm32.dll                  6.2.9200.16384              Microsoft Color Management Module (CMM)
    icmp.dll                   6.2.9200.16384              ICMP DLL
    icmui.dll                  6.2.9200.16384                  
    iconcodecservice.dll       6.2.9200.16384              Converts a PNG part of the icon to a legacy bmp icon
    icsigd.dll                 6.2.9200.16384                 
    idctrls.dll                6.2.9200.16384               
    idndl.dll                  6.2.9200.16384              Downlevel DLL
    idstore.dll                6.2.9200.16384              Identity Store
    ieadvpack.dll              10.0.9200.16384             ADVPACK
    ieapfltr.dll               10.0.9200.16384             Microsoft SmartScreen Filter
    iedkcs32.dll               18.0.9200.16384               IEAK
    ieframe.dll                10.0.9200.16598             
    iepeers.dll                10.0.9200.16384             Peer- Internet Explorer
    iernonce.dll               10.0.9200.16537               RunOnce   
    iertutil.dll               10.0.9200.16598                  Internet Explorer
    iesetup.dll                10.0.9200.16537               IOD
    iesysprep.dll              10.0.9200.16537             IE Sysprep Provider
    ieui.dll                   10.0.9200.16384                Internet Explorer
    ifmon.dll                  6.2.9200.16384                IF
    ifsutil.dll                6.2.9200.16384              IFS Utility DLL
    ifsutilx.dll               6.2.9200.16384              IFS Utility Extension DLL
    ig4icd32.dll               9.17.10.2843                OpenGL(R) Driver for Intel(R) Graphics Accelerator
    igd10umd32.dll             9.17.10.2843                LDDM User Mode Driver for Intel(R) Graphics Technology
    igdde32.dll                                            
    igdumd32.dll               9.17.10.2843                LDDM User Mode Driver for Intel(R) Graphics Technology
    igfx11cmrt32.dll           2.3.0.1008                  CM Runtime Dynamic Link Library (DX11)
    igfxcmjit32.dll            2.3.0.1008                  CM JIT Dynamic Link Library
    igfxcmrt32.dll             2.3.0.1008                  CM Runtime Dynamic Link Library
    igfxdv32.dll               8.15.10.2843                igfxdev Module
    igfxexps32.dll             8.15.10.2843                igfxext Module
    iglhcp32.dll               3.0.1.15                    iglhcp32 Dynamic Link Library
    iglhsip32.dll              3.0.0.12                    iglhsip32 Dynamic Link Library
    imagehlp.dll               6.2.9200.16384              Windows NT Image Helper
    imageres.dll               6.2.9200.16384              Windows Image Resource
    imagesp1.dll               6.2.9200.16384              Windows SP1 Image Resource
    imapi.dll                  6.2.9200.16384               Image Mastering API
    imapi2.dll                 6.2.9200.16384              IMAPI  2
    imapi2fs.dll               6.2.9200.16384              Image Mastering File System Imaging API v2
    imgutil.dll                10.0.9200.16384             IE plugin image decoder support DLL
    imm32.dll                  6.2.9200.16384              Multi-User Windows IMM32 API Client DLL
    inetcomm.dll               6.2.9200.16384              Microsoft Internet Messaging API Resources
    inetmib1.dll               6.2.9200.16384              Microsoft MIB-II subagent
    inetres.dll                6.2.9200.16384               API  
    inked.dll                  6.2.9200.16384              Microsoft Tablet PC InkEdit Control
    input.dll                  6.2.9200.16384               DLL  
    inputswitch.dll            6.2.9200.16384                Microsoft Windows
    inseng.dll                 10.0.9200.16384              
    intelopencl32.dll          1.1.0.1002                  Intel(R) OpenCL(TM) Runtime
    iologmsg.dll               6.2.9200.16384                /
    iphlpapi.dll               6.2.9200.16384              IP Helper API
    iprop.dll                  6.2.9200.16384              OLE PropertySet Implementation
    iprtprio.dll               6.2.9200.16384              IP Routing Protocol Priority DLL
    iprtrmgr.dll               6.2.9200.16384               IP-
    ipsecsnp.dll               6.2.9200.16384                 IP-
    ipsmsnap.dll               6.2.9200.16384                IP-
    ir32_32.dll                6.2.9200.16384              IR32_32 WRAPPER DLL
    ir32_32original.dll        3.24.15.3                   32-  Intel Indeo(R) Video R3.2
    ir41_32original.dll        4.51.16.3                   Intel Indeo Video 4.5
    ir41_qc.dll                6.2.9200.16384              IR41_QC WRAPPER DLL
    ir41_qcoriginal.dll        4.30.62.2                   Intel Indeo Video Interactive Quick Compressor
    ir41_qcx.dll               6.2.9200.16384              IR41_QCX WRAPPER DLL
    ir41_qcxoriginal.dll       4.30.64.1                   Intel Indeo Video Interactive Quick Compressor
    ir50_32.dll                6.2.9200.16384              IR50_32 WRAPPER DLL
    ir50_32original.dll        5.2562.15.55                Intel Indeo video 5.10
    ir50_qc.dll                6.2.9200.16384              IR50_QC WRAPPER DLL
    ir50_qcoriginal.dll        5.0.63.48                   Intel Indeo video 5.10 Quick Compressor
    ir50_qcx.dll               6.2.9200.16384              IR50_QCX WRAPPER DLL
    ir50_qcxoriginal.dll       5.0.64.48                   Intel Indeo video 5.10 Quick Compressor
    irclass.dll                6.2.9200.16384                 
    iscsicpl.dll               5.2.3790.1830                   iSCSI
    iscsidsc.dll               6.2.9200.16384              API-  iSCSI
    iscsied.dll                6.2.9200.16384              iSCSI Extension DLL
    iscsium.dll                6.2.9200.16384              iSCSI Discovery api
    iscsiwmi.dll               6.2.9200.16384              MS iSCSI Initiator WMI Provider
    iscsiwmiv2.dll             6.2.9200.16384              WMI Provider for iSCSI
    itircl.dll                 6.2.9200.16384              Microsoft InfoTech IR Local DLL
    itss.dll                   6.2.9200.16384              Microsoft InfoTech Storage System Library
    itvdata.dll                6.6.9200.16384              iTV Data Filters.
    iuseventlog.dll                                        
    iyuv_32.dll                6.2.9200.16384              Intel Indeo(R) Video YUV 
    jscript.dll                5.8.9200.16598              Microsoft  JScript
    jscript9.dll               10.0.9200.16598             Microsoft  JScript
    jsproxy.dll                10.0.9200.16537             JScript Proxy Auto-Configuration
    kbd101.dll                 6.2.9200.16384              JP Japanese Keyboard Layout for 101
    kbd101a.dll                6.2.9200.16384              KO Hangeul Keyboard Layout for 101 (Type A)
    kbd101b.dll                6.2.9200.16384              KO Hangeul Keyboard Layout for 101(Type B)
    kbd101c.dll                6.2.9200.16384              KO Hangeul Keyboard Layout for 101(Type C)
    kbd103.dll                 6.2.9200.16384              KO Hangeul Keyboard Layout for 103
    kbd106.dll                 6.2.9200.16384              JP Japanese Keyboard Layout for 106
    kbd106n.dll                6.2.9200.16384              JP Japanese Keyboard Layout for 106
    kbda1.dll                  6.2.9200.16384              Arabic_English_101 Keyboard Layout
    kbda2.dll                  6.2.9200.16384              Arabic_2 Keyboard Layout
    kbda3.dll                  6.2.9200.16384              Arabic_French_102 Keyboard Layout
    kbdal.dll                  6.2.9200.16384              Albania Keyboard Layout
    kbdarme.dll                6.2.9200.16384              Eastern Armenian Keyboard Layout
    kbdarmph.dll               6.2.9200.16384              Armenian Phonetic Keyboard Layout
    kbdarmty.dll               6.2.9200.16384              Armenian Typewriter Keyboard Layout
    kbdarmw.dll                6.2.9200.16384              Western Armenian Keyboard Layout
    kbdax2.dll                 6.2.9200.16384              JP Japanese Keyboard Layout for AX2
    kbdaze.dll                 6.2.9200.16384              Azerbaijan_Cyrillic Keyboard Layout
    kbdazel.dll                6.2.9200.16384              Azeri-Latin Keyboard Layout
    kbdbash.dll                6.2.9200.16384              Bashkir Keyboard Layout
    kbdbe.dll                  6.2.9200.16384              Belgian Keyboard Layout
    kbdbene.dll                6.2.9200.16384              Belgian Dutch Keyboard Layout
    kbdbgph.dll                6.2.9200.16384              Bulgarian Phonetic Keyboard Layout
    kbdbgph1.dll               6.2.9200.16384              Bulgarian (Phonetic Traditional) Keyboard Layout
    kbdbhc.dll                 6.2.9200.16384              Bosnian (Cyrillic) Keyboard Layout
    kbdblr.dll                 6.2.9200.16384              Belarusian Keyboard Layout
    kbdbr.dll                  6.2.9200.16384              Brazilian Keyboard Layout
    kbdbu.dll                  6.2.9200.16384              Bulgarian (Typewriter) Keyboard Layout
    kbdbulg.dll                6.2.9200.16384              Bulgarian Keyboard Layout
    kbdca.dll                  6.2.9200.16384              Canadian Multilingual Keyboard Layout
    kbdcan.dll                 6.2.9200.16384              Canadian Multilingual Standard Keyboard Layout
    kbdcher.dll                6.2.9200.16384              Cherokee Nation Keyboard Layout
    kbdcherp.dll               6.2.9200.16384              Cherokee Phonetic Keyboard Layout
    kbdcr.dll                  6.2.9200.16384              Croatian/Slovenian Keyboard Layout
    kbdcz.dll                  6.2.9200.16384              Czech Keyboard Layout
    kbdcz1.dll                 6.2.9200.16384              Czech_101 Keyboard Layout
    kbdcz2.dll                 6.2.9200.16384              Czech_Programmer's Keyboard Layout
    kbdda.dll                  6.2.9200.16384              Danish Keyboard Layout
    kbddiv1.dll                6.2.9200.16384              Divehi Phonetic Keyboard Layout
    kbddiv2.dll                6.2.9200.16384              Divehi Typewriter Keyboard Layout
    kbddv.dll                  6.2.9200.16384              Dvorak US English Keyboard Layout
    kbdes.dll                  6.2.9200.16384              Spanish Alernate Keyboard Layout
    kbdest.dll                 6.2.9200.16384              Estonia Keyboard Layout
    kbdfa.dll                  6.2.9200.16384              Persian Keyboard Layout
    kbdfar.dll                 6.2.9200.16384              Persian Standard Keyboard Layout
    kbdfc.dll                  6.2.9200.16384              Canadian French Keyboard Layout
    kbdfi.dll                  6.2.9200.16384              Finnish Keyboard Layout
    kbdfi1.dll                 6.2.9200.16384              Finnish-Swedish with Sami Keyboard Layout
    kbdfo.dll                  6.2.9200.16384              F?roese Keyboard Layout
    kbdfr.dll                  6.2.9200.16384              French Keyboard Layout
    kbdgae.dll                 6.2.9200.16384              Scottish Gaelic (United Kingdom) Keyboard Layout
    kbdgeo.dll                 6.2.9200.16384              Georgian Keyboard Layout
    kbdgeoer.dll               6.2.9200.16384              Georgian (Ergonomic) Keyboard Layout
    kbdgeome.dll               6.2.9200.16384              Georgian (MES) Keyboard Layout
    kbdgeooa.dll               6.2.9200.16384              Georgian (Old Alphabets) Keyboard Layout
    kbdgeoqw.dll               6.2.9200.16384              Georgian (QWERTY) Keyboard Layout
    kbdgkl.dll                 6.2.9200.16384              Greek_Latin Keyboard Layout
    kbdgr.dll                  6.2.9200.16384              German Keyboard Layout
    kbdgr1.dll                 6.2.9200.16384              German_IBM Keyboard Layout
    kbdgrlnd.dll               6.2.9200.16384              Greenlandic Keyboard Layout
    kbdhau.dll                 6.2.9200.16384              Hausa Keyboard Layout
    kbdhaw.dll                 6.2.9200.16384              Hawaiian Keyboard Layout
    kbdhe.dll                  6.2.9200.16384              Greek Keyboard Layout
    kbdhe220.dll               6.2.9200.16384              Greek IBM 220 Keyboard Layout
    kbdhe319.dll               6.2.9200.16384              Greek IBM 319 Keyboard Layout
    kbdheb.dll                 6.2.9200.16384              KBDHEB Keyboard Layout
    kbdhebl3.dll               6.2.9200.16384              Hebrew Standard Keyboard Layout
    kbdhela2.dll               6.2.9200.16384              Greek IBM 220 Latin Keyboard Layout
    kbdhela3.dll               6.2.9200.16384              Greek IBM 319 Latin Keyboard Layout
    kbdhept.dll                6.2.9200.16384              Greek_Polytonic Keyboard Layout
    kbdhu.dll                  6.2.9200.16384              Hungarian Keyboard Layout
    kbdhu1.dll                 6.2.9200.16384              Hungarian 101-key Keyboard Layout
    kbdibm02.dll               6.2.9200.16384              JP Japanese Keyboard Layout for IBM 5576-002/003
    kbdibo.dll                 6.2.9200.16384              Igbo Keyboard Layout
    kbdic.dll                  6.2.9200.16384              Icelandic Keyboard Layout
    kbdinasa.dll               6.2.9200.16384              Assamese (Inscript) Keyboard Layout
    kbdinbe1.dll               6.2.9200.16384              Bengali - Inscript (Legacy) Keyboard Layout
    kbdinbe2.dll               6.2.9200.16384              Bengali (Inscript) Keyboard Layout
    kbdinben.dll               6.2.9200.16384              Bengali Keyboard Layout
    kbdindev.dll               6.2.9200.16384              Devanagari Keyboard Layout
    kbdinen.dll                6.2.9200.16384              English - India Keyboard Layout
    kbdinguj.dll               6.2.9200.16384              Gujarati Keyboard Layout
    kbdinhin.dll               6.2.9200.16384              Hindi Keyboard Layout
    kbdinkan.dll               6.2.9200.16384              Kannada Keyboard Layout
    kbdinmal.dll               6.2.9200.16384              Malayalam Keyboard Layout Keyboard Layout
    kbdinmar.dll               6.2.9200.16384              Marathi Keyboard Layout
    kbdinori.dll               6.2.9200.16384              Odia Keyboard Layout
    kbdinpun.dll               6.2.9200.16384              Punjabi/Gurmukhi Keyboard Layout
    kbdintam.dll               6.2.9200.16384              Tamil Keyboard Layout
    kbdintel.dll               6.2.9200.16384              Telugu Keyboard Layout
    kbdinuk2.dll               6.2.9200.16384              Inuktitut Naqittaut Keyboard Layout
    kbdir.dll                  6.2.9200.16384              Irish Keyboard Layout
    kbdit.dll                  6.2.9200.16384              Italian Keyboard Layout
    kbdit142.dll               6.2.9200.16384              Italian 142 Keyboard Layout
    kbdiulat.dll               6.2.9200.16384              Inuktitut Latin Keyboard Layout
    kbdjpn.dll                 6.2.9200.16384              JP Japanese Keyboard Layout Stub driver
    kbdkaz.dll                 6.2.9200.16384              Kazak_Cyrillic Keyboard Layout
    kbdkhmr.dll                6.2.9200.16384              Cambodian Standard Keyboard Layout
    kbdkni.dll                 6.2.9200.16384              Khmer (NIDA) Keyboard Layout
    kbdkor.dll                 6.2.9200.16384              KO Hangeul Keyboard Layout Stub driver
    kbdkurd.dll                6.2.9200.16384              Central Kurdish Keyboard Layout
    kbdkyr.dll                 6.2.9200.16384              Kyrgyz Keyboard Layout
    kbdla.dll                  6.2.9200.16384              Latin-American Spanish Keyboard Layout
    kbdlao.dll                 6.2.9200.16384              Lao Standard Keyboard Layout
    kbdlisub.dll               6.2.9200.16384              Lisu Basic Keyboard Layout
    kbdlisus.dll               6.2.9200.16384              Lisu Standard Keyboard Layout
    kbdlk41a.dll               6.2.9200.16384              DEC LK411-AJ Keyboard Layout
    kbdlt.dll                  6.2.9200.16384              Lithuania Keyboard Layout
    kbdlt1.dll                 6.2.9200.16384              Lithuanian Keyboard Layout
    kbdlt2.dll                 6.2.9200.16384              Lithuanian Standard Keyboard Layout
    kbdlv.dll                  6.2.9200.16384              Latvia Keyboard Layout
    kbdlv1.dll                 6.2.9200.16384              Latvia-QWERTY Keyboard Layout
    kbdmac.dll                 6.2.9200.16384              Macedonian (FYROM) Keyboard Layout
    kbdmacst.dll               6.2.9200.16384              Macedonian (FYROM) - Standard Keyboard Layout
    kbdmaori.dll               6.2.9200.16384              Maori Keyboard Layout
    kbdmlt47.dll               6.2.9200.16384              Maltese 47-key Keyboard Layout
    kbdmlt48.dll               6.2.9200.16384              Maltese 48-key Keyboard Layout
    kbdmon.dll                 6.2.9200.16384              Mongolian Keyboard Layout
    kbdmonmo.dll               6.2.9200.16384              Mongolian (Mongolian Script) Keyboard Layout
    kbdmyan.dll                6.2.9200.16384              Myanmar Keyboard Layout
    kbdne.dll                  6.2.9200.16384              Dutch Keyboard Layout
    kbdnec.dll                 6.2.9200.16384              JP Japanese Keyboard Layout for (NEC PC-9800)
    kbdnec95.dll               6.2.9200.16384              JP Japanese Keyboard Layout for (NEC PC-9800 Windows 95)
    kbdnecat.dll               6.2.9200.16384              JP Japanese Keyboard Layout for (NEC PC-9800 on PC98-NX)
    kbdnecnt.dll               6.2.9200.16384              JP Japanese NEC PC-9800 Keyboard Layout
    kbdnepr.dll                6.2.9200.16384              Nepali Keyboard Layout
    kbdnko.dll                 6.2.9200.16384              N'Ko Keyboard Layout
    kbdno.dll                  6.2.9200.16384              Norwegian Keyboard Layout
    kbdno1.dll                 6.2.9200.16384              Norwegian with Sami Keyboard Layout
    kbdnso.dll                 6.2.9200.16384              Sesotho sa Leboa Keyboard Layout
    kbdntl.dll                 6.2.9200.16384              New Tai Leu Keyboard Layout
    kbdogham.dll               6.2.9200.16384              Ogham Keyboard Layout
    kbdpash.dll                6.2.9200.16384              Pashto (Afghanistan) Keyboard Layout
    kbdphags.dll               6.2.9200.16384              Phags-pa Keyboard Layout
    kbdpl.dll                  6.2.9200.16384              Polish Keyboard Layout
    kbdpl1.dll                 6.2.9200.16384              Polish Programmer's Keyboard Layout
    kbdpo.dll                  6.2.9200.16384              Portuguese Keyboard Layout
    kbdro.dll                  6.2.9200.16384              Romanian (Legacy) Keyboard Layout
    kbdropr.dll                6.2.9200.16384              Romanian (Programmers) Keyboard Layout
    kbdrost.dll                6.2.9200.16384              Romanian (Standard) Keyboard Layout
    kbdru.dll                  6.2.9200.16384              Russian Keyboard Layout
    kbdru1.dll                 6.2.9200.16384              Russia(Typewriter) Keyboard Layout
    kbdrum.dll                 6.2.9200.16384              Russian - Mnemonic Keyboard Layout
    kbdsf.dll                  6.2.9200.16384              Swiss French Keyboard Layout
    kbdsg.dll                  6.2.9200.16384              Swiss German Keyboard Layout
    kbdsl.dll                  6.2.9200.16384              Slovak Keyboard Layout
    kbdsl1.dll                 6.2.9200.16384              Slovak(QWERTY) Keyboard Layout
    kbdsmsfi.dll               6.2.9200.16384              Sami Extended Finland-Sweden Keyboard Layout
    kbdsmsno.dll               6.2.9200.16384              Sami Extended Norway Keyboard Layout
    kbdsn1.dll                 6.2.9200.16384              Sinhala Keyboard Layout
    kbdsorex.dll               6.2.9200.16384              Sorbian Extended Keyboard Layout
    kbdsors1.dll               6.2.9200.16384              Sorbian Standard Keyboard Layout
    kbdsorst.dll               6.2.9200.16384              Sorbian Standard (Legacy) Keyboard Layout
    kbdsp.dll                  6.2.9200.16384              Spanish Keyboard Layout
    kbdsw.dll                  6.2.9200.16384              Swedish Keyboard Layout
    kbdsw09.dll                6.2.9200.16384              Sinhala - Wij 9 Keyboard Layout
    kbdsyr1.dll                6.2.9200.16384              Syriac Standard Keyboard Layout
    kbdsyr2.dll                6.2.9200.16384              Syriac Phoenetic Keyboard Layout
    kbdtaile.dll               6.2.9200.16384              Tai Le Keyboard Layout
    kbdtajik.dll               6.2.9200.16384              Tajik Keyboard Layout
    kbdtat.dll                 6.2.9200.16384              Tatar_Cyrillic Keyboard Layout
    kbdth0.dll                 6.2.9200.16384              Thai Kedmanee Keyboard Layout
    kbdth1.dll                 6.2.9200.16384              Thai Pattachote Keyboard Layout
    kbdth2.dll                 6.2.9200.16384              Thai Kedmanee (non-ShiftLock) Keyboard Layout
    kbdth3.dll                 6.2.9200.16384              Thai Pattachote (non-ShiftLock) Keyboard Layout
    kbdtifi.dll                6.2.9200.16384              Tifinagh (Basic) Keyboard Layout
    kbdtifi2.dll               6.2.9200.16384              Tifinagh (Extended) Keyboard Layout
    kbdtiprc.dll               6.2.9200.16384              Tibetan (PRC) Keyboard Layout
    kbdtuf.dll                 6.2.9200.16384              Turkish F Keyboard Layout
    kbdtuq.dll                 6.2.9200.16384              Turkish Q Keyboard Layout
    kbdturme.dll               6.2.9200.16384              Turkmen Keyboard Layout
    kbdughr.dll                6.2.9200.16384              Uyghur (Legacy) Keyboard Layout
    kbdughr1.dll               6.2.9200.16384              Uyghur Keyboard Layout
    kbduk.dll                  6.2.9200.16384              United Kingdom Keyboard Layout
    kbdukx.dll                 6.2.9200.16384              United Kingdom Extended Keyboard Layout
    kbdur.dll                  6.2.9200.16384              Ukrainian Keyboard Layout
    kbdur1.dll                 6.2.9200.16384              Ukrainian (Enhanced) Keyboard Layout
    kbdurdu.dll                6.2.9200.16384              Urdu Keyboard Layout
    kbdus.dll                  6.2.9200.16384              United States Keyboard Layout
    kbdusa.dll                 6.2.9200.16384              US IBM Arabic 238_L Keyboard Layout
    kbdusl.dll                 6.2.9200.16384              Dvorak Left-Hand US English Keyboard Layout
    kbdusr.dll                 6.2.9200.16384              Dvorak Right-Hand US English Keyboard Layout
    kbdusx.dll                 6.2.9200.16384              US Multinational Keyboard Layout
    kbduzb.dll                 6.2.9200.16384              Uzbek_Cyrillic Keyboard Layout
    kbdvntc.dll                6.2.9200.16384              Vietnamese Keyboard Layout
    kbdwol.dll                 6.2.9200.16384              Wolof Keyboard Layout
    kbdyak.dll                 6.2.9200.16384              Sakha - Russia Keyboard Layout
    kbdyba.dll                 6.2.9200.16384              Yoruba Keyboard Layout
    kbdycc.dll                 6.2.9200.16384              Serbian (Cyrillic) Keyboard Layout
    kbdycl.dll                 6.2.9200.16384              Serbian (Latin) Keyboard Layout
    kerberos.dll               6.2.9200.16578                Kerberos
    kernel32.dll               6.2.9200.16627                Windows NT BASE API
    kernelbase.dll             6.2.9200.16384                Windows NT BASE API
    keyiso.dll                 6.2.9200.16384                 CNG
    keymgr.dll                 6.2.9200.16384                  
    korwbrkr.dll               6.2.9200.16384              Korean Word Breaker
    ksuser.dll                 6.2.9200.16384              User CSA Library
    ktmw32.dll                 6.2.9200.16384              Windows KTM Win32 Client DLL
    l2gpstore.dll              6.2.9200.16384              Policy Storage dll
    l2nacp.dll                 6.2.9200.16384                 Onex Windows
    l2sechc.dll                6.2.9200.16384                    2
    laprxy.dll                 12.0.9200.16384             Windows Media Logagent Proxy
    licmgr10.dll               10.0.9200.16384              (DLL)    Microsoft
    linkinfo.dll               6.2.9200.16384              Windows Volume Tracking
    loadperf.dll               6.2.9200.16384                  
    localsec.dll               6.2.9200.16384               MMC "   "
    locationapi.dll            6.2.9200.16384              Microsoft Windows Location API
    loghours.dll               6.2.9200.16384               
    logoncli.dll               6.2.9200.16384              Net Logon Client DLL
    lpk.dll                    6.2.9200.16453              Language Pack
    lsmproxy.dll               6.2.9200.16384              LSM interfaces proxy Dll
    luainstall.dll             6.2.9200.16384              Lua manifest install
    lz32.dll                   6.2.9200.16384              LZ Expand/Compress API DLL
    magnification.dll          6.2.9200.16384               API  ()
    mapi32.dll                 1.0.2536.0                   MAPI 1.0  Windows NT
    mapistub.dll               1.0.2536.0                   MAPI 1.0  Windows NT
    mbaeapi.dll                6.2.9200.16384              Mobile Broadband Account Experience API
    mbaeapipublic.dll          6.2.9200.16384              Mobile Broadband Account API
    mbsmsapi.dll               6.2.9200.16518              Microsoft Windows Mobile Broadband SMS API
    mbussdapi.dll              6.2.9200.16384              Microsoft Windows Mobile Broadband USSD API
    mcewmdrmndbootstrap.dll    1.3.2310.10                 Windows Media Center WMDRM-ND Receiver Bridge Bootstrap DLL
    mciavi32.dll               6.2.9200.16384               MCI Video  Windows
    mcicda.dll                 6.2.9200.16384               MCI   cdaudio
    mciqtz32.dll               6.6.9200.16384               MCI DirectShow
    mciseq.dll                 6.2.9200.16384               MCI   MIDI
    mciwave.dll                6.2.9200.16384               MCI   
    mdminst.dll                6.2.9200.16384               
    mf.dll                     12.0.9200.16384              DLL Media Foundation
    mf3216.dll                 6.2.9200.16384              32-bit to 16-bit Metafile Conversion DLL
    mfaacenc.dll               6.2.9200.16384              Media Foundation AAC Encoder
    mfasfsrcsnk.dll            12.0.9200.16548             Media Foundation ASF Source and Sink DLL
    mfc100.dll                 10.0.40219.325              MFCDLL Shared Library - Retail Version
    mfc100chs.dll              10.0.40219.325              MFC Language Specific Resources
    mfc100cht.dll              10.0.40219.325              MFC Language Specific Resources
    mfc100deu.dll              10.0.40219.325              MFC Language Specific Resources
    mfc100enu.dll              10.0.40219.325              MFC Language Specific Resources
    mfc100esn.dll              10.0.40219.325              MFC Language Specific Resources
    mfc100fra.dll              10.0.40219.325              MFC Language Specific Resources
    mfc100ita.dll              10.0.40219.325              MFC Language Specific Resources
    mfc100jpn.dll              10.0.40219.325              MFC Language Specific Resources
    mfc100kor.dll              10.0.40219.325              MFC Language Specific Resources
    mfc100rus.dll              10.0.40219.325              MFC Language Specific Resources
    mfc100u.dll                10.0.40219.325              MFCDLL Shared Library - Retail Version
    mfc40.dll                  4.1.0.6140                    MFCDLL -  
    mfc40u.dll                 4.1.0.6140                    MFCDLL -  
    mfc42.dll                  6.6.8063.0                    MFCDLL -  
    mfc42u.dll                 6.6.8063.0                    MFCDLL -  
    mfcaptureengine.dll        12.0.9200.16384              DLL Media Foundation CaptureEngine
    mfcm100.dll                10.0.40219.325              MFC Managed Library - Retail Version
    mfcm100u.dll               10.0.40219.325              MFC Managed Library - Retail Version
    mfcore.dll                 12.0.9200.16384             Media Foundation Core DLL
    mfcsubs.dll                2001.12.10130.16384         COM+
    mfds.dll                   12.0.9200.16384             Media Foundation Direct Show wrapper DLL
    mfdvdec.dll                6.2.9200.16384              Media Foundation DV Decoder
    mferror.dll                12.0.9200.16384              DLL  Media Foundation
    mfh264enc.dll              6.2.9200.16384              Media Foundation H264 Encoder
    mfmediaengine.dll          6.2.9200.16578              Media Foundation Media Engine DLL
    mfmjpegdec.dll             6.2.9200.16384              Media Foundation MJPEG Decoder
    mfmp4srcsnk.dll            12.0.9200.16604              DLL    MPEG4 Media Foundation
    mfmpeg2srcsnk.dll          12.0.9200.16384             Media Foundation MPEG2 Source and Sink DLL
    mfnetcore.dll              12.0.9200.16384             Media Foundation Net Core DLL
    mfnetsrc.dll               12.0.9200.16384             Media Foundation Net Source DLL
    mfplat.dll                 12.0.9200.16384             Media Foundation Platform DLL
    mfplay.dll                 12.0.9200.16384             Media Foundation Playback API DLL
    mfps.dll                   12.0.9200.16384             Media Foundation Proxy DLL
    mfreadwrite.dll            12.0.9200.16578             Media Foundation ReadWrite DLL
    mfsrcsnk.dll               12.0.9200.16384             Media Foundation Source and Sink DLL
    mfsvr.dll                  6.2.9200.16384              Media Foundation Simple Video Renderer DLL
    mftranscode.dll            12.0.9200.16384             Media Foundation Transcode DLL
    mfvdsp.dll                 6.2.9200.16384              Windows Media Foundation Video DSP Components
    mfwmaaec.dll               6.2.9200.16384              Windows Media Audio AEC for Media Foundation
    mgmtapi.dll                6.2.9200.16384              Microsoft SNMP Manager API (uses WinSNMP)
    mi.dll                     6.2.9200.16384              Management Infrastructure
    midimap.dll                6.2.9200.16384              Microsoft MIDI Mapper
    migisol.dll                6.2.9200.16384              Migration System Isolation Layer
    miguiresource.dll          6.2.9200.16384               MIG wini32
    mimefilt.dll               2008.0.9200.16384            MIME
    mirrordrvcompat.dll        6.2.9200.16384              Mirror Driver Compatibility Helper
    miutils.dll                6.2.9200.16384               
    mlang.dll                  6.2.9200.16384               DLL  
    mmcbase.dll                6.2.9200.16384                DLL MMC
    mmci.dll                   6.2.9200.16384                
    mmcico.dll                 6.2.9200.16384              Media class co-installer
    mmcndmgr.dll               6.2.9200.16384                 MMC
    mmcshext.dll               6.2.9200.16384              MMC Shell Extension DLL
    mmdevapi.dll               6.2.9200.16384              MMDevice API
    mmres.dll                  6.2.9200.16384               
    modemui.dll                6.2.9200.16384                Windows
    moricons.dll               6.2.9200.16384              Windows NT Setup Icon Resources Library
    mp3dmod.dll                6.2.9200.16384              Microsoft MP3 Decoder DMO
    mp43decd.dll               6.2.9200.16384              Windows Media MPEG-4 Video Decoder
    mp4sdecd.dll               6.2.9200.16496              Windows Media MPEG-4 S Video Decoder
    mpg4decd.dll               6.2.9200.16384              Windows Media MPEG-4 Video Decoder
    mpr.dll                    6.2.9200.16384                   
    mprapi.dll                 6.2.9200.16384              Windows NT MP Router Administration DLL
    mprddm.dll                 6.2.9200.16384                  
    mprdim.dll                 6.2.9200.16384                
    mprext.dll                 6.2.9200.16384               DLL     
    mprmsg.dll                 6.2.9200.16384               (DLL)    
    mrmcorer.dll               6.2.9200.16384              Microsoft Windows MRM
    mrmindexer.dll             6.2.9200.16384              Microsoft Windows MRM
    msaatext.dll               2.0.10413.0                 Active Accessibility text support
    msac3enc.dll               6.2.9200.16384              Microsoft AC-3 Encoder
    msacm32.dll                6.2.9200.16384                 Microsoft
    msadce.dll                 6.2.9200.16384              OLE DB Cursor Engine
    msadcer.dll                6.2.9200.16384              OLE DB Cursor Engine Resources
    msadco.dll                 6.2.9200.16384              Remote Data Services Data Control
    msadcor.dll                6.2.9200.16384              Remote Data Services Data Control Resources
    msadds.dll                 6.2.9200.16384              OLE DB Data Shape Provider
    msaddsr.dll                6.2.9200.16384               OLE DB Data Shape Provider Resources
    msader15.dll               6.2.9200.16384              ActiveX Data Objects Resources
    msado15.dll                6.2.9200.16384              ActiveX Data Objects
    msadomd.dll                6.2.9200.16384              ActiveX Data Objects (Multi-Dimensional)
    msador15.dll               6.2.9200.16384              Microsoft ActiveX Data Objects Recordset
    msadox.dll                 6.2.9200.16384              ActiveX Data Objects Extensions
    msadrh15.dll               6.2.9200.16384              ActiveX Data Objects Rowset Helper
    msafd.dll                  6.2.9200.16384              Microsoft Windows Sockets 2.0 Service Provider
    msasn1.dll                 6.2.9200.16384              ASN.1 Runtime APIs
    msauddecmft.dll            6.2.9200.16578              Media Foundation Audio Decoders
    msaudite.dll               6.2.9200.16384                 
    mscandui.dll               6.2.9200.16384                MSCANDUI
    mscat32.dll                6.2.9200.16384              MSCAT32 Forwarder DLL
    msclmd.dll                 6.2.9200.16384              Microsoft Class Mini-driver
    mscms.dll                  6.2.9200.16384              DLL-    
    mscoree.dll                4.0.41209.0                 Microsoft .NET Runtime Execution Engine
    mscorier.dll               2.0.50727.6387               IE    Microsoft .NET
    mscories.dll               2.0.50727.6387              Microsoft .NET IE SECURITY REGISTRATION
    mscpx32r.dll               6.2.9200.16384              ODBC Code Page Translator Resources
    mscpxl32.dll               6.2.9200.16384                 ODBC
    msctf.dll                  6.2.9200.16496                MSCTF
    msctfmonitor.dll           6.2.9200.16384              MsCtfMonitor DLL
    msctfp.dll                 6.2.9200.16384              MSCTFP Server DLL
    msctfui.dll                6.2.9200.16384                MSCTFUI
    msdadc.dll                 6.2.9200.16384              OLE DB Data Conversion Stub
    msdadiag.dll               6.2.9200.16384              Built-In Diagnostics
    msdaenum.dll               6.2.9200.16384              OLE DB Root Enumerator Stub
    msdaer.dll                 6.2.9200.16384              OLE DB Error Collection Stub
    msdaora.dll                6.2.9200.16384              OLE DB Provider for Oracle
    msdaorar.dll               6.2.9200.16384              OLE DB Provider for Oracle Resources
    msdaosp.dll                6.2.9200.16384              OLE DB Simple Provider
    msdaprsr.dll               6.2.9200.16384                OLE DB Persistence Services
    msdaprst.dll               6.2.9200.16384              OLE DB Persistence Services
    msdaps.dll                 6.2.9200.16384              OLE DB Interface Proxies/Stubs
    msdarem.dll                6.2.9200.16384              OLE DB Remote Provider
    msdaremr.dll               6.2.9200.16384              OLE DB Remote Provider Resources
    msdart.dll                 6.2.9200.16384              OLE DB Runtime Routines
    msdasc.dll                 6.2.9200.16384              OLE DB Service Components Stub
    msdasql.dll                6.2.9200.16384              OLE DB Provider for ODBC Drivers
    msdasqlr.dll               6.2.9200.16384              OLE DB Provider for ODBC Drivers Resources
    msdatl3.dll                6.2.9200.16384              OLE DB Implementation Support Routines
    msdatt.dll                 6.2.9200.16384              OLE DB Temporary Table Services
    msdaurl.dll                6.2.9200.16384              OLE DB RootBinder Stub
    msdelta.dll                6.2.9200.16384              Microsoft Patch Engine
    msdfmap.dll                6.2.9200.16384              Data Factory Handler
    msdmo.dll                  6.6.9200.16384              DMO Runtime
    msdrm.dll                  6.2.9200.16384                 Windows
    msdtcprx.dll               2001.12.10130.16384         Microsoft Distributed Transaction Coordinator OLE Transactions Interface Proxy DLL
    msdtcuiu.dll               2001.12.10130.16384         Microsoft Distributed Transaction Coordinator Administrative DLL
    msdtcvsp1res.dll           2001.12.10130.16384             ()  Vista SP1
    msexch40.dll               4.0.9756.0                  Microsoft Jet Exchange Isam
    msexcl40.dll               4.0.9756.0                  Microsoft Jet Excel Isam
    msfeeds.dll                10.0.9200.16598             Microsoft Feeds Manager
    msfeedsbs.dll              10.0.9200.16384               - ()
    msftedit.dll               6.2.9200.16384                 ,  7.5
    mshtml.dll                 10.0.9200.16612               HTML Microsoft
    mshtmled.dll               10.0.9200.16384             Microsoft HTML Editing Component
    mshtmler.dll               10.0.9200.16384                 HTML (Microsoft)
    msi.dll                    5.0.9200.16384              Windows Installer
    msidcrl40.dll              6.2.9200.16384              Microsoft Account Dynamic Link Library
    msident.dll                6.2.9200.16384                (Microsoft)
    msidle.dll                 6.2.9200.16384              User Idle Monitor
    msidntld.dll               6.2.9200.16384                (Microsoft)
    msieftp.dll                6.2.9200.16754                Microsoft Internet Explorer  FTP
    msihnd.dll                 5.0.9200.16384              Windows installer
    msiltcfg.dll               5.0.9200.16384              Windows Installer Configuration API Stub
    msimg32.dll                6.2.9200.16384              GDIEXT Client DLL
    msimsg.dll                 5.0.9200.16384                 Windows
    msimtf.dll                 6.2.9200.16384              Active IMM Server DLL
    msisip.dll                 5.0.9200.16384              MSI Signature SIP Provider
    msiwer.dll                 5.0.9200.16384              MSI Windows Error Reporting
    msjet40.dll                4.0.9765.0                  Microsoft Jet Engine Library
    msjetoledb40.dll           4.0.9756.0                  
    msjint40.dll               4.0.9765.0                       Microsoft Jet
    msjro.dll                  6.2.9200.16384              Jet and Replication Objects
    msjter40.dll               4.0.9756.0                  Microsoft Jet Database Engine Error DLL
    msjtes40.dll               4.0.9756.0                  Microsoft Jet Expression Service
    mskeyprotcli.dll           6.2.9200.16384                  Windows
    mskeyprotect.dll           6.2.9200.16384                 ()
    msls31.dll                 3.10.349.0                  Microsoft Line Services library file
    msltus40.dll               4.0.9756.0                  Microsoft Jet Lotus 1-2-3 Isam
    msmpeg2adec.dll            12.0.8506.0                 Microsoft DTV-DVD Audio Decoder
    msmpeg2enc.dll             12.0.9200.16384              Microsoft MPEG-2
    msmpeg2vdec.dll            12.0.9200.16429             Microsoft DTV-DVD Video Decoder
    msnetobj.dll               11.0.9200.16384             DRM ActiveX Network Object
    msobjs.dll                 6.2.9200.16384                 
    msoeacct.dll               6.2.9200.16384              Microsoft Internet Account Manager
    msoert2.dll                6.2.9200.16384              Microsoft Windows Mail RT Lib
    msorc32r.dll               6.2.9200.16384                ODBC  Oracle
    msorcl32.dll               6.2.9200.16384              ODBC Driver for Oracle
    mspatcha.dll               6.2.9200.16384              Microsoft File Patch Application API
    mspatchc.dll               6.2.9200.16384              Microsoft Patch Creation Engine
    mspbde40.dll               4.0.9756.0                  Microsoft Jet Paradox Isam
    msports.dll                6.2.9200.16384                 
    msrating.dll               10.0.9200.16384                  
    msrd2x40.dll               4.0.9756.0                  Microsoft (R) Red ISAM
    msrd3x40.dll               4.0.9756.0                  Microsoft (R) Red ISAM
    msrdc.dll                  6.2.9200.16384              Remote Differential Compression COM server
    msrdpwebaccess.dll         6.2.9200.16384              Microsoft Remote Desktop Services Web Access Control
    msrepl40.dll               4.0.9756.0                  Microsoft Replication Library
    msrle32.dll                6.2.9200.16384              Microsoft RLE Compressor
    msscntrs.dll               7.0.9200.16433              PKM Perfmon Counter DLL
    msscp.dll                  11.0.9200.16384             Windows Media Secure Content Provider
    mssha.dll                  6.2.9200.16384                  Windows
    msshavmsg.dll              6.2.9200.16384                     Windows
    msshooks.dll               7.0.9200.16578              Microsoft Search Hooks
    mssign32.dll               6.2.9200.16384               API  
    mssip32.dll                6.2.9200.16384              MSSIP32 Forwarder DLL
    mssitlb.dll                7.0.9200.16433              mssitlb
    msspellcheckingfacility.dll  6.2.9200.16384                 ()
    mssph.dll                  7.0.9200.16578                 Microsoft
    mssphtb.dll                7.0.9200.16578              Outlook MSSearch Connector
    mssprxy.dll                7.0.9200.16578              Microsoft Search Proxy
    mssrch.dll                 7.0.9200.16578                ()
    mssvp.dll                  7.0.9200.16578               Vista MSSearch
    mstask.dll                 6.2.9200.16384                 
    mstext40.dll               4.0.9756.0                  Microsoft Jet Text Isam
    mstscax.dll                6.2.9200.16548              ActiveX-    
    msutb.dll                  6.2.9200.16384               (DLL)  MSUTB
    msv1_0.dll                 6.2.9200.16384              Microsoft Authentication Package v1.0
    msvbvm60.dll               6.0.98.15                   Visual Basic Virtual Machine
    msvcirt.dll                7.0.9200.16384              Windows NT IOStreams DLL
    msvcp100.dll               10.0.40219.325              Microsoft C Runtime Library
    msvcp110_clr0400.dll       11.0.50709.17929            Microsoft C Runtime Library
    msvcp60.dll                7.0.9200.16384              Windows NT C++ Runtime Library DLL
    msvcr100.dll               10.0.40219.325              Microsoft C Runtime Library
    msvcr100_clr0400.dll       11.0.50709.18010            Microsoft .NET Framework
    msvcr110_clr0400.dll       11.0.50709.17929            Microsoft C Runtime Library
    msvcr71.dll                7.10.6030.0                 Microsoft C Runtime Library
    msvcrt.dll                 7.0.9200.16384              Windows NT CRT DLL
    msvcrt20.dll               2.12.0.0                    Microsoft C Runtime Library
    msvcrt40.dll               6.2.9200.16384              VC 4.x CRT DLL (Forwarded to msvcrt.dll)
    msvfw32.dll                6.2.9200.16384               Microsoft Video  Windows
    msvidc32.dll               6.2.9200.16384                Microsoft Video 1
    msvidctl.dll               6.5.9200.16384               ActiveX  
    msvideodsp.dll             6.2.9200.16384              Video Stabilization MFT
    msvproc.dll                12.0.9200.16384             Media Foundation Video Processor
    mswdat10.dll               4.0.9756.0                  Microsoft Jet Sort Tables
    mswmdm.dll                 12.0.9200.16384               Windows Media Device Manager
    mswsock.dll                6.2.9200.16384                 API Microsoft Windows Sockets 2.0
    mswstr10.dll               4.0.9765.0                    Microsoft Jet
    msxactps.dll               6.2.9200.16384              OLE DB Transaction Proxies/Stubs
    msxbde40.dll               4.0.9756.0                  Microsoft Jet xBASE Isam
    msxml3.dll                 8.110.9200.16447            MSXML 3.0
    msxml3r.dll                8.110.9200.16447            XML Resources
    msxml6.dll                 6.30.9200.16447             MSXML 6.0
    msxml6r.dll                6.30.9200.16447             XML Resources
    msyuv.dll                  6.2.9200.16384              Microsoft UYVY Video Decompressor
    mtxclu.dll                 2001.12.10130.16384         Microsoft Distributed Transaction Coordinator Failover Clustering Support DLL
    mtxdm.dll                  2001.12.10130.16384         COM+
    mtxex.dll                  2001.12.10130.16384         COM+
    mtxlegih.dll               2001.12.10130.16384         COM+
    mtxoci.dll                 2001.12.10130.16384         Microsoft Distributed Transaction Coordinator Database Support DLL for Oracle
    muifontsetup.dll           6.2.9200.16604              MUI Callback for font registry settings
    mycomput.dll               6.2.9200.16384               
    mydocs.dll                 6.2.9200.16384                 " "
    napcrypt.dll               6.2.9200.16384              NAP Cryptographic API helper
    napdsnap.dll               6.2.9200.16384               GPEdit    
    naphlpr.dll                6.2.9200.16384              NAP client config API helper
    napinsp.dll                6.2.9200.16384                    
    napipsec.dll               6.2.9200.16384                      IPSec
    napmontr.dll               6.2.9200.16384                NAP  Netsh
    naturallanguage6.dll       6.2.9200.16384              Natural Language Development Platform 6
    ncaapi.dll                 6.2.9200.16384              Microsoft Network Connectivity Assistant API
    ncdprop.dll                6.2.9200.16384                 
    nci.dll                    6.2.9200.16384              CoInstaller: NET
    ncobjapi.dll               6.2.9200.16384              Microsoft Windows Operating System
    ncrypt.dll                 6.2.9200.16384               Windows NCrypt
    ncryptprov.dll             6.2.9200.16384              Microsoft KSP
    ncryptsslp.dll             6.2.9200.16464              Microsoft SChannel Provider
    nddeapi.dll                6.2.9200.16384              Network DDE Share Management APIs
    ndfapi.dll                 6.2.9200.16384              API    
    ndfetw.dll                 6.2.9200.16384              Network Diagnostic Engine Event Interface
    ndfhcdiscovery.dll         6.2.9200.16384              Network Diagnostic Framework HC Discovery API
    ndiscapcfg.dll             6.2.9200.16384              NdisCap Notify Object
    ndishc.dll                 6.2.9200.16384                NDIS
    ndproxystub.dll            6.2.9200.16384              Network Diagnostic Engine Proxy/Stub
    negoexts.dll               6.2.9200.16384              NegoExtender Security Package
    netapi32.dll               6.2.9200.16384              Net Win32 API DLL
    netbios.dll                6.2.9200.16384              NetBIOS Interface Library
    netcenter.dll              6.2.9200.16384                 -  
    netcfgx.dll                6.2.9200.16548                
    netcorehc.dll              6.2.9200.16384                   
    netdiagfx.dll              6.2.9200.16384                
    netevent.dll               6.2.9200.16384                
    netfxperf.dll              4.0.41209.0                 Extensible Performance Counter Shim
    neth.dll                   6.2.9200.16384                 
    netid.dll                  6.2.9200.16384                  
    netiohlp.dll               6.2.9200.16384               DLL   Netio
    netjoin.dll                6.2.9200.16384               DLL   
    netlogon.dll               6.2.9200.16384                 Net Logon
    netmsg.dll                 6.2.9200.16384                
    netplwiz.dll               6.2.9200.16604                   
    netprofm.dll               6.2.9200.16604              Network List Manager
    netprovisionsp.dll         6.2.9200.16384              Provisioning Service Provider DLL
    netshell.dll               6.2.9200.16384                
    netutils.dll               6.2.9200.16384              Net Win32 API Helpers DLL
    networkexplorer.dll        6.2.9200.16384               
    networkitemfactory.dll     6.2.9200.16384                
    newdev.dll                 6.0.5054.0                    
    ninput.dll                 6.2.9200.16384              Microsoft Pen and Touch Input Component
    nlaapi.dll                 6.2.9200.16518              Network Location Awareness 2
    nlhtml.dll                 2008.0.9200.16384            HTML
    nlmgp.dll                  6.2.9200.16384                 
    nlmproxy.dll               6.2.9200.16518              Network List Manager Public Proxy
    nlmsprep.dll               6.2.9200.16518              Network List Manager Sysprep Module
    nlsbres.dll                6.2.9200.16384              NLSBuild resource DLL
    nlsdata0000.dll            6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlsdata0001.dll            6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlsdata0002.dll            6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlsdata0003.dll            6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlsdata0007.dll            6.2.9200.16384              Microsoft German Natural Language Server Data and Code
    nlsdata0009.dll            6.2.9200.16384              Microsoft English Natural Language Server Data and Code
    nlsdata000a.dll            6.2.9200.16384              Microsoft Spanish Natural Language Server Data and Code
    nlsdata000c.dll            6.2.9200.16384              Microsoft French Natural Language Server Data and Code
    nlsdata000d.dll            6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlsdata000f.dll            6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlsdata0010.dll            6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlsdata0011.dll            6.2.9200.16384              Microsoft Japanese Natural Language Server Data and Code
    nlsdata0013.dll            6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlsdata0018.dll            6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlsdata0019.dll            6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlsdata001a.dll            6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlsdata001b.dll            6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlsdata001d.dll            6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlsdata0020.dll            6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlsdata0021.dll            6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlsdata0022.dll            6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlsdata0024.dll            6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlsdata0026.dll            6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlsdata0027.dll            6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlsdata002a.dll            6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlsdata0039.dll            6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlsdata003e.dll            6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlsdata0045.dll            6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlsdata0046.dll            6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlsdata0047.dll            6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlsdata0049.dll            6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlsdata004a.dll            6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlsdata004b.dll            6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlsdata004c.dll            6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlsdata004e.dll            6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlsdata0414.dll            6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlsdata0416.dll            6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlsdata0816.dll            6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlsdata081a.dll            6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlsdata0c1a.dll            6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlsdl.dll                  6.2.9200.16384              Nls Downlevel DLL
    nlslexicons0001.dll        6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons0002.dll        6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons0003.dll        6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons0007.dll        6.2.9200.16384              Microsoft German Natural Language Server Data and Code
    nlslexicons0009.dll        6.2.9200.16384              Microsoft English Natural Language Server Data and Code
    nlslexicons000a.dll        6.2.9200.16384              Microsoft Spanish Natural Language Server Data and Code
    nlslexicons000c.dll        6.2.9200.16384              Microsoft French Natural Language Server Data and Code
    nlslexicons000d.dll        6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons000f.dll        6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons0010.dll        6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons0011.dll        6.2.9200.16384              Microsoft Japanese Natural Language Server Data and Code
    nlslexicons0013.dll        6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons0018.dll        6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons0019.dll        6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons001a.dll        6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons001b.dll        6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons001d.dll        6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons0020.dll        6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons0021.dll        6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons0022.dll        6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons0024.dll        6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons0026.dll        6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons0027.dll        6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons002a.dll        6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons0039.dll        6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons003e.dll        6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons0045.dll        6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons0046.dll        6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons0047.dll        6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons0049.dll        6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons004a.dll        6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons004b.dll        6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons004c.dll        6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons004e.dll        6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons0414.dll        6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons0416.dll        6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons0816.dll        6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons081a.dll        6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons0c1a.dll        6.2.9200.16384              Microsoft Neutral Natural Language Server Data and Code
    nlsmodels0011.dll          6.2.9200.16384              Microsoft Japanese Natural Language Server Data and Code
    normaliz.dll               6.2.9200.16384              Unicode Normalization DLL
    npmproxy.dll               6.2.9200.16604              Network List Manager Proxy
    nshhttp.dll                6.2.9200.16384               DLL netsh  HTTP
    nshipsec.dll               6.2.9200.16384               DLL  IPSec  Net
    nshwfp.dll                 6.2.9200.16384                  Windows  Netsh
    nsi.dll                    6.2.9200.16384              NSI User-mode interface DLL
    ntasn1.dll                 6.2.9200.16384              Microsoft ASN.1 API
    ntdll.dll                  6.2.9200.16578                NT
    ntdsapi.dll                6.2.9200.16384              Active Directory Domain Services API
    ntlanman.dll               6.2.9200.16384              Microsoft LAN Manager
    ntlanui2.dll               6.2.9200.16384                  
    ntmarta.dll                6.2.9200.16384               Windows NT MARTA
    ntprint.dll                6.2.9200.16384                  
    ntshrui.dll                6.2.9200.16384               ,    
    ntvdm64.dll                6.2.9200.16384              16-   NT64
    nvapi.dll                  9.18.13.4411                NVIDIA NVAPI Library, Version 344.11 
    nvaudcap32v.dll            1.2.25.0                    NVIDIA Virtual Audio Driver
    nvcompiler.dll             8.17.13.4411                NVIDIA Compiler, Version 344.11 
    nvcuda.dll                 8.17.13.4411                NVIDIA CUDA Driver, Version 344.11 
    nvcuvid.dll                7.17.13.4411                NVIDIA CUDA Video Decode API, Version 344.11 
    nvd3dum.dll                9.18.13.4411                NVIDIA WDDM D3D Driver, Version 344.11 
    nvfbc.dll                  6.14.13.4411                NVIDIA Front Buffer Capture Library, Version 
    nvifr.dll                  6.14.13.4411                NVIDIA In-band Frame Rendering Library, Version 
    nvinit.dll                 9.18.13.4411                NVIDIA shim initialization dll, Version 344.11 
    nvoglshim32.dll            9.18.13.4411                NVIDIA OpenGL Shim Driver, Version 344.11 
    nvoglv32.dll               9.18.13.4411                NVIDIA Compatible OpenGL ICD
    nvopencl.dll               8.17.13.4411                NVIDIA CUDA 6.5.19 OpenCL 1.1 Driver, Version 344.11 
    nvspbridge.dll             16.13.42.0                  NVIDIA GFE - Notification Bridge
    nvspcap.dll                16.13.42.0                  NVIDIA Capture Server Proxy
    nvumdshim.dll              9.18.13.4411                NVIDIA D3D Shim Driver, Version 344.11 
    nvwgf2um.dll               9.18.13.4411                NVIDIA D3D10 Driver, Version 344.11 
    objsel.dll                 6.2.9200.16384                
    occache.dll                10.0.9200.16384                 
    ocsetapi.dll               6.2.9200.16384              Windows Optional Component Setup API
    odbc32.dll                 6.2.9200.16384              ODBC Driver Manager
    odbcbcp.dll                6.2.9200.16384              BCP for ODBC
    odbcconf.dll               6.2.9200.16384              ODBC Driver Configuration Program
    odbccp32.dll               6.2.9200.16384              ODBC Installer
    odbccr32.dll               6.2.9200.16384              ODBC Cursor Library
    odbccu32.dll               6.2.9200.16384              ODBC Cursor Library
    odbcint.dll                6.2.9200.16384              ODBC Resources
    odbcji32.dll               6.2.9200.16384              Microsoft ODBC Desktop Driver Pack 3.5
    odbcjt32.dll               6.2.9200.16384              Microsoft ODBC Desktop Driver Pack 3.5
    odbctrac.dll               6.2.9200.16384              ODBC Driver Manager Trace
    oddbse32.dll               6.2.9200.16384              ODBC (3.0) driver for DBase
    odexl32.dll                6.2.9200.16384              ODBC (3.0) driver for Excel
    odfox32.dll                6.2.9200.16384              ODBC (3.0) driver for FoxPro
    odpdx32.dll                6.2.9200.16384              ODBC (3.0) driver for Paradox
    odtext32.dll               6.2.9200.16384              ODBC (3.0) driver for text files
    oemlicense.dll                                         
    offfilt.dll                2008.0.9200.16384            OFFICE
    ogldrv.dll                 6.2.9200.16384              MSOGL
    ole2.dll                   2.10.35.35                  OLE 2.1 16/32 Interoperability Library
    ole2disp.dll               2.10.3050.1                 OLE 2.1 16/32 Interoperability Library
    ole2nls.dll                2.10.3050.1                 OLE 2.1 16/32 Interoperability Library
    ole32.dll                  6.2.9200.16384              Microsoft OLE  Windows
    oleacc.dll                 7.2.9200.16384              Active Accessibility Core Component
    oleacchooks.dll            7.2.9200.16384              Active Accessibility Event Hooks Library
    oleaccrc.dll               7.2.9200.16384              Active Accessibility Resource DLL
    oleaut32.dll               6.2.9200.16384              
    olecli32.dll               6.2.9200.16384                OLE
    oledb32.dll                6.2.9200.16384              OLE DB Core Services
    oledb32r.dll               6.2.9200.16384                 OLE DB
    oledlg.dll                 6.2.9200.16384                 OLE
    oleprn.dll                 6.2.9200.16384              Oleprn DLL
    olepro32.dll               6.2.9200.16384              
    olesvr32.dll               6.2.9200.16384              Object Linking and Embedding Server Library
    olethk32.dll               6.2.9200.16384              Microsoft OLE for Windows
    onex.dll                   6.2.9200.16384                IEEE 802.1X
    onexui.dll                 6.2.9200.16384                 IEEE 802.1X
    oobefldr.dll               6.2.9200.16384                
    opcservices.dll            6.2.9200.16384              Native Code OPC Services Library
    opencl.dll                 1.1.0.0                     OpenCL Client DLL
    opengl32.dll               6.2.9200.16384              OpenGL Client DLL
    osbaseln.dll               6.2.9200.16384              Service Reporting API
    osksupport.dll             6.2.9200.16384              Microsoft On-Screen Keyboard Support Utilities
    osuninst.dll               6.2.9200.16384              Uninstall Interface
    p2p.dll                    6.2.9200.16384                
    p2pgraph.dll               6.2.9200.16384              Peer-to-Peer Graphing
    p2pnetsh.dll               6.2.9200.16384                 NetSh
    packager.dll               6.2.9200.16384               2
    packagestateroaming.dll    6.2.9200.16384              Package State Roaming
    panmap.dll                 6.2.9200.16384              PANOSE(tm) Font Mapper
    pautoenr.dll               6.2.9200.16384                
    pcacli.dll                 6.2.9200.16384              Program Compatibility Assistant Client Module
    pcaui.dll                  6.2.9200.16384                  
    pcpksp.dll                 6.2.9200.16384                  ()    
    pcptpm12.dll               6.2.9200.16384              Microsoft Platform Crypto Provider for Trusted Platform Module 1.2
    pcwum.dll                  6.2.9200.16384              Performance Counters for Windows Native DLL
    pdh.dll                    6.2.9200.16384                  Windows
    pdhui.dll                  6.2.9200.16384                
    peerdist.dll               6.2.9200.16384                BranchCache
    peerdistsh.dll             6.2.9200.16384                BranchCache Netshell
    perfcentercpl.dll          6.2.9200.16384               
    perfctrs.dll               6.2.9200.16384               
    perfdisk.dll               6.2.9200.16384                  Windows
    perfnet.dll                6.2.9200.16384                   Windows
    perfos.dll                 6.2.9200.16384                  Windows
    perfproc.dll               6.2.9200.16384                   Windows
    perfts.dll                 6.2.9200.16384              Windows Remote Desktop Services Performance Objects
    photometadatahandler.dll   6.2.9200.16384              Photo Metadata Handler
    photowiz.dll               6.2.9200.16384                
    pid.dll                    6.2.9200.16384              Microsoft PID
    pidgenx.dll                6.2.9200.16384              Pid Generation
    pifmgr.dll                 6.2.9200.16384              Windows NT PIF Manager Icon Resources Library
    pku2u.dll                  6.2.9200.16384              Pku2u Security Package
    pla.dll                    6.2.9200.16384                 
    playlistfolder.dll         6.2.9200.16384              Playlist Folder
    playsndsrv.dll             6.2.9200.16384               PlaySound
    playtomanager.dll          6.2.9200.16384              Microsoft Windows PlayTo Manager
    pngfilt.dll                10.0.9200.16384             IE PNG plugin image decoder
    pnrpnsp.dll                6.2.9200.16384                 PNRP
    polstore.dll               6.2.9200.16384              Policy Storage dll
    portabledeviceapi.dll      6.2.9200.16384               API    Windows
    portabledeviceclassextension.dll  6.2.9200.16384              Windows Portable Device Class Extension Component
    portabledeviceconnectapi.dll  6.2.9200.16384              Portable Device Connection API Components
    portabledevicestatus.dll   6.2.9200.16384                  Microsoft Windows
    portabledevicesyncprovider.dll  6.2.9200.16384                 Microsoft Windows
    portabledevicetypes.dll    6.2.9200.16384              Windows Portable Device (Parameter) Types Component
    portabledevicewiacompat.dll  6.2.9200.16384              PortableDevice WIA Compatibility Driver
    portabledevicewmdrm.dll    6.2.9200.16384              Windows Portable Device WMDRM Component
    pots.dll                   6.2.9200.16384               
    powercpl.dll               6.2.9200.16384                
    powrprof.dll               6.2.9200.16384              DLL     
    presentationcffrasterizernative_v0300.dll  3.0.6920.6409               WinFX OpenType/CFF Rasterizer
    presentationhostproxy.dll  4.0.41209.0                 Windows Presentation Foundation Host Proxy
    presentationnative_v0300.dll  3.0.6920.6387               PresentationNative_v0300.dll
    prflbmsg.dll               6.2.9200.16384                  
    printconfig.dll            0.3.9200.16384                PrintConfig
    printdialogs.dll           6.2.9200.16384                Microsoft Windows
    printui.dll                6.2.9200.16384                 
    prncache.dll               6.2.9200.16384              Print UI Cache
    prnfldr.dll                6.2.9200.16384              prnfldr dll
    prnntfy.dll                6.2.9200.16384              prnntfy DLL
    prntvpt.dll                6.2.9200.16384              Print Ticket Services Module
    profapi.dll                6.2.9200.16384              User Profile Basic API
    profext.dll                6.2.9200.16384              profext
    propsys.dll                7.0.9200.16384                 ()
    provcore.dll               6.2.9200.16384                   ()
    provsvc.dll                6.2.9200.16384                Windows
    provthrd.dll               6.2.9200.16384              WMI Provider Thread & Log Library
    proximitycommon.dll        6.2.9200.16384                 
    prvdmofcomp.dll            6.2.9200.16384              WMI
    psapi.dll                  6.2.9200.16384              Process Status Helper
    pshed.dll                  6.2.9200.16384                ,   
    psisdecd.dll               6.6.9200.16384              Microsoft SI/PSI parser for MPEG2 based networks.
    psmodulediscoveryprovider.dll  6.2.9200.16384              WMI
    pstorec.dll                6.2.9200.16384              Deprecated Protected Storage COM interfaces
    puiapi.dll                 6.2.9200.16384               DLL puiapi
    puiobj.dll                 6.2.9200.16384               DLL  PrintUI
    pwrshplugin.dll            6.2.9200.16384              pwrshplugin.dll
    qagent.dll                 6.2.9200.16384                
    qasf.dll                   12.0.9200.16384             DirectShow ASF Support
    qcap.dll                   6.6.9200.16384                DirecxX DirectShow.
    qcliprov.dll               6.2.9200.16384               WMI   
    qdv.dll                    6.6.9200.16384                DirecxX DirectShow.
    qdvd.dll                   6.6.9200.16384              DirectShow DVD PlayBack Runtime.
    qedit.dll                  6.6.9200.16384               DirectShow
    qedwipes.dll               6.6.9200.16384              DirectShow Editing SMPTE Wipes
    qmgrprxy.dll               7.6.9200.16384              Background Intelligent Transfer Service Proxy
    qshvhost.dll               6.2.9200.16384                SHV
    qsvrmgmt.dll               6.2.9200.16384                
    quartz.dll                 6.6.9200.16384                DirecxX DirectShow.
    query.dll                  6.2.9200.16384                  
    qutil.dll                  6.2.9200.16384                
    qwave.dll                  6.2.9200.16384              Windows NT
    racengn.dll                6.2.9200.16384                  
    racpldlg.dll               6.2.9200.16384                 
    radardt.dll                6.2.9200.16384                   Windows
    radarrs.dll                6.2.9200.16384                   Microsoft Windows
    rasadhlp.dll               6.2.9200.16384              Remote Access AutoDial Helper
    rasapi32.dll               6.2.9200.16384              Remote Access API
    rascfg.dll                 6.2.9200.16420                RAS
    raschap.dll                6.2.9200.16384                 PPP CHAP
    rasctrs.dll                6.2.9200.16384                     Windows NT
    rasdiag.dll                6.2.9200.16420                  RAS
    rasdlg.dll                 6.2.9200.16384              API     
    rasgcw.dll                 6.2.9200.16384                RAS
    rasman.dll                 6.2.9200.16384              Remote Access Connection Manager
    rasmontr.dll               6.2.9200.16384                RAS
    rasmxs.dll                 6.2.9200.16420              Remote Access Device DLL for modems, PADs and switches
    rasplap.dll                6.2.9200.16384                 RAS PLAP
    rasppp.dll                 6.2.9200.16384              Remote Access PPP
    rasser.dll                 6.2.9200.16420              Remote Access Media DLL for COM ports
    rastapi.dll                6.2.9200.16384              Remote Access TAPI Compliance Layer
    rastls.dll                 6.2.9200.16384                 PPP EAP-TLS
    rdpcore.dll                6.2.9200.16384              RDP Core DLL
    rdpencom.dll               6.2.9200.16384              RDPSRAPI COM Objects
    rdpendp.dll                6.2.9200.16384                 RDP
    rdvvmtransport.dll         6.2.9200.16384              RdvVmTransport EndPoints
    reagent.dll                6.2.9200.16548               DLL   Microsoft Windows
    regapi.dll                 6.2.9200.16384              Registry Configuration APIs
    regctrl.dll                6.2.9200.16384              RegCtrl
    remotepg.dll               6.2.9200.16384              CPL-  
    removedevicecontexthandler.dll  6.2.9200.16384                    
    removedeviceelevated.dll   6.2.9200.16384              RemoveDeviceElevated Proxy Dll
    resampledmo.dll            6.2.9200.16384              Windows Media Resampler
    resutils.dll               6.2.9200.16384              Microsoft Cluster Resource Utility DLL
    rgb9rast.dll               6.2.9200.16384              Microsoft Windows Operating System
    riched20.dll               5.31.23.1230                Rich Text Edit Control, v3.1
    riched32.dll               6.2.9200.16384              Wrapper Dll for Richedit 1.0
    rnr20.dll                  6.2.9200.16384              Windows Socket2 NameSpace DLL
    rometadata.dll             4.0.30319.17929             Microsoft MetaData Library
    rpchttp.dll                6.2.9200.16384              RPC HTTP DLL
    rpcns4.dll                 6.2.9200.16384                    (RPC)
    rpcnsh.dll                 6.2.9200.16384                RPC Netshell
    rpcrt4.dll                 6.2.9200.16384                 
    rpcrtremote.dll            6.2.9200.16384              Remote RPC Extension
    rsaenh.dll                 6.2.9200.16553              Microsoft Enhanced Cryptographic Provider
    rshx32.dll                 6.2.9200.16384                
    rstrtmgr.dll               6.2.9200.16384               
    rtffilt.dll                2008.0.9200.16384            RTF
    rtm.dll                    6.2.9200.16384                
    rtutils.dll                6.2.9200.16384              Routing Utilities
    samcli.dll                 6.2.9200.16384              Security Accounts Manager Client DLL
    samlib.dll                 6.2.9200.16496              SAM Library DLL
    sas.dll                    6.2.9200.16384              WinLogon Software SAS Library
    sbe.dll                    6.6.9200.16384              DirectShow Stream Buffer Filter.
    sbeio.dll                  12.0.9200.16384             Stream Buffer IO DLL
    sberes.dll                 6.6.9200.16384                  DirectShow.
    scansetting.dll            6.2.9200.16384                    Microsoft Windows(TM)
    scarddlg.dll               6.2.9200.16384              SCardDlg -   -
    scecli.dll                 6.2.9200.16384                 
    scesrv.dll                 6.2.9200.16384                
    schannel.dll               6.2.9200.16578                TLS/SSL
    schedcli.dll               6.2.9200.16384              Scheduler Service Client DLL
    scksp.dll                  6.2.9200.16384              Microsoft Smart Card Key Storage Provider
    scripto.dll                6.6.9200.16384              Microsoft ScriptO
    scrobj.dll                 5.8.9200.16384              Windows  Script Component Runtime
    scrptadm.dll               6.2.9200.16384                
    scrrun.dll                 5.8.9200.16384              Microsoft  Script Runtime
    sdiageng.dll               6.2.9200.16384                 
    sdiagprv.dll               6.2.9200.16384              API    Windows
    sdohlp.dll                 6.2.9200.16384                 SDO NPS
    searchfolder.dll           6.2.9200.16384              SearchFolder
    sechost.dll                6.2.9200.16384              Host for SCM/SDDL/LSA Lookup APIs
    secproc.dll                6.2.9200.16384              Windows Rights Management Desktop Security Processor
    secproc_isv.dll            6.2.9200.16384              Windows Rights Management Desktop Security Processor
    secproc_ssp.dll            6.2.9200.16384              Windows Rights Management Services Server Security Processor
    secproc_ssp_isv.dll        6.2.9200.16384              Windows Rights Management Services Server Security Processor (Pre-production)
    secur32.dll                6.2.9200.16384              Security Support Provider Interface
    security.dll               6.2.9200.16384              Security Support Provider Interface
    sendmail.dll               6.2.9200.16384               
    sensapi.dll                6.2.9200.16384              SENS Connectivity API DLL
    sensorsapi.dll             6.2.9200.16384              API 
    sensorscpl.dll             6.2.9200.16384                "    "
    serialui.dll               6.2.9200.16384                
    serwvdrv.dll               6.2.9200.16384                Unimodem
    sessenv.dll                6.2.9200.16384                   
    settingmonitor.dll         6.2.9200.16384              Setting Synchronization Change Monitor
    settingsync.dll            6.2.9200.16548               
    settingsyncinfo.dll        6.2.9200.16548              Setting Synchronization Information
    setupapi.dll               6.2.9200.16496              Windows Setup API
    setupcln.dll               6.2.9200.16686                
    sfc.dll                    6.2.9200.16384              Windows File Protection
    sfc_os.dll                 6.2.9200.16384              Windows File Protection
    sfcom.dll                  3.0.0.11                    SFCOM.DLL
    shacct.dll                 6.2.9200.16384              Shell Accounts Classes
    shcore.dll                 6.2.9200.16384              SHCORE
    shdocvw.dll                6.2.9200.16550                    
    shell32.dll                6.2.9200.16550                 Windows
    shellstyle.dll             6.2.9200.16384              Windows Shell Style Resource Dll
    shfolder.dll               6.2.9200.16384              Shell Folder Service
    shgina.dll                 6.2.9200.16384              Windows Shell User Logon
    shimeng.dll                6.2.9200.16384              Shim Engine DLL
    shimgvw.dll                6.2.9200.16384               
    shlwapi.dll                6.2.9200.16384                 
    shpafact.dll               6.2.9200.16384              Windows Shell LUA/PA Elevation Factory Dll
    shsetup.dll                6.2.9200.16384              Shell setup helper
    shsvcs.dll                 6.2.9200.16384               DLL   Windows
    shunimpl.dll               6.2.9200.16384              Windows Shell Obsolete APIs
    shwebsvc.dll               6.2.9200.16384              -  Windows
    signdrv.dll                6.2.9200.16384              WMI provider for Signed Drivers
    simauth.dll                6.2.9200.16384              DLL   EAP-SIM
    simcfg.dll                 6.2.9200.16384              DLL  EAP-SIM
    sisbkup.dll                6.2.9200.16384              Single-Instance Store Backup Support Functions
    slc.dll                    6.2.9200.16384              Software Licensing Client DLL
    slcext.dll                 6.2.9200.16384              Software Licensing Client Extension Dll
    slwga.dll                  6.2.9200.16384              Software Licensing WGA API
    smartcardcredentialprovider.dll  6.2.9200.16384                 - Windows
    smbhelperclass.dll         1.0.0.1                        SMB (   )    
    smspace.dll                6.2.9200.16384              Storage Management Provider for Spaces
    sndvolsso.dll              6.2.9200.16384               SCA 
    snmpapi.dll                6.2.9200.16384              SNMP Utility Library
    softkbd.dll                6.2.9200.16384                  
    softpub.dll                6.2.9200.16384              Softpub Forwarder DLL
    sortserver2003compat.dll   6.2.9200.16384              Sort Version Server 2003
    sortwindows61.dll          6.2.9200.16384              SortWindows61 Dll
    sortwindows6compat.dll     6.2.9200.16384              Sort Version Windows 6.0
    spbcd.dll                  6.2.9200.16384              BCD Sysprep Plugin
    spfileq.dll                6.2.9200.16384              Windows SPFILEQ
    spinf.dll                  6.2.9200.16384              Windows SPINF
    spnet.dll                  6.2.9200.16384              Net Sysprep Plugin
    spopk.dll                  6.2.9200.16384              OPK Sysprep Plugin
    spp.dll                    6.2.9200.16384                  Microsoft Windows
    sppc.dll                   6.2.9200.16686              Software Licensing Client DLL
    sppcext.dll                6.2.9200.16384              Software Protection Platform Client Extension Dll
    sppinst.dll                6.2.9200.16384              SPP CMI Installer Plug-in DLL
    sppwmi.dll                 6.2.9200.16384              Software Protection Platform WMI provider
    spwinsat.dll               6.2.9200.16384              WinSAT Sysprep Plugin
    spwizeng.dll               6.2.9200.16384              Setup Wizard Framework
    spwizimg.dll               6.2.9200.16384              Setup Wizard Framework Resources
    spwizres.dll               6.2.9200.16384                 
    spwmp.dll                  6.2.9200.16420              Windows Media Player System Preparation DLL
    sqlcecompact40.dll         4.0.8275.1                  Database Repair Tool (32-bit)
    sqlceoledb40.dll           4.0.9200.1                  OLEDB Provider (32-bit)
    sqlceqp40.dll              4.0.9200.1                  Query Processor (32-bit)
    sqlcese40.dll              4.0.9200.1                  Storage Engine (32-bit)
    sqloledb.dll               6.2.9200.16384              OLE DB Provider for SQL Server
    sqlsrv32.dll               6.2.9200.16384              SQL Server ODBC Driver
    sqlunirl.dll               2000.80.2039.0              String Function .DLL for SQL Enterprise Components
    sqlwid.dll                 2000.80.2039.0              Unicode Function .DLL for SQL Enterprise Components
    sqlwoa.dll                 2000.80.2040.0              Unicode/ANSI Function .DLL for SQL Enterprise Components
    sqlxmlx.dll                6.2.9200.16384              XML extensions for SQL Server
    sqmapi.dll                 6.2.9200.16384              SQM Client
    srchadmin.dll              7.0.9200.16384               
    srclient.dll               6.2.9200.16384              Microsoft Windows System Restore Client Library
    srh.dll                    6.2.9200.16384               DLL      
    srm.dll                    6.2.9200.16496                    Microsoft
    srm_ps.dll                 6.2.9200.16434              Microsoft FSRM internal proxy/stub
    srmclient.dll              6.2.9200.16434              Microsoft File Server Resource Management Client Extensions
    srmlib.dll                 6.2.9200.16384              Microsoft (R) File Server Resource Management Interop Assembly
    srmscan.dll                6.2.9200.16434              Microsoft File Server Storage Reports Scan Engine
    srmshell.dll               6.2.9200.16434                    ()
    srmstormod.dll             6.2.9200.16496              Microsoft File Server Resource Management Office Parser
    srmtrace.dll               6.2.9200.16434              Microsoft File Server Resource Management Tracing Library
    srpuxnativesnapin.dll      6.2.9200.16384                     
    srumapi.dll                6.2.9200.16384              System Resource Usage Monitor API
    srumsvc.dll                6.2.9200.16384              System Resource Usage Monitor Service
    srvcli.dll                 6.2.9200.16384              Server Service Client DLL
    sscore.dll                 6.2.9200.16384               DLL-  
    ssdpapi.dll                6.2.9200.16384              SSDP Client API DLL
    sspicli.dll                6.2.9200.16384              Security Support Provider Interface
    ssshim.dll                 6.2.9200.16384              Windows Componentization Platform Servicing API
    startupscan.dll            6.2.9200.16384               DLL    
    stclient.dll               2001.12.10130.16384         COM+ Configuration Catalog Client
    sti.dll                    6.2.9200.16384                   
    stobject.dll               6.2.9200.16604                 Systray
    storage.dll                2.10.35.35                  OLE 2.1 16/32 Interoperability Library
    storagecontexthandler.dll  6.2.9200.16384                   
    storagewmi.dll             6.2.9200.16384              WMI Provider for Storage Management
    storagewmi_passthru.dll    6.2.9200.16384              WMI PassThru Provider for Storage Management
    storprop.dll               6.2.9200.16384                  
    storsvc.dll                6.2.9200.16384               
    structuredquery.dll        7.0.9200.16384              Structured Query
    sud.dll                    6.2.9200.16384                SUD
    sxproxy.dll                6.2.9200.16384                  Microsoft Windows
    sxs.dll                    6.2.9200.16384              Fusion 2.5
    sxshared.dll               6.2.9200.16384              Microsoft Windows SX Shared Library
    sxsstore.dll               6.2.9200.16384              Sxs Store DLL
    synccenter.dll             6.2.9200.16384                
    synceng.dll                6.2.9200.16432              Windows Briefcase Engine
    synchostps.dll             6.2.9200.16384              Proxystub for sync host
    syncinfrastructure.dll     6.2.9200.16384                Microsoft Windows.
    syncinfrastructureps.dll   6.2.9200.16384              Microsoft Windows sync infrastructure proxy stub.
    syncreg.dll                2007.94.9200.16384          Microsoft Synchronization Framework Registration
    syncui.dll                 6.2.9200.16384               Windows
    syssetup.dll               6.2.9200.16384              Windows NT System Setup
    systemcpl.dll              6.2.9200.16384              CPL 
    systemeventsbrokerclient.dll  6.2.9200.16384              system Events Broker Client Library
    t2embed.dll                6.2.9200.16384              Microsoft T2Embed Font Embedding
    tapi3.dll                  6.2.9200.16384              Microsoft TAPI3
    tapi32.dll                 6.2.9200.16384               API  Microsoft Windows
    tapimigplugin.dll          6.2.9200.16384              Microsoft Windows(TM) TAPI Migration Plugin Dll
    tapiperf.dll               6.2.9200.16384              Microsoft Windows(TM) Telephony Performance Monitor
    tapisrv.dll                6.2.9200.16384                 Microsoft Windows
    tapisysprep.dll            6.2.9200.16384              Microsoft Windows(TM) Telephony Sysprep Work
    tapiui.dll                 6.2.9200.16384               DLL   Microsoft Windows
    taskcomp.dll               6.2.9200.16384                  
    taskschd.dll               6.2.9200.16384              Task Scheduler COM API
    taskschdps.dll             6.2.9200.16384              Task Scheduler Interfaces Proxy
    tbs.dll                    6.2.9200.16384              TBS
    tcpipcfg.dll               6.2.9200.16384                
    tcpmib.dll                 6.2.9200.16384              Standard TCP/IP Port Monitor Helper DLL
    tcpmonui.dll               6.2.9200.16384                  TCP/IP
    tdh.dll                    6.2.9200.16384                 
    termmgr.dll                6.2.9200.16384              Microsoft TAPI3 Terminal Manager
    thawbrkr.dll               6.2.9200.16384              Thai Word Breaker
    themecpl.dll               6.2.9200.16384              CPL 
    themeui.dll                6.2.9200.16384              API   Windows
    threadpoolwinrt.dll        6.2.9200.16384              Windows WinRT Threadpool
    thumbcache.dll             6.2.9200.16384                
    timebrokerclient.dll       6.2.9200.16384              Time Broker Client Library
    timedatemuicallback.dll    6.2.9200.16384              Time Date Control UI Language Change plugin
    tlscsp.dll                 6.2.9200.16384              Microsoft Remote Desktop Services Cryptographic Utility
    tpmcompc.dll               6.2.9200.16384                
    tquery.dll                 7.0.9200.16578               Microsoft Tripoli
    traffic.dll                6.2.9200.16384              Microsoft Traffic Control 1.0 DLL
    tsbyuv.dll                 6.2.9200.16384              Toshiba Video Codec
    tschannel.dll              6.2.9200.16384              Task Scheduler Proxy
    tsgqec.dll                 6.2.9200.16384                      
    tsmf.dll                   6.2.9200.16384                MF    
    tspkg.dll                  6.2.9200.16384              Web Service Security Package
    tsworkspace.dll            6.2.9200.16384                      RemoteApp
    ttlsauth.dll               6.2.9200.16384              DLL   EAP-TTLS
    ttlscfg.dll                6.2.9200.16384              DLL  EAP-TTLS
    tvratings.dll              6.6.9200.16384              Module for managing TV ratings
    twext.dll                  6.2.9200.16384              :  
    twinapi.dll                6.2.9200.16384              twinapi
    twinui.dll                 6.2.9200.16604              TWINUI
    txflog.dll                 2001.12.10130.16384         COM+
    txfw32.dll                 6.2.9200.16384              TxF Win32 DLL
    typelib.dll                2.10.3029.1                 OLE 2.1 16/32 Interoperability Library
    tzres.dll                  6.2.9200.16479               DLL   
    ubpm.dll                   6.2.9200.16604               DLL    
    ucmhc.dll                  6.2.9200.16384                 UCM
    udhisapi.dll               6.2.9200.16384              UPnP Device Host ISAPI Extension
    uexfat.dll                 6.2.9200.16384              eXfat Utility DLL
    ufat.dll                   6.2.9200.16384              FAT Utility DLL
    uianimation.dll            6.2.9200.16384              Windows Animation Manager
    uiautomationcore.dll       7.2.9200.16384                 Microsoft UI
    uiautomationcoreres.dll    7.2.9200.16384              Microsoft UI Automation Core Resource
    uicom.dll                  6.2.9200.16384              Add/Remove Modems
    uireng.dll                 6.2.9200.16384                  
    uiribbon.dll               6.2.9200.16384                Windows
    uiribbonres.dll            6.2.9200.16384              Windows Ribbon Framework Resources
    ulib.dll                   6.2.9200.16384              DLL   
    umdmxfrm.dll               6.2.9200.16384              Unimodem Tranform Module
    unimdmat.dll               6.2.9200.16384              - AT   Unimodem
    uniplat.dll                6.2.9200.16384              Unimodem AT Mini Driver Platform Driver for Windows NT
    unrar.dll                  5.10.100.1259               
    untfs.dll                  6.2.9200.16611              NTFS Utility DLL
    upnp.dll                   6.2.9200.16384              API   UPnP
    upnphost.dll               6.2.9200.16384                PNP-
    ureg.dll                   6.2.9200.16384              Registry Utility DLL
    url.dll                    10.0.9200.16384             Internet Shortcut Shell Extension DLL
    urlmon.dll                 10.0.9200.16598              OLE32  Win32
    usbceip.dll                6.2.9200.16384               USBCEIP
    usbperf.dll                6.2.9200.16384               DLL   USB
    usbui.dll                  6.2.9200.16384              USB UI Dll
    user32.dll                 6.2.9200.16384                 USER API Windows
    useraccountcontrolsettings.dll  6.2.9200.16384                  
    usercpl.dll                6.2.9200.16384                
    userenv.dll                6.2.9200.16384              Userenv
    userinitext.dll            6.2.9200.16384               DLL    UserInit
    userlanguageprofilecallback.dll  6.2.9200.16384              MUI Callback for User Language profile changed
    userlanguagescpl.dll       6.2.9200.16384               " "  
    usp10.dll                  6.2.9200.16384              Uniscribe Unicode script processor
    ustprov.dll                6.2.9200.16384              User State WMI Provider
    utildll.dll                6.2.9200.16384                WinStation
    uudf.dll                   6.2.9200.16384              UDF Utility DLL
    uxinit.dll                 6.2.9200.16611              Windows User Experience Session Initialization Dll
    uxlib.dll                  6.2.9200.16384              Setup Wizard Framework
    uxlibres.dll               6.2.9200.16384              UXLib Resources
    uxtheme.dll                6.2.9200.16537                UxTheme (Microsoft)
    van.dll                    6.2.9200.16384                
    vault.dll                  6.2.9200.16384                -  Windows
    vaultcli.dll               6.2.9200.16384                  
    vbajet32.dll               6.0.1.9431                  Visual Basic for Applications Development Environment - Expression Service Loader
    vbscript.dll               5.8.9200.16384              Microsoft  VBScript
    vcomp100.dll               10.0.40219.325              Microsoft C/C++ OpenMP Runtime
    vdmdbg.dll                 6.2.9200.16384              VDMDBG.DLL
    vds_ps.dll                 6.2.9200.16384              Microsoft Virtual Disk Service proxy/stub
    verifier.dll               6.2.9200.16384              Standard application verifier provider dll
    version.dll                6.2.9200.16384              Version Checking and File Installation Libraries
    vfwwdm32.dll               6.2.9200.16384               VfW MM Driver    WDM-
    vidreszr.dll               6.2.9200.16384              Windows Media Resizer
    virtdisk.dll               6.2.9200.16384              Virtual Disk API DLL
    vpnikeapi.dll              6.2.9200.16384              VPN IKE API's
    vscmgrps.dll               6.2.9200.16384              Microsoft Virtual Smart Card Manager Proxy/Stub
    vss_ps.dll                 6.2.9200.16384              Microsoft Volume Shadow Copy Service proxy/stub
    vssapi.dll                 6.2.9200.16384              Microsoft Volume Shadow Copy Requestor/Writer Services API DLL
    vsstrace.dll               6.2.9200.16384                    Microsoft
    w32topl.dll                6.2.9200.16384              Windows NT Topology Maintenance Tool
    wab32.dll                  6.2.9200.16384              Microsoft (R) Contacts DLL
    wab32res.dll               6.2.9200.16384               Microsoft (R) DLL
    wabsyncprovider.dll        6.2.9200.16384                 Microsoft Windows
    wavemsp.dll                6.2.9200.16384              Microsoft Wave MSP
    wbemcomn.dll               6.2.9200.16384              WMI
    wcmapi.dll                 6.2.9200.16384              Windows Connection Manager Client API
    wcnapi.dll                 6.2.9200.16384              Windows Connect Now - API Helper DLL
    wcnwiz.dll                 6.2.9200.16384                Windows Connect Now
    wcspluginservice.dll       6.2.9200.16384               DLL WcsPlugInService
    wdc.dll                    6.2.9200.16384               
    wdi.dll                    6.2.9200.16384                Windows
    wdigest.dll                6.2.9200.16384              Microsoft Digest Access
    wdscore.dll                6.2.9200.16384              Panther Engine Module
    webcamui.dll               6.2.9200.16384                Microsoft Windows
    webcheck.dll               10.0.9200.16384              -
    webclnt.dll                6.2.9200.16384               DLL - DAV
    webio.dll                  6.2.9200.16384              API    
    webservices.dll            6.2.9200.16384                - Windows
    websocket.dll              6.2.9200.16384              Web Socket API
    wecapi.dll                 6.2.9200.16384              Event Collector Configuration API
    wer.dll                    6.2.9200.16384                  Windows
    werdiagcontroller.dll      6.2.9200.16384              WER Diagnostic Controller
    werui.dll                  6.2.9200.16384               DLL      Windows
    wevtapi.dll                6.2.9200.16384              API    
    wevtfwd.dll                6.2.9200.16384              WS-Management Event Forwarding Plug-in
    wfapigp.dll                6.2.9200.16384              Windows Firewall GPO Helper dll
    wfdprov.dll                6.2.9200.16384              Private WPS provisioning API DLL for Wi-Fi Direct
    wfhc.dll                   6.2.9200.16384               Windows.   
    whhelper.dll               6.2.9200.16384              DLL     winHttp
    wiaaut.dll                 6.2.9200.16384               WIA-
    wiadefui.dll               6.2.9200.16384                  WIA
    wiadss.dll                 6.2.9200.16384               WIA -  TWAIN
    wiascanprofiles.dll        6.2.9200.16384              Microsoft Windows ScanProfiles
    wiashext.dll               6.2.9200.16384                     
    wiatrace.dll               6.2.9200.16384              WIA Tracing
    wimgapi.dll                6.2.9200.16384               Windows Imaging
    winbio.dll                 6.2.9200.16384              API   Windows
    winbrand.dll               6.2.9200.16384              Windows Branding Resources
    wincredprovider.dll        6.2.9200.16384               DLL wincredprovider
    windows.applicationmodel.background.systemeventsbroker.dll  6.2.9200.16384              Windows Background System Events Broker API Server
    windows.applicationmodel.background.timebroker.dll  6.2.9200.16384              Windows Background Time Broker API Server
    windows.applicationmodel.dll  6.2.9200.16384              Windows ApplicationModel API Server
    windows.applicationmodel.store.dll  6.2.9200.16686               Windows   DLL  
    windows.applicationmodel.store.testingframework.dll  6.2.9200.16686               Windows   DLL    
    windows.devices.enumeration.dll  6.2.9200.16384              Windows.Devices.Enumeration
    windows.devices.enumeration.ps.dll  6.2.9200.16384              Windows.Devices.Enumeration Interface Proxy
    windows.devices.geolocation.dll  6.2.9200.16384              Geolocation Runtime DLL
    windows.devices.portable.dll  6.2.9200.16384              Windows Runtime Portable Devices DLL
    windows.devices.printers.extensions.dll  6.2.9200.16384              Windows.Devices.Printers.Extensions
    windows.devices.sensors.dll  6.2.9200.16384               DLL    Windows
    windows.globalization.dll  6.2.9200.16548              Windows Globalization
    windows.globalization.fontgroups.dll  6.2.9200.16384              Fonts Mapping API
    windows.graphics.dll       6.2.9200.16384              WinRT Windows Graphics DLL
    windows.graphics.printing.dll  6.2.9200.16384                Microsoft Windows
    windows.media.devices.dll  6.2.9200.16384              Windows Runtime media device server DLL
    windows.media.dll          6.2.9200.16496              Windows Media Runtime DLL
    windows.media.mediacontrol.dll  6.2.9200.16384              Windows Runtime MediaControl server DLL
    windows.media.streaming.dll  12.0.9200.16384             DLNA DLL
    windows.media.streaming.ps.dll  12.0.9200.16384             DLNA Proxy-Stub DLL
    windows.networking.backgroundtransfer.dll  6.2.9200.16578              Windows.Networking.BackgroundTransfer DLL
    windows.networking.connectivity.dll  6.2.9200.16518              Windows Networking Connectivity Runtime DLL
    windows.networking.dll     6.2.9200.16578              Windows.Networking DLL
    windows.networking.networkoperators.hotspotauthentication.dll  6.2.9200.16384              Microsoft Windows Hotspot Authentication API
    windows.networking.proximity.dll  6.2.9200.16384              Windows Runtime Proximity API DLL
    windows.networking.sockets.pushenabledapplication.dll  6.2.9200.16384              Windows.Networking.Sockets.PushEnabledApplication DLL
    windows.security.authentication.onlineid.dll  6.2.9200.16548              Windows Runtime OnlineId Authentication DLL
    windows.security.credentials.ui.credentialpicker.dll  6.2.9200.16384              WinRT Credential Picker Server
    windows.storage.applicationdata.dll  6.2.9200.16384              Windows Application Data API Server
    windows.storage.compression.dll  6.2.9200.16384              WinRT Compression
    windows.system.display.dll  6.2.9200.16384              Windows System Display Runtime DLL
    windows.system.profile.hardwareid.dll  6.2.9200.16384              DLL-      Windows
    windows.system.remotedesktop.dll  6.2.9200.16384              Windows System RemoteDesktop Runtime DLL
    windows.ui.dll             6.2.9200.16384              Windows Runtime UI Foundation DLL
    windows.ui.immersive.dll   6.2.9200.16384              WINDOWS.UI.IMMERSIVE
    windows.ui.input.inking.dll  6.2.9200.16384              WinRT Windows Inking DLL
    windows.ui.xaml.dll        6.2.9200.16604              Windows.UI.Xaml dll
    windows.web.dll            6.2.9200.16384               DLL -
    windowsaccessbridge-32.dll  8.0.25.18                   Java(TM) Platform SE binary
    windowscodecs.dll          6.2.9200.16548              Microsoft Windows Codecs Library
    windowscodecsext.dll       6.2.9200.16384              Microsoft Windows Codecs Extended Library
    windowslivelogin.dll       6.2.9200.16384              Microsoft Account Login Helper
    winfax.dll                 6.2.9200.16384              Microsoft  Fax API Support DLL
    winhttp.dll                6.2.9200.16384               HTTP Windows
    wininet.dll                10.0.9200.16598                Win32
    wininitext.dll             6.2.9200.16384              WinInit Utility Extension DLL
    winipsec.dll               6.2.9200.16384              Windows IPsec SPD Client DLL
    winlangdb.dll              6.2.9200.16384                 Windows Bcp47
    winmde.dll                 12.0.9200.16548             WinMDE DLL
    winmm.dll                  6.2.9200.16384              MCI API DLL
    winmmbase.dll              6.2.9200.16384              Base Multimedia Extension API DLL
    winmsoirmprotector.dll     6.2.9200.16384              Windows Office file format IRM Protector
    winnsi.dll                 6.2.9200.16384              Network Store Information RPC interface
    winopcirmprotector.dll     6.2.9200.16384              Windows Office file format IRM Protector
    winrnr.dll                 6.2.9200.16384              LDAP RnR Provider DLL
    winrscmd.dll               6.2.9200.16384              remtsvc
    winrsmgr.dll               6.2.9200.16384              WSMan Shell API
    winrssrv.dll               6.2.9200.16384              winrssrv
    winsatapi.dll              6.2.9200.16384              Windows System Assessment Tool API
    winscard.dll               6.2.9200.16384              API - (Microsoft)
    winshfhc.dll               6.2.9200.16384              File Risk Estimation
    winsku.dll                 6.2.9200.16384              Windows SKU Library
    winsockhc.dll              6.2.9200.16384                   Winsock
    winsrpc.dll                6.2.9200.16384              WINS RPC LIBRARY
    winsta.dll                 6.2.9200.16384              Winstation Library
    winsync.dll                2007.94.9200.16384          Synchronization Framework
    winsyncmetastore.dll       2007.94.9200.16384          Windows Synchronization Metadata Store
    winsyncproviders.dll       2007.94.9200.16384          Windows Synchronization Provider Framework
    wintrust.dll               6.2.9200.16666              Microsoft Trust Verification APIs
    wintypes.dll               6.2.9200.16384               DLL   Windows
    winusb.dll                 6.2.9200.16384              Windows USB Driver User Library
    wisp.dll                   6.2.9200.16384              Microsoft Pen and Touch Input Component
    wkscli.dll                 6.2.9200.16384              Workstation Service Client DLL
    wkspbrokerax.dll           6.2.9200.16384              Microsoft Workspace Broker ActiveX Control
    wksprtps.dll               6.2.9200.16384              WorkspaceRuntime ProxyStub DLL
    wlanapi.dll                6.2.9200.16384              Windows WLAN AutoConfig Client Side API DLL
    wlancfg.dll                6.2.9200.16384               DLL    Netsh  WLAN
    wlanconn.dll               6.2.9200.16384                Dot11
    wlandlg.dll                6.2.9200.16384                   
    wlangpui.dll               6.2.9200.16384               "   "
    wlanhlp.dll                6.2.9200.16384              Windows Wireless LAN 802.11 Client Side Helper API
    wlaninst.dll               6.2.9200.16384              Windows NET Device Class Co-Installer for Wireless LAN
    wlanmm.dll                 6.2.9200.16384                Dot11   
    wlanmsm.dll                6.2.9200.16384              Windows Wireless LAN 802.11 MSM DLL
    wlanpref.dll               6.2.9200.16384                
    wlansec.dll                6.2.9200.16384              Windows Wireless LAN 802.11 MSM Security Module DLL
    wlanui.dll                 6.2.9200.16384                 
    wlanutil.dll               6.2.9200.16384               DLL     Windows   802.11
    wldap32.dll                6.2.9200.16384              Win32 LDAP API DLL
    wlgpclnt.dll               6.2.9200.16384                 802.11
    wlidcli.dll                6.2.9200.16384                 (DLL)   
    wlidcredprov.dll           6.2.9200.16384              Microsoft Account Credential Provider
    wlidfdp.dll                6.2.9200.16384              Microsoft Account Function Discovery Provider
    wlidnsp.dll                6.2.9200.16384              Microsoft Account Namespace Provider
    wlidprov.dll               6.2.9200.16384              Microsoft Account Provider
    wlidres.dll                6.2.9200.16384               Microsoft Windows Live ID
    wlroamextension.dll        6.2.9200.16518                  Windows Live
    wls0wndh.dll               6.2.9200.16384              Session0 Viewer Window Hook DLL
    wmadmod.dll                6.2.9200.16384              Windows Media Audio Decoder
    wmadmoe.dll                6.2.9200.16384              Windows Media Audio 10 Encoder/Transcoder
    wmasf.dll                  12.0.9200.16384             Windows Media ASF DLL
    wmcodecdspps.dll           6.2.9200.16384              Windows Media CodecDSP Proxy Stub Dll
    wmdmlog.dll                12.0.9200.16384             Windows Media Device Manager Logger
    wmdmps.dll                 12.0.9200.16384             Windows Media Device Manager Proxy Stub
    wmdrmdev.dll               12.0.9200.16384             Windows Media DRM for Network Devices Registration DLL
    wmdrmnet.dll               12.0.9200.16384             Windows Media DRM for Network Devices DLL
    wmdrmsdk.dll               11.0.9200.16384             Windows Media DRM SDK DLL
    wmerror.dll                12.0.9200.16384               Windows Media ()
    wmi.dll                    6.2.9200.16384              WMI DC and DP functionality
    wmiclnt.dll                6.2.9200.16384              WMI Client API
    wmidcom.dll                6.2.9200.16384              WMI
    wmidx.dll                  12.0.9200.16384             Windows Media Indexer DLL
    wmiprop.dll                6.2.9200.16384                  WDM
    wmitomi.dll                6.2.9200.16384                CIM
    wmnetmgr.dll               12.0.9200.16384             Windows Media Network Plugin Manager DLL
    wmp.dll                    12.0.9200.16578             Windows Media Player
    wmpdxm.dll                 12.0.9200.16384             Windows Media Player Extension
    wmpeffects.dll             12.0.9200.16384             Windows Media Player Effects
    wmphoto.dll                6.2.9200.16384               Windows Media
    wmploc.dll                 12.0.9200.16420               Windows Media
    wmpps.dll                  12.0.9200.16384             Windows Media Player Proxy Stub Dll
    wmpshell.dll               12.0.9200.16384                Windows Media
    wmsgapi.dll                6.2.9200.16384              WinLogon IPC Client
    wmspdmod.dll               6.2.9200.16384              Windows Media Audio Voice Decoder
    wmspdmoe.dll               6.2.9200.16384              Windows Media Audio Voice Encoder
    wmvcore.dll                12.0.9200.16384             Windows Media Playback/Authoring DLL
    wmvdecod.dll               6.2.9200.16604                  Windows Media
    wmvdspa.dll                6.2.9200.16384              Windows Media Video DSP Components - Advanced
    wmvencod.dll               6.2.9200.16384                  Windows Media 9
    wmvsdecd.dll               6.2.9200.16384              Windows Media Screen Decoder
    wmvsencd.dll               6.2.9200.16384              Windows Media Screen Encoder
    wmvxencd.dll               6.2.9200.16384              Windows Media Video Encoder
    wow32.dll                  6.2.9200.16384              Wow32
    wpc.dll                    6.2.9200.16384                 
    wpcsvc.dll                 6.2.9200.16384                  Windows
    wpdshext.dll               6.2.9200.16384                  
    wpdshserviceobj.dll        6.2.9200.16384              Windows Portable Device Shell Service Object
    wpdsp.dll                  6.2.9200.16384              WMDM Service Provider for Windows Portable Devices
    wpdwcn.dll                 6.2.9200.16384                    WCN
    wpnapps.dll                6.2.9200.16384                push- Windows
    ws2_32.dll                 6.2.9200.16384              32-  Windows Socket 2.0
    ws2help.dll                6.2.9200.16384              Windows Socket 2.0 Helper for Windows NT
    wscapi.dll                 6.2.9200.16578              API    Windows
    wscinterop.dll             6.2.9200.16384              Windows Health Center WSC Interop
    wscisvif.dll               6.2.9200.16384              Windows Security Center ISV API
    wsclient.dll               6.2.9200.16686               Windows   
    wscproxystub.dll           6.2.9200.16384              Windows Security Center ISV Proxy Stub
    wsdapi.dll                 6.2.9200.16384              -   DLL API- 
    wsdchngr.dll               6.2.9200.16384              WSD Challenge Component
    wsecedit.dll               6.2.9200.16384                 
    wshbth.dll                 6.2.9200.16384              Windows Sockets Helper DLL
    wshcon.dll                 5.8.9200.16384              Microsoft  Windows Script Controller
    wshelper.dll               6.2.9200.16384               DLL    Winsock Net
    wshext.dll                 5.8.9200.16384              Microsoft  Shell Extension for Windows Script Host
    wship6.dll                 6.2.9200.16384               DLL  Winsock2 (TL/IPv6)
    wshirda.dll                6.2.9200.16384              Windows Sockets Helper DLL
    wshqos.dll                 6.2.9200.16384               DLL   QoS Winsock2
    wshrm.dll                  6.2.9200.16384                DLL   Windows  PGM
    wshtcpip.dll               6.2.9200.16384               DLL   Winsock2 (TL/IPv4)
    wsmagent.dll               6.2.9200.16384              WinRM Agent
    wsmanmigrationplugin.dll   6.2.9200.16384              WinRM Migration Plugin
    wsmauto.dll                6.2.9200.16384              WSMAN Automation
    wsmplpxy.dll               6.2.9200.16384              wsmplpxy
    wsmres.dll                 6.2.9200.16384               DLL  WSMan
    wsmsvc.dll                 6.2.9200.16384               WSMan
    wsmwmipl.dll               6.2.9200.16384              WSMAN WMI Provider
    wsnmp32.dll                6.2.9200.16384              Microsoft WinSNMP v2.0 Manager API
    wsock32.dll                6.2.9200.16384              Windows Socket 32-Bit DLL
    wsshared.dll               6.2.9200.16686               DLL WSShared
    wssync.dll                 6.2.9200.16686              Windows Store Licensing Sync Client
    wtsapi32.dll               6.2.9200.16384              Windows Remote Desktop Session Host Server SDK APIs
    wuapi.dll                  7.8.9200.16693              API    Windows
    wudriver.dll               7.8.9200.16693              Windows Update WUDriver Stub
    wups.dll                   7.8.9200.16686              Windows Update client proxy stub
    wuwebv.dll                 7.8.9200.16693              Windows Update Vista Web Control
    wvc.dll                    6.2.9200.16384              Windows Visual Components
    wwaapi.dll                 6.2.9200.16384              Microsoft Web Application Host API library
    wwanapi.dll                6.2.9200.16518              Mbnapi
    wwapi.dll                  8.1.9200.16384              WWAN API
    x3daudio1_0.dll            9.11.519.0                  X3DAudio
    x3daudio1_1.dll            9.15.779.0                  X3DAudio
    x3daudio1_2.dll            9.21.1148.0                 X3DAudio
    x3daudio1_3.dll            9.22.1284.0                 X3DAudio
    x3daudio1_4.dll            9.23.1350.0                 X3DAudio
    x3daudio1_5.dll            9.25.1476.0                 X3DAudio
    x3daudio1_6.dll            9.26.1590.0                 3D Audio Library
    x3daudio1_7.dll            9.28.1886.0                 3D Audio Library
    xactengine2_0.dll          9.11.519.0                  XACT Engine API
    xactengine2_1.dll          9.12.589.0                  XACT Engine API
    xactengine2_10.dll         9.21.1148.0                 XACT Engine API
    xactengine2_2.dll          9.13.644.0                  XACT Engine API
    xactengine2_3.dll          9.14.701.0                  XACT Engine API
    xactengine2_4.dll          9.15.779.0                  XACT Engine API
    xactengine2_5.dll          9.16.857.0                  XACT Engine API
    xactengine2_6.dll          9.17.892.0                  XACT Engine API
    xactengine2_7.dll          9.18.944.0                  XACT Engine API
    xactengine2_8.dll          9.19.1007.0                 XACT Engine API
    xactengine2_9.dll          9.20.1057.0                 XACT Engine API
    xactengine3_0.dll          9.22.1284.0                 XACT Engine API
    xactengine3_1.dll          9.23.1350.0                 XACT Engine API
    xactengine3_2.dll          9.24.1400.0                 XACT Engine API
    xactengine3_3.dll          9.25.1476.0                 XACT Engine API
    xactengine3_4.dll          9.26.1590.0                 XACT Engine API
    xactengine3_5.dll          9.27.1734.0                 XACT Engine API
    xactengine3_6.dll          9.28.1886.0                 XACT Engine API
    xactengine3_7.dll          9.29.1962.0                 XACT Engine API
    xapofx1_0.dll              9.23.1350.0                 XAPOFX
    xapofx1_1.dll              9.24.1400.0                 XAPOFX
    xapofx1_2.dll              9.25.1476.0                 XAPOFX
    xapofx1_3.dll              9.26.1590.0                 Audio Effect Library
    xapofx1_4.dll              9.28.1886.0                 Audio Effect Library
    xapofx1_5.dll              9.29.1962.0                 Audio Effect Library
    xaudio2_0.dll              9.22.1284.0                 XAudio2 Game Audio API
    xaudio2_1.dll              9.23.1350.0                 XAudio2 Game Audio API
    xaudio2_2.dll              9.24.1400.0                 XAudio2 Game Audio API
    xaudio2_3.dll              9.25.1476.0                 XAudio2 Game Audio API
    xaudio2_4.dll              9.26.1590.0                 XAudio2 Game Audio API
    xaudio2_5.dll              9.27.1734.0                 XAudio2 Game Audio API
    xaudio2_6.dll              9.28.1886.0                 XAudio2 Game Audio API
    xaudio2_7.dll              9.29.1962.0                 XAudio2 Game Audio API
    xaudio2_8.dll              6.2.9200.16384              XAudio2 Game Audio API
    xinput1_1.dll              9.12.589.0                  Microsoft Common Controller API
    xinput1_2.dll              9.14.701.0                  Microsoft Common Controller API
    xinput1_3.dll              9.18.944.0                  Microsoft Common Controller API
    xinput1_4.dll              6.2.9200.16384              API   ()
    xinput9_1_0.dll            6.2.9200.16384                XNA
    xmlfilter.dll              2008.0.9200.16384            XML
    xmllite.dll                6.2.9200.16384              Microsoft XmlLite Library
    xmlprovi.dll               6.2.9200.16384              Network Provisioning Service Client API
    xmlrw.dll                  2011.110.2809.27            Microsoft XML Slim Library
    xmlrwbin.dll               2011.110.2809.27            Microsoft XML Slim Library
    xolehlp.dll                2001.12.10130.16384         Microsoft Distributed Transaction Coordinator Helper APIs DLL
    xpsfilt.dll                6.2.9200.16384              XML Paper Specification Document IFilter
    xpsgdiconverter.dll        6.2.9200.16578              XPS to GDI Converter
    xpsprint.dll               6.2.9200.16384              XPS Printing DLL
    xpsrasterservice.dll       6.2.9200.16518              XPS Rasterization Service Component
    xpsservices.dll            6.2.9200.16384              Xps Object Model in memory creation and deserialization
    xpsshhdr.dll               6.2.9200.16384              OPC Shell Metadata Handler
    xpssvcs.dll                6.2.9200.16384              Native Code Xps Services Library
    xwizards.dll               6.2.9200.16384                 
    xwreg.dll                  6.2.9200.16384              Extensible Wizard Registration Manager Module
    xwtpdui.dll                6.2.9200.16384                   DUI
    xwtpw32.dll                6.2.9200.16384                   Win32
    zipfldr.dll                6.2.9200.16384               ZIP-


--------[   ]------------------------------------------------------------------------------------------------

     :
                         21.10.2014 12:00:00
                           21.10.2014 16:55:17
                                            21.10.2014 22:30:29
                                             20136  (0 ., 5 , 35 , 36 )

      :
                                     17.10.2014 21:15:20
                            17.10.2014 21:16:43
                                        251946  (2 ., 21 , 59 , 6 )
                                       98187  (1 ., 3 , 16 , 27 )
                                  133256  (1 ., 13 , 0 , 56 )
                                 40727  (0 ., 11 , 18 , 47 )
                                       15
                                71.96%

      (" "):
                                        19.10.2014 22:56:23
                                     21.10.2014 16:55:18
                                              2

    :
                                                    


--------[   ]-----------------------------------------------------------------------------------------------

    ADMIN$                                    Admin                           C:\Windows
    C$                                                           C:\
    D$                                                           D:\
    IPC$                            IPC            IPC                             


--------[  ]------------------------------------------------------------------------------------------------

       :
                                          
                                             acer
                              
                      
      ./.                      0 / 42 .
                                  0 
                                     
                                       
                                30 
                                30 


--------[    ]----------------------------------------------------------------------------------------------

    antbin1995@mail.ru                                                      MicrosoftAccount
    antbin1995@mail.ru                                                      MicrosoftAccount


--------[  ]------------------------------------------------------------------------------------------------

  [  ]

     :
                                         
                                               
                                                 /
                                               ; 
                                     9
                                           -

     :
                         
                                     
                             
                                  
                                         
                                      
                            

  [   ]

     :
                                          
                                                
                                               ; 
                                     9
                                           -

     :
                         
                                     
                             
                                  
                                         
                                      
                            

  [  ]

     :
                                         
                                               
                                                      
                                               ; 
                                     0
                                           -

     :
                         
                                     
                             
                                  
                                         
                                      
                            


--------[   ]--------------------------------------------------------------------------------------------

  [ IIS_IUSRS ]

      :
                                              ,    IIS.

     :
      IUSR                                              

  [ WinRMRemoteWMIUsers__ ]

      :
                                             Members of this group can access WMI resources over management protocols (such as WS-Management via the Windows Remote Management service). This applies only to WMI namespaces that grant access to the user.

  [  Hyper-V ]

      :
                                                        Hyper-V.

  [  ]

      :
                                               ,         

     :
                                           
                                        

  [  ]

      :
                                                   ,   ,     "",     .

     :
                                                   

  [   ]

      :
                                                 .

  [   ]

      :
                                                         

  [    ]

      :
                                                         

  [       ]

      :
                                                           .

  [   ]

      :
                                                        

  [  DCOM ]

      :
                                                 ,     DCOM   .

  [    ]

      :
                                                     ,         ,        .

  [    ]

      :
                                                  ,       

  [     ]

      :
                                                     

  [    ]

      :
                                                      WMI    (  WS-Management     Windows).      WMI,   .

  [  ]

      :
                                                         

     :
                                           
                                       

  [  ]

      :
                                                 

  [    ]

      :
                                                      


--------[   ]-------------------------------------------------------------------------------------------

  [  ]

      :
                                              

     :
                                           
                                        
                                                   


--------[  Windows ]-----------------------------------------------------------------------------------------------

  [ Intel(R) HD Graphics 3000 ]

     :
                                      Intel(R) HD Graphics 3000
                                          Intel(R) HD Graphics 3000
       BIOS                                       Intel Video BIOS
                                      Intel(R) HD Graphics Family
       DAC                                           
                                            21.08.2012
                                          9.17.10.2843
                                       Intel Corporation
                                           1890230 

     :
      igdumd64                                          9.17.10.2843
      igd10umd64                                        9.17.10.2843
      igd10umd64                                        9.17.10.2843
      igdumd32                                          9.17.10.2843
      igd10umd32                                        9.17.10.2843
      igd10umd32                                        9.17.10.2843

     :
                                                   Intel Corporation
                                     http://www.intel.com/products/chipsets
                                       http://support.intel.com/support/graphics
                                     http://www.aida64.com/driver-updates

  [ Intel(R) HD Graphics 3000 ]

     :
                                      Intel(R) HD Graphics 3000
                                          Intel(R) HD Graphics 3000
       BIOS                                       Intel Video BIOS
                                      Intel(R) HD Graphics Family
       DAC                                           
                                            21.08.2012
                                          9.17.10.2843
                                       Intel Corporation
                                           1890230 

     :
      igdumd64                                          9.17.10.2843
      igd10umd64                                        9.17.10.2843
      igd10umd64                                        9.17.10.2843
      igdumd32                                          9.17.10.2843
      igd10umd32                                        9.17.10.2843
      igd10umd32                                        9.17.10.2843

     :
                                                   Intel Corporation
                                     http://www.intel.com/products/chipsets
                                       http://support.intel.com/support/graphics
                                     http://www.aida64.com/driver-updates

  [ NVIDIA GeForce GT 630M ]

     :
                                      NVIDIA GeForce GT 630M
                                          GeForce GT 630M
       BIOS                                       Version 70.8.3c.0.22
                                      GeForce GT 630M
       DAC                                           Integrated RAMDAC
                                            13.09.2014
                                          9.18.13.4411 - nVIDIA ForceWare 344.11
                                       NVIDIA
                                           1 

     :
      nvd3dumx                                          9.18.13.4411
      nvwgf2umx                                         9.18.13.4411
      nvwgf2umx                                         9.18.13.4411
      nvd3dum                                           9.18.13.4411 - nVIDIA ForceWare 344.11
      nvwgf2um                                          9.18.13.4411
      nvwgf2um                                          9.18.13.4411

     :
                                                   NVIDIA Corporation
                                     http://www.nvidia.com/page/products.html
                                       http://www.nvidia.com/content/drivers/drivers.asp
                                     http://www.aida64.com/driver-updates

  [ NVIDIA GeForce GT 630M ]

     :
                                      NVIDIA GeForce GT 630M
                                          GeForce GT 630M
       BIOS                                       Version 70.8.3c.0.22
                                      GeForce GT 630M
       DAC                                           Integrated RAMDAC
                                            13.09.2014
                                          9.18.13.4411 - nVIDIA ForceWare 344.11
                                       NVIDIA
                                           1 

     :
      nvd3dumx                                          9.18.13.4411
      nvwgf2umx                                         9.18.13.4411
      nvwgf2umx                                         9.18.13.4411
      nvd3dum                                           9.18.13.4411 - nVIDIA ForceWare 344.11
      nvwgf2um                                          9.18.13.4411
      nvwgf2um                                          9.18.13.4411

     :
                                                   NVIDIA Corporation
                                     http://www.nvidia.com/page/products.html
                                       http://www.nvidia.com/content/drivers/drivers.asp
                                     http://www.aida64.com/driver-updates


--------[  PCI / AGP ]---------------------------------------------------------------------------------------------

    Intel HD Graphics 3000                                                            
    Intel HD Graphics 3000                                                            3D-


--------[   ]---------------------------------------------------------------------------------------

  [ : Intel Sandy Bridge-MB - Integrated Graphics Controller (MB GT2 1.3GHz+) ]

      :
                                            Intel Sandy Bridge-MB - Integrated Graphics Controller (MB GT2 1.3GHz+)
       BIOS                                       Build Number: 2119 PC 14.34  06/16/2011  22:35:33
       BIOS                                         16.06.2011
                                       Sandy Bridge-MB GT2
      PCI-                                    8086-0126 / 1025-0504  (Rev 09)
                                  32 nm
                                                 
                                               649   (original: 649 MHz)
        (Turbo)                                649 - 1297 
       RAMDAC                                    350 
                                     4
      TMU                                     1
                                     48  (v4.1)
        DirectX                      DirectX v10.1
       WDDM                                       WDDM 1.2

    :
                                             Intel Gen6
      Execution Units (EU)                              12
       L1                                  4 
       L1                                     4 
       L2                                  24 
       L2                                     16 
      Unified Return Buffer                             64 

      :
                            2596 / @ 649 
                            2596 / @ 649 

    :
                                        8 
                                      77 

      :
                                                   Intel Corporation
                                     http://www.intel.com/products/chipsets
                                       http://support.intel.com/support/graphics
                                     http://www.aida64.com/driver-updates


--------[  ]-----------------------------------------------------------------------------------------------------

  [ AU Optronics B156XW02 V6 ]

     :
                                             AU Optronics B156XW02 V6
      ID                                        AUO26EC
                                           AUO
                                                  B156XW02 V6
                                             15.6" LCD (WXGA)
                                              1 / 2009
                                           
      .                         344 mm x 193 mm (15.5")
                                       16:9
                                            30 - 83 
                                           56 - 75 
                                  1366 x 768
                                                   2.20
        DPMS                        

     :
      1366 x 768                                         : 71.80 

     :
                                                   AU Optronics Corp.
                                     http://www.auo.com/?sn=149&lang=en-US&c=33
                                       http://www.auo.com/?sn=171&lang=en-US
                                     http://www.aida64.com/driver-updates


--------[   ]------------------------------------------------------------------------------------------------

      :
                                     
                                              1366 x 768
                                            32 
                                       1
                                        96 dpi
        /                         36 / 36
                                     51
                                      60 
                                    C:\Users\ \AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper

      :
       -                             
                                              
                                      
                              
      ClearType                                         
             
                                
                                  
                                      
                                  
                                 
                                            
                                   
       /           
                                           
                              
                               
                            
                              
      Windows Aero                                      
       Windows Plus!                               


--------[  ]-----------------------------------------------------------------------------------------------

    \\.\DISPLAY1           (0,0)          (1366,768)


--------[  ]-------------------------------------------------------------------------------------------------

    320 x 200          32   60 Hz
    320 x 200          32   60 Hz
    320 x 200          32   60 Hz
    320 x 240          32   60 Hz
    320 x 240          32   60 Hz
    320 x 240          32   60 Hz
    400 x 300          32   60 Hz
    400 x 300          32   60 Hz
    400 x 300          32   60 Hz
    512 x 384          32   60 Hz
    512 x 384          32   60 Hz
    512 x 384          32   60 Hz
    640 x 400          32   60 Hz
    640 x 400          32   60 Hz
    640 x 400          32   60 Hz
    640 x 480          32   60 Hz
    640 x 480          32   60 Hz
    640 x 480          32   60 Hz
    800 x 600          32   60 Hz
    800 x 600          32   60 Hz
    800 x 600          32   60 Hz
    1024 x 768         32   60 Hz
    1024 x 768         32   60 Hz
    1024 x 768         32   60 Hz
    1280 x 600         32   60 Hz
    1280 x 600         32   60 Hz
    1280 x 600         32   60 Hz
    1280 x 720         32   60 Hz
    1280 x 720         32   60 Hz
    1280 x 720         32   60 Hz
    1280 x 768         32   60 Hz
    1280 x 768         32   60 Hz
    1280 x 768         32   60 Hz
    1360 x 768         32   60 Hz
    1360 x 768         32   60 Hz
    1360 x 768         32   60 Hz
    1366 x 768         32   60 Hz


--------[ OpenGL ]------------------------------------------------------------------------------------------------------

     OpenGL:
                                           Intel
      Renderer                                          Intel(R) HD Graphics 3000
                                                  3.1.0 - Build 9.17.10.2843
                                    1.40 - Intel Build 9.17.10.2843
      OpenGL DLL                                        6.2.9200.16384(win8_rtm.120725-1247)
      Multitexture Texture Units                        8
      Occlusion Query Counter Bits                      64
      Sub-Pixel Precision                               4 
      Max Viewport Size                                 8192 x 8192
      Max Cube Map Texture Size                         8192 x 8192
      Max Rectangle Texture Size                        8192 x 8192
      Max 3D Texture Size                               2048 x 2048 x 2048
      Max Anisotropy                                    16
      Max Clipping Planes                               6
      Max Display-List Nesting Level                    64
      Max Draw Buffers                                  8
      Max Evaluator Order                               32
      Max Light Sources                                 8
      Max Pixel Map Table Size                          65536
      Max Texture Array Layers                          256
      Max Texture LOD Bias                              15

     OpenGL:
      OpenGL 1.1                                          (100%)
      OpenGL 1.2                                          (100%)
      OpenGL 1.3                                          (100%)
      OpenGL 1.4                                          (100%)
      OpenGL 1.5                                          (100%)
      OpenGL 2.0                                          (100%)
      OpenGL 2.1                                          (100%)
      OpenGL 3.0                                          (100%)
      OpenGL 3.1                                          (100%)
      OpenGL 3.2                                          (70%)
      OpenGL 3.3                                          (70%)
      OpenGL 4.0                                          (15%)
      OpenGL 4.1                                          (0%)
      OpenGL 4.2                                          (0%)
      OpenGL 4.3                                          (0%)
      OpenGL 4.4                                          (0%)
      OpenGL 4.5                                          (0%)

    Max Stack Depth:
      Attribute Stack                                   16
      Client Attribute Stack                            16
      Modelview Matrix Stack                            32
      Name Stack                                        128
      Projection Matrix Stack                           4
      Texture Matrix Stack                              10

    Draw Range Elements:
      Max Index Count                                   1200
      Max Vertex Count                                  1200

    Transform Feedback:
      Max Interleaved Components                        64
      Max Separate Attributes                           4
      Max Separate Components                           4

    Framebuffer Object:
      Max Color Attachments                             8
      Max Render Buffer Size                            4096 x 4096

    Vertex Shader:
      Max Uniform Vertex Components                     512
      Max Varying Floats                                41
      Max Vertex Texture Image Units                    16
      Max Combined Texture Image Units                  16

    Fragment Shader:
      Max Uniform Fragment Components                   1024

    Vertex Program:
      Max Local Parameters                              256
      Max Environment Parameters                        300
      Max Program Matrices                              8
      Max Program Matrix Stack Depth                    2
      Max Vertex Attributes                             16
      Max Instructions                                  1024
      Max Native Instructions                           1024
      Max Temporaries                                   31
      Max Native Temporaries                            31
      Max Parameters                                    512
      Max Native Parameters                             400
      Max Attributes                                    16
      Max Native Attributes                             16
      Max Address Registers                             1
      Max Native Address Registers                      1

    Fragment Program:
      Max Local Parameters                              256
      Max Environment Parameters                        256
      Max Texture Coordinates                           8
      Max Texture Image Units                           16
      Max Instructions                                  1447
      Max Native Instructions                           1447
      Max Temporaries                                   256
      Max Native Temporaries                            256
      Max Parameters                                    512
      Max Native Parameters                             32
      Max Attributes                                    13
      Max Native Attributes                             13
      Max Address Registers                             0
      Max Native Address Registers                      0
      Max ALU Instructions                              1447
      Max Native ALU Instructions                       1447
      Max Texture Instructions                          1447
      Max Native Texture Instructions                   1447
      Max Texture Indirections                          128
      Max Native Texture Indirections                   128

     OpenGL:
       /                   1004 / 129
      GL_3DFX_multisample                                
      GL_3DFX_tbuffer                                    
      GL_3DFX_texture_compression_FXT1                  
      GL_3DL_direct_texture_access2                      
      GL_3Dlabs_multisample_transparency_id              
      GL_3Dlabs_multisample_transparency_range           
      GL_AMD_blend_minmax_factor                         
      GL_AMD_compressed_3DC_texture                      
      GL_AMD_compressed_ATC_texture                      
      GL_AMD_conservative_depth                          
      GL_AMD_debug_output                                
      GL_AMD_depth_clamp_separate                        
      GL_AMD_draw_buffers_blend                          
      GL_AMD_framebuffer_sample_positions                
      GL_AMD_gcn_shader                                  
      GL_AMD_gpu_shader_half_float                       
      GL_AMD_gpu_shader_half_float2                      
      GL_AMD_gpu_shader_int64                            
      GL_AMD_interleaved_elements                        
      GL_AMD_multi_draw_indirect                         
      GL_AMD_name_gen_delete                             
      GL_AMD_occlusion_query_event                       
      GL_AMD_performance_monitor                         
      GL_AMD_pinned_memory                               
      GL_AMD_program_binary_Z400                         
      GL_AMD_query_buffer_object                         
      GL_AMD_sample_positions                            
      GL_AMD_seamless_cubemap_per_texture                
      GL_AMD_shader_atomic_counter_ops                   
      GL_AMD_shader_stencil_export                       
      GL_AMD_shader_stencil_value_export                 
      GL_AMD_shader_trace                                
      GL_AMD_shader_trinary_minmax                       
      GL_AMD_sparse_texture                              
      GL_AMD_sparse_texture_pool                         
      GL_AMD_stencil_operation_extended                  
      GL_AMD_texture_compression_dxt6                    
      GL_AMD_texture_compression_dxt7                    
      GL_AMD_texture_cube_map_array                      
      GL_AMD_texture_texture4                            
      GL_AMD_texture_tile_pool                           
      GL_AMD_transform_feedback3_lines_triangles         
      GL_AMD_transform_feedback4                         
      GL_AMD_vertex_shader_layer                         
      GL_AMD_vertex_shader_tessellator                   
      GL_AMD_vertex_shader_viewport_index                
      GL_AMDX_debug_output                               
      GL_AMDX_name_gen_delete                            
      GL_AMDX_random_access_target                       
      GL_AMDX_vertex_shader_tessellator                  
      GL_ANDROID_extension_pack_es31a                    
      GL_ANGLE_depth_texture                             
      GL_ANGLE_framebuffer_blit                          
      GL_ANGLE_framebuffer_multisample                   
      GL_ANGLE_instanced_arrays                          
      GL_ANGLE_pack_reverse_row_order                    
      GL_ANGLE_program_binary                            
      GL_ANGLE_texture_compression_dxt1                  
      GL_ANGLE_texture_compression_dxt3                  
      GL_ANGLE_texture_compression_dxt5                  
      GL_ANGLE_texture_usage                             
      GL_ANGLE_translated_shader_source                  
      GL_APPLE_aux_depth_stencil                         
      GL_APPLE_client_storage                            
      GL_APPLE_copy_texture_levels                       
      GL_APPLE_element_array                             
      GL_APPLE_fence                                     
      GL_APPLE_float_pixels                              
      GL_APPLE_flush_buffer_range                        
      GL_APPLE_flush_render                              
      GL_APPLE_framebuffer_multisample                   
      GL_APPLE_object_purgeable                          
      GL_APPLE_packed_pixel                              
      GL_APPLE_packed_pixels                             
      GL_APPLE_pixel_buffer                              
      GL_APPLE_rgb_422                                   
      GL_APPLE_row_bytes                                 
      GL_APPLE_specular_vector                           
      GL_APPLE_sync                                      
      GL_APPLE_texture_2D_limited_npot                   
      GL_APPLE_texture_format_BGRA8888                   
      GL_APPLE_texture_max_level                         
      GL_APPLE_texture_range                             
      GL_APPLE_transform_hint                            
      GL_APPLE_vertex_array_object                       
      GL_APPLE_vertex_array_range                        
      GL_APPLE_vertex_point_size                         
      GL_APPLE_vertex_program_evaluators                 
      GL_APPLE_ycbcr_422                                 
      GL_ARB_arrays_of_arrays                            
      GL_ARB_base_instance                               
      GL_ARB_bindless_texture                            
      GL_ARB_blend_func_extended                         
      GL_ARB_buffer_storage                              
      GL_ARB_cl_event                                    
      GL_ARB_clear_buffer_object                         
      GL_ARB_clear_texture                               
      GL_ARB_clip_control                                
      GL_ARB_color_buffer_float                         
      GL_ARB_compatibility                              
      GL_ARB_compressed_texture_pixel_storage            
      GL_ARB_compute_shader                              
      GL_ARB_compute_variable_group_size                 
      GL_ARB_conditional_render_inverted                 
      GL_ARB_conservative_depth                          
      GL_ARB_context_flush_control                       
      GL_ARB_copy_buffer                                
      GL_ARB_copy_image                                  
      GL_ARB_cull_distance                               
      GL_ARB_debug_group                                 
      GL_ARB_debug_label                                 
      GL_ARB_debug_output                                
      GL_ARB_debug_output2                               
      GL_ARB_depth_buffer_float                         
      GL_ARB_depth_clamp                                
      GL_ARB_depth_texture                              
      GL_ARB_derivative_control                          
      GL_ARB_direct_state_access                         
      GL_ARB_draw_buffers                               
      GL_ARB_draw_buffers_blend                         
      GL_ARB_draw_elements_base_vertex                  
      GL_ARB_draw_indirect                               
      GL_ARB_draw_instanced                             
      GL_ARB_enhanced_layouts                            
      GL_ARB_ES2_compatibility                           
      GL_ARB_ES3_1_compatibility                         
      GL_ARB_ES3_compatibility                           
      GL_ARB_explicit_attrib_location                   
      GL_ARB_explicit_uniform_location                   
      GL_ARB_fragment_coord_conventions                 
      GL_ARB_fragment_layer_viewport                     
      GL_ARB_fragment_program                           
      GL_ARB_fragment_program_shadow                    
      GL_ARB_fragment_shader                            
      GL_ARB_framebuffer_no_attachments                  
      GL_ARB_framebuffer_object                         
      GL_ARB_framebuffer_sRGB                           
      GL_ARB_geometry_shader4                            
      GL_ARB_get_program_binary                          
      GL_ARB_get_texture_sub_image                       
      GL_ARB_gpu_shader_fp64                             
      GL_ARB_gpu_shader5                                 
      GL_ARB_half_float_pixel                           
      GL_ARB_half_float_vertex                          
      GL_ARB_imaging                                     
      GL_ARB_indirect_parameters                         
      GL_ARB_instanced_arrays                           
      GL_ARB_internalformat_query                        
      GL_ARB_internalformat_query2                       
      GL_ARB_invalidate_subdata                          
      GL_ARB_make_current_read                           
      GL_ARB_map_buffer_alignment                        
      GL_ARB_map_buffer_range                           
      GL_ARB_matrix_palette                              
      GL_ARB_multi_bind                                  
      GL_ARB_multi_draw_indirect                         
      GL_ARB_multisample                                
      GL_ARB_multitexture                               
      GL_ARB_occlusion_query                            
      GL_ARB_occlusion_query2                           
      GL_ARB_pipeline_statistics_query                   
      GL_ARB_pixel_buffer_object                        
      GL_ARB_point_parameters                           
      GL_ARB_point_sprite                               
      GL_ARB_program_interface_query                     
      GL_ARB_provoking_vertex                           
      GL_ARB_query_buffer_object                         
      GL_ARB_robust_buffer_access_behavior               
      GL_ARB_robustness                                  
      GL_ARB_robustness_isolation                        
      GL_ARB_sample_shading                              
      GL_ARB_sampler_objects                            
      GL_ARB_seamless_cube_map                          
      GL_ARB_seamless_cubemap_per_texture                
      GL_ARB_separate_shader_objects                     
      GL_ARB_shader_atomic_counters                      
      GL_ARB_shader_bit_encoding                        
      GL_ARB_shader_draw_parameters                      
      GL_ARB_shader_group_vote                           
      GL_ARB_shader_image_load_store                     
      GL_ARB_shader_image_size                           
      GL_ARB_shader_objects                             
      GL_ARB_shader_precision                            
      GL_ARB_shader_stencil_export                       
      GL_ARB_shader_storage_buffer_object                
      GL_ARB_shader_subroutine                           
      GL_ARB_shader_texture_image_samples                
      GL_ARB_shader_texture_lod                          
      GL_ARB_shading_language_100                       
      GL_ARB_shading_language_120                        
      GL_ARB_shading_language_420pack                    
      GL_ARB_shading_language_include                    
      GL_ARB_shading_language_packing                    
      GL_ARB_shadow                                     
      GL_ARB_shadow_ambient                              
      GL_ARB_sparse_buffer                               
      GL_ARB_sparse_texture                              
      GL_ARB_stencil_texturing                           
      GL_ARB_swap_buffers                                
      GL_ARB_sync                                       
      GL_ARB_tessellation_shader                         
      GL_ARB_texture_barrier                             
      GL_ARB_texture_border_clamp                       
      GL_ARB_texture_buffer_object                       
      GL_ARB_texture_buffer_object_rgb32                
      GL_ARB_texture_buffer_range                        
      GL_ARB_texture_compression                        
      GL_ARB_texture_compression_bptc                    
      GL_ARB_texture_compression_rgtc                   
      GL_ARB_texture_compression_rtgc                    
      GL_ARB_texture_cube_map                           
      GL_ARB_texture_cube_map_array                      
      GL_ARB_texture_env_add                            
      GL_ARB_texture_env_combine                        
      GL_ARB_texture_env_crossbar                       
      GL_ARB_texture_env_dot3                           
      GL_ARB_texture_float                              
      GL_ARB_texture_gather                              
      GL_ARB_texture_mirror_clamp_to_edge                
      GL_ARB_texture_mirrored_repeat                     
      GL_ARB_texture_multisample                         
      GL_ARB_texture_non_power_of_two                   
      GL_ARB_texture_query_levels                        
      GL_ARB_texture_query_lod                          
      GL_ARB_texture_rectangle                          
      GL_ARB_texture_rg                                 
      GL_ARB_texture_rgb10_a2ui                         
      GL_ARB_texture_snorm                               
      GL_ARB_texture_stencil8                            
      GL_ARB_texture_storage                             
      GL_ARB_texture_storage_multisample                 
      GL_ARB_texture_swizzle                             
      GL_ARB_texture_view                                
      GL_ARB_timer_query                                
      GL_ARB_transform_feedback_instanced                
      GL_ARB_transform_feedback_overflow_query           
      GL_ARB_transform_feedback2                         
      GL_ARB_transform_feedback3                         
      GL_ARB_transpose_matrix                           
      GL_ARB_uber_buffers                                
      GL_ARB_uber_mem_image                              
      GL_ARB_uber_vertex_array                           
      GL_ARB_uniform_buffer_object                      
      GL_ARB_vertex_array_bgra                          
      GL_ARB_vertex_array_object                        
      GL_ARB_vertex_attrib_64bit                         
      GL_ARB_vertex_attrib_binding                       
      GL_ARB_vertex_blend                                
      GL_ARB_vertex_buffer_object                       
      GL_ARB_vertex_program                             
      GL_ARB_vertex_shader                              
      GL_ARB_vertex_type_10f_11f_11f_rev                 
      GL_ARB_vertex_type_2_10_10_10_rev                 
      GL_ARB_viewport_array                              
      GL_ARB_window_pos                                 
      GL_ARM_mali_program_binary                         
      GL_ARM_mali_shader_binary                          
      GL_ARM_rgba8                                       
      GL_ARM_shader_framebuffer_fetch                    
      GL_ARM_shader_framebuffer_fetch_depth_stencil      
      GL_ATI_array_rev_comps_in_4_bytes                  
      GL_ATI_blend_equation_separate                     
      GL_ATI_blend_weighted_minmax                       
      GL_ATI_draw_buffers                                
      GL_ATI_element_array                               
      GL_ATI_envmap_bumpmap                              
      GL_ATI_fragment_shader                             
      GL_ATI_lock_texture                                
      GL_ATI_map_object_buffer                           
      GL_ATI_meminfo                                     
      GL_ATI_pixel_format_float                          
      GL_ATI_pn_triangles                                
      GL_ATI_point_cull_mode                             
      GL_ATI_separate_stencil                           
      GL_ATI_shader_texture_lod                          
      GL_ATI_text_fragment_shader                        
      GL_ATI_texture_compression_3dc                     
      GL_ATI_texture_env_combine3                        
      GL_ATI_texture_float                               
      GL_ATI_texture_mirror_once                         
      GL_ATI_vertex_array_object                         
      GL_ATI_vertex_attrib_array_object                  
      GL_ATI_vertex_blend                                
      GL_ATI_vertex_shader                               
      GL_ATI_vertex_streams                              
      GL_ATIX_pn_triangles                               
      GL_ATIX_texture_env_combine3                       
      GL_ATIX_texture_env_route                          
      GL_ATIX_vertex_shader_output_point_size            
      GL_Autodesk_facet_normal                           
      GL_Autodesk_valid_back_buffer_hint                 
      GL_CR_bounding_box                                 
      GL_CR_cursor_position                              
      GL_CR_head_spu_name                                
      GL_CR_performance_info                             
      GL_CR_print_string                                 
      GL_CR_readback_barrier_size                        
      GL_CR_saveframe                                    
      GL_CR_server_id_sharing                            
      GL_CR_server_matrix                                
      GL_CR_state_parameter                              
      GL_CR_synchronization                              
      GL_CR_tile_info                                    
      GL_CR_tilesort_info                                
      GL_CR_window_size                                  
      GL_DIMD_YUV                                        
      GL_DMP_shader_binary                               
      GL_EXT_422_pixels                                  
      GL_EXT_abgr                                       
      GL_EXT_bgra                                       
      GL_EXT_bindable_uniform                            
      GL_EXT_blend_color                                
      GL_EXT_blend_equation_separate                    
      GL_EXT_blend_func_separate                        
      GL_EXT_blend_logic_op                              
      GL_EXT_blend_minmax                               
      GL_EXT_blend_subtract                             
      GL_EXT_Cg_shader                                   
      GL_EXT_clip_control                                
      GL_EXT_clip_volume_hint                           
      GL_EXT_cmyka                                       
      GL_EXT_color_buffer_float                          
      GL_EXT_color_buffer_half_float                     
      GL_EXT_color_matrix                                
      GL_EXT_color_subtable                              
      GL_EXT_color_table                                 
      GL_EXT_compiled_vertex_array                      
      GL_EXT_convolution                                 
      GL_EXT_convolution_border_modes                    
      GL_EXT_coordinate_frame                            
      GL_EXT_copy_buffer                                 
      GL_EXT_copy_image                                  
      GL_EXT_copy_texture                                
      GL_EXT_cull_vertex                                 
      GL_EXT_debug_label                                 
      GL_EXT_debug_marker                                
      GL_EXT_depth_bounds_test                           
      GL_EXT_depth_buffer_float                          
      GL_EXT_direct_state_access                         
      GL_EXT_discard_framebuffer                         
      GL_EXT_disjoint_timer_query                        
      GL_EXT_draw_buffers                                
      GL_EXT_draw_buffers_indexed                        
      GL_EXT_draw_buffers2                              
      GL_EXT_draw_indirect                               
      GL_EXT_draw_instanced                              
      GL_EXT_draw_range_elements                        
      GL_EXT_fog_coord                                  
      GL_EXT_fog_function                                
      GL_EXT_fog_offset                                  
      GL_EXT_frag_depth                                  
      GL_EXT_fragment_lighting                           
      GL_EXT_framebuffer_blit                           
      GL_EXT_framebuffer_multisample                    
      GL_EXT_framebuffer_multisample_blit_scaled         
      GL_EXT_framebuffer_object                         
      GL_EXT_framebuffer_sRGB                            
      GL_EXT_generate_mipmap                             
      GL_EXT_geometry_point_size                         
      GL_EXT_geometry_shader                             
      GL_EXT_geometry_shader4                            
      GL_EXT_glx_stereo_tree                             
      GL_EXT_gpu_program_parameters                     
      GL_EXT_gpu_shader_fp64                             
      GL_EXT_gpu_shader4                                 
      GL_EXT_gpu_shader5                                 
      GL_EXT_histogram                                   
      GL_EXT_import_sync_object                          
      GL_EXT_index_array_formats                         
      GL_EXT_index_func                                  
      GL_EXT_index_material                              
      GL_EXT_index_texture                               
      GL_EXT_instanced_arrays                            
      GL_EXT_interlace                                   
      GL_EXT_light_texture                               
      GL_EXT_map_buffer_range                            
      GL_EXT_misc_attribute                              
      GL_EXT_multi_draw_arrays                          
      GL_EXT_multisample                                 
      GL_EXT_multisampled_render_to_texture              
      GL_EXT_multiview_draw_buffers                      
      GL_EXT_occlusion_query_boolean                     
      GL_EXT_packed_depth_stencil                       
      GL_EXT_packed_float                               
      GL_EXT_packed_pixels                              
      GL_EXT_packed_pixels_12                            
      GL_EXT_paletted_texture                            
      GL_EXT_pixel_buffer_object                         
      GL_EXT_pixel_format                                
      GL_EXT_pixel_texture                               
      GL_EXT_pixel_transform                             
      GL_EXT_pixel_transform_color_table                 
      GL_EXT_point_parameters                            
      GL_EXT_polygon_offset                              
      GL_EXT_polygon_offset_clamp                        
      GL_EXT_post_depth_coverage                         
      GL_EXT_primitive_bounding_box                      
      GL_EXT_provoking_vertex                            
      GL_EXT_pvrtc_sRGB                                  
      GL_EXT_raster_multisample                          
      GL_EXT_read_format_bgra                            
      GL_EXT_rescale_normal                             
      GL_EXT_robustness                                  
      GL_EXT_scene_marker                                
      GL_EXT_secondary_color                            
      GL_EXT_separate_shader_objects                     
      GL_EXT_separate_specular_color                    
      GL_EXT_shader_atomic_counters                      
      GL_EXT_shader_framebuffer_fetch                    
      GL_EXT_shader_image_load_formatted                 
      GL_EXT_shader_image_load_store                     
      GL_EXT_shader_implicit_conversions                 
      GL_EXT_shader_integer_mix                          
      GL_EXT_shader_io_blocks                            
      GL_EXT_shader_pixel_local_storage                  
      GL_EXT_shader_subroutine                           
      GL_EXT_shader_texture_lod                          
      GL_EXT_shadow_funcs                               
      GL_EXT_shadow_samplers                             
      GL_EXT_shared_texture_palette                      
      GL_EXT_sparse_texture2                             
      GL_EXT_sRGB                                        
      GL_EXT_sRGB_write_control                          
      GL_EXT_static_vertex_array                         
      GL_EXT_stencil_clear_tag                           
      GL_EXT_stencil_two_side                           
      GL_EXT_stencil_wrap                               
      GL_EXT_subtexture                                  
      GL_EXT_swap_control                                
      GL_EXT_tessellation_point_size                     
      GL_EXT_tessellation_shader                         
      GL_EXT_texgen_reflection                           
      GL_EXT_texture                                     
      GL_EXT_texture_array                              
      GL_EXT_texture_border_clamp                        
      GL_EXT_texture_buffer                              
      GL_EXT_texture_buffer_object                       
      GL_EXT_texture_buffer_object_rgb32                 
      GL_EXT_texture_color_table                         
      GL_EXT_texture_compression_bptc                    
      GL_EXT_texture_compression_dxt1                    
      GL_EXT_texture_compression_latc                    
      GL_EXT_texture_compression_rgtc                    
      GL_EXT_texture_compression_s3tc                   
      GL_EXT_texture_cube_map                            
      GL_EXT_texture_cube_map_array                      
      GL_EXT_texture_edge_clamp                         
      GL_EXT_texture_env                                 
      GL_EXT_texture_env_add                            
      GL_EXT_texture_env_combine                        
      GL_EXT_texture_env_dot3                            
      GL_EXT_texture_filter_anisotropic                 
      GL_EXT_texture_filter_minmax                       
      GL_EXT_texture_format_BGRA8888                     
      GL_EXT_texture_integer                            
      GL_EXT_texture_lod                                 
      GL_EXT_texture_lod_bias                           
      GL_EXT_texture_mirror_clamp                        
      GL_EXT_texture_object                              
      GL_EXT_texture_perturb_normal                      
      GL_EXT_texture_rectangle                          
      GL_EXT_texture_rg                                  
      GL_EXT_texture_shared_exponent                    
      GL_EXT_texture_snorm                              
      GL_EXT_texture_sRGB                               
      GL_EXT_texture_sRGB_decode                         
      GL_EXT_texture_storage                             
      GL_EXT_texture_swizzle                            
      GL_EXT_texture_type_2_10_10_10_REV                 
      GL_EXT_texture_view                                
      GL_EXT_texture3D                                  
      GL_EXT_texture4D                                   
      GL_EXT_timer_query                                 
      GL_EXT_transform_feedback                         
      GL_EXT_transform_feedback2                         
      GL_EXT_transform_feedback3                         
      GL_EXT_unpack_subimage                             
      GL_EXT_vertex_array                                
      GL_EXT_vertex_array_bgra                           
      GL_EXT_vertex_array_set                            
      GL_EXT_vertex_array_setXXX                         
      GL_EXT_vertex_attrib_64bit                         
      GL_EXT_vertex_shader                               
      GL_EXT_vertex_weighting                            
      GL_EXT_x11_sync_object                             
      GL_EXTX_framebuffer_mixed_formats                  
      GL_EXTX_packed_depth_stencil                       
      GL_FGL_lock_texture                                
      GL_FJ_shader_binary_GCCSO                          
      GL_GL2_geometry_shader                             
      GL_GREMEDY_frame_terminator                        
      GL_GREMEDY_string_marker                           
      GL_HP_convolution_border_modes                     
      GL_HP_image_transform                              
      GL_HP_occlusion_test                               
      GL_HP_texture_lighting                             
      GL_I3D_argb                                        
      GL_I3D_color_clamp                                 
      GL_I3D_interlace_read                              
      GL_IBM_clip_check                                  
      GL_IBM_cull_vertex                                 
      GL_IBM_load_named_matrix                           
      GL_IBM_multi_draw_arrays                           
      GL_IBM_multimode_draw_arrays                       
      GL_IBM_occlusion_cull                              
      GL_IBM_pixel_filter_hint                           
      GL_IBM_rasterpos_clip                              
      GL_IBM_rescale_normal                              
      GL_IBM_static_data                                 
      GL_IBM_texture_clamp_nodraw                        
      GL_IBM_texture_mirrored_repeat                    
      GL_IBM_vertex_array_lists                          
      GL_IBM_YCbCr                                       
      GL_IMG_multisampled_render_to_texture              
      GL_IMG_program_binary                              
      GL_IMG_read_format                                 
      GL_IMG_sgx_binary                                  
      GL_IMG_shader_binary                               
      GL_IMG_texture_compression_pvrtc                   
      GL_IMG_texture_compression_pvrtc2                  
      GL_IMG_texture_env_enhanced_fixed_function         
      GL_IMG_texture_format_BGRA8888                     
      GL_IMG_user_clip_plane                             
      GL_IMG_vertex_program                              
      GL_INGR_blend_func_separate                        
      GL_INGR_color_clamp                                
      GL_INGR_interlace_read                             
      GL_INGR_multiple_palette                           
      GL_INTEL_compute_shader_lane_shift                 
      GL_INTEL_conservative_rasterization                
      GL_INTEL_fragment_shader_ordering                  
      GL_INTEL_fragment_shader_span_sharing              
      GL_INTEL_image_serialize                           
      GL_INTEL_map_texture                              
      GL_INTEL_parallel_arrays                           
      GL_INTEL_performance_queries                      
      GL_INTEL_performance_query                         
      GL_INTEL_texture_scissor                           
      GL_KHR_blend_equation_advanced                     
      GL_KHR_blend_equation_advanced_coherent            
      GL_KHR_context_flush_control                       
      GL_KHR_debug                                       
      GL_KHR_robust_buffer_access_behavior               
      GL_KHR_robustness                                  
      GL_KHR_texture_compression_astc_hdr                
      GL_KHR_texture_compression_astc_ldr                
      GL_KTX_buffer_region                               
      GL_MESA_pack_invert                                
      GL_MESA_program_debug                              
      GL_MESA_resize_buffers                             
      GL_MESA_texture_array                              
      GL_MESA_texture_signed_rgba                        
      GL_MESA_window_pos                                 
      GL_MESA_ycbcr_texture                              
      GL_MESAX_texture_float                             
      GL_MESAX_texture_stack                             
      GL_MTX_fragment_shader                             
      GL_MTX_precision_dpi                               
      GL_NV_3dvision_settings                            
      GL_NV_alpha_test                                   
      GL_NV_bgr                                          
      GL_NV_bindless_multi_draw_indirect                 
      GL_NV_bindless_multi_draw_indirect_count           
      GL_NV_bindless_texture                             
      GL_NV_blend_equation_advanced                      
      GL_NV_blend_equation_advanced_coherent             
      GL_NV_blend_minmax                                 
      GL_NV_blend_square                                
      GL_NV_centroid_sample                              
      GL_NV_complex_primitives                           
      GL_NV_compute_program5                             
      GL_NV_conditional_render                          
      GL_NV_conservative_raster                          
      GL_NV_copy_buffer                                  
      GL_NV_copy_depth_to_color                          
      GL_NV_copy_image                                   
      GL_NV_coverage_sample                              
      GL_NV_deep_texture3D                               
      GL_NV_depth_buffer_float                           
      GL_NV_depth_clamp                                  
      GL_NV_depth_nonlinear                              
      GL_NV_depth_range_unclamped                        
      GL_NV_draw_buffers                                 
      GL_NV_draw_instanced                               
      GL_NV_draw_texture                                 
      GL_NV_EGL_stream_consumer_external                 
      GL_NV_ES1_1_compatibility                          
      GL_NV_ES3_1_compatibility                          
      GL_NV_evaluators                                   
      GL_NV_explicit_attrib_location                     
      GL_NV_explicit_multisample                         
      GL_NV_fbo_color_attachments                        
      GL_NV_fence                                        
      GL_NV_fill_rectangle                               
      GL_NV_float_buffer                                 
      GL_NV_fog_distance                                 
      GL_NV_fragdepth                                    
      GL_NV_fragment_coverage_to_color                   
      GL_NV_fragment_program                             
      GL_NV_fragment_program_option                      
      GL_NV_fragment_program2                            
      GL_NV_fragment_program4                            
      GL_NV_fragment_shader_interlock                    
      GL_NV_framebuffer_blit                             
      GL_NV_framebuffer_mixed_samples                    
      GL_NV_framebuffer_multisample                      
      GL_NV_framebuffer_multisample_coverage             
      GL_NV_framebuffer_multisample_ex                   
      GL_NV_generate_mipmap_sRGB                         
      GL_NV_geometry_program4                            
      GL_NV_geometry_shader_passthrough                  
      GL_NV_geometry_shader4                             
      GL_NV_gpu_program_fp64                             
      GL_NV_gpu_program4                                 
      GL_NV_gpu_program4_1                               
      GL_NV_gpu_program5                                 
      GL_NV_gpu_program5_mem_extended                    
      GL_NV_gpu_shader5                                  
      GL_NV_half_float                                   
      GL_NV_instanced_arrays                             
      GL_NV_light_max_exponent                           
      GL_NV_multisample_coverage                         
      GL_NV_multisample_filter_hint                      
      GL_NV_non_square_matrices                          
      GL_NV_occlusion_query                              
      GL_NV_pack_subimage                                
      GL_NV_packed_depth_stencil                         
      GL_NV_packed_float                                 
      GL_NV_packed_float_linear                          
      GL_NV_parameter_buffer_object                      
      GL_NV_parameter_buffer_object2                     
      GL_NV_path_rendering                               
      GL_NV_path_rendering_shared_edge                   
      GL_NV_pixel_buffer_object                          
      GL_NV_pixel_data_range                             
      GL_NV_platform_binary                              
      GL_NV_point_sprite                                 
      GL_NV_present_video                                
      GL_NV_primitive_restart                           
      GL_NV_read_buffer                                  
      GL_NV_read_buffer_front                            
      GL_NV_read_depth                                   
      GL_NV_read_depth_stencil                           
      GL_NV_read_stencil                                 
      GL_NV_register_combiners                           
      GL_NV_register_combiners2                          
      GL_NV_sample_locations                             
      GL_NV_sample_mask_override_coverage                
      GL_NV_shader_atomic_counters                       
      GL_NV_shader_atomic_float                          
      GL_NV_shader_atomic_fp16_vector                    
      GL_NV_shader_atomic_int64                          
      GL_NV_shader_buffer_load                           
      GL_NV_shader_buffer_store                          
      GL_NV_shader_storage_buffer_object                 
      GL_NV_shader_thread_group                          
      GL_NV_shader_thread_shuffle                        
      GL_NV_shadow_samplers_array                        
      GL_NV_shadow_samplers_cube                         
      GL_NV_sRGB_formats                                 
      GL_NV_tessellation_program5                        
      GL_NV_texgen_emboss                                
      GL_NV_texgen_reflection                           
      GL_NV_texture_array                                
      GL_NV_texture_barrier                              
      GL_NV_texture_border_clamp                         
      GL_NV_texture_compression_latc                     
      GL_NV_texture_compression_s3tc                     
      GL_NV_texture_compression_s3tc_update              
      GL_NV_texture_compression_vtc                      
      GL_NV_texture_env_combine4                         
      GL_NV_texture_expand_normal                        
      GL_NV_texture_lod_clamp                            
      GL_NV_texture_multisample                          
      GL_NV_texture_npot_2D_mipmap                       
      GL_NV_texture_rectangle                            
      GL_NV_texture_shader                               
      GL_NV_texture_shader2                              
      GL_NV_texture_shader3                              
      GL_NV_timer_query                                  
      GL_NV_transform_feedback                           
      GL_NV_transform_feedback2                          
      GL_NV_uniform_buffer_unified_memory                
      GL_NV_vdpau_interop                                
      GL_NV_vertex_array_range                           
      GL_NV_vertex_array_range2                          
      GL_NV_vertex_attrib_64bit                          
      GL_NV_vertex_attrib_integer_64bit                  
      GL_NV_vertex_buffer_unified_memory                 
      GL_NV_vertex_program                               
      GL_NV_vertex_program1_1                            
      GL_NV_vertex_program2                              
      GL_NV_vertex_program2_option                       
      GL_NV_vertex_program3                              
      GL_NV_vertex_program4                              
      GL_NV_video_capture                                
      GL_NV_viewport_array2                              
      GL_NVX_conditional_render                          
      GL_NVX_flush_hold                                  
      GL_NVX_gpu_memory_info                             
      GL_NVX_instanced_arrays                            
      GL_NVX_nvenc_interop                               
      GL_NVX_shader_thread_group                         
      GL_NVX_shader_thread_shuffle                       
      GL_NVX_shared_sync_object                          
      GL_NVX_sysmem_buffer                               
      GL_NVX_ycrcb                                       
      GL_OES_blend_equation_separate                     
      GL_OES_blend_func_separate                         
      GL_OES_blend_subtract                              
      GL_OES_byte_coordinates                            
      GL_OES_compressed_EAC_R11_signed_texture           
      GL_OES_compressed_EAC_R11_unsigned_texture         
      GL_OES_compressed_EAC_RG11_signed_texture          
      GL_OES_compressed_EAC_RG11_unsigned_texture        
      GL_OES_compressed_ETC1_RGB8_texture                
      GL_OES_compressed_ETC2_punchthroughA_RGBA8_texture 
      GL_OES_compressed_ETC2_punchthroughA_sRGB8_alpha_texture 
      GL_OES_compressed_ETC2_RGB8_texture                
      GL_OES_compressed_ETC2_RGBA8_texture               
      GL_OES_compressed_ETC2_sRGB8_alpha8_texture        
      GL_OES_compressed_ETC2_sRGB8_texture               
      GL_OES_compressed_paletted_texture                 
      GL_OES_conditional_query                           
      GL_OES_depth_texture                               
      GL_OES_depth_texture_cube_map                      
      GL_OES_depth24                                     
      GL_OES_depth32                                     
      GL_OES_draw_texture                                
      GL_OES_EGL_image                                   
      GL_OES_EGL_image_external                          
      GL_OES_EGL_sync                                    
      GL_OES_element_index_uint                          
      GL_OES_extended_matrix_palette                     
      GL_OES_fbo_render_mipmap                           
      GL_OES_fixed_point                                 
      GL_OES_fragment_precision_high                     
      GL_OES_framebuffer_object                          
      GL_OES_get_program_binary                          
      GL_OES_mapbuffer                                   
      GL_OES_matrix_get                                  
      GL_OES_matrix_palette                              
      GL_OES_packed_depth_stencil                        
      GL_OES_point_size_array                            
      GL_OES_point_sprite                                
      GL_OES_query_matrix                                
      GL_OES_read_format                                 
      GL_OES_required_internalformat                     
      GL_OES_rgb8_rgba8                                  
      GL_OES_sample_shading                              
      GL_OES_sample_variables                            
      GL_OES_shader_image_atomic                         
      GL_OES_shader_multisample_interpolation            
      GL_OES_single_precision                            
      GL_OES_standard_derivatives                        
      GL_OES_stencil_wrap                                
      GL_OES_stencil1                                    
      GL_OES_stencil4                                    
      GL_OES_stencil8                                    
      GL_OES_surfaceless_context                         
      GL_OES_texture_3D                                  
      GL_OES_texture_compression_astc                    
      GL_OES_texture_cube_map                            
      GL_OES_texture_env_crossbar                        
      GL_OES_texture_float                               
      GL_OES_texture_float_linear                        
      GL_OES_texture_half_float                          
      GL_OES_texture_half_float_linear                   
      GL_OES_texture_mirrored_repeat                     
      GL_OES_texture_npot                                
      GL_OES_texture_stencil8                            
      GL_OES_texture_storage_multisample_2d_array        
      GL_OES_vertex_array_object                         
      GL_OES_vertex_half_float                           
      GL_OES_vertex_type_10_10_10_2                      
      GL_OML_interlace                                   
      GL_OML_resample                                    
      GL_OML_subsample                                   
      GL_PGI_misc_hints                                  
      GL_PGI_vertex_hints                                
      GL_QCOM_alpha_test                                 
      GL_QCOM_binning_control                            
      GL_QCOM_driver_control                             
      GL_QCOM_extended_get                               
      GL_QCOM_extended_get2                              
      GL_QCOM_perfmon_global_mode                        
      GL_QCOM_tiled_rendering                            
      GL_QCOM_writeonly_rendering                        
      GL_REND_screen_coordinates                         
      GL_S3_performance_analyzer                         
      GL_S3_s3tc                                         
      GL_SGI_color_matrix                                
      GL_SGI_color_table                                 
      GL_SGI_compiled_vertex_array                       
      GL_SGI_cull_vertex                                 
      GL_SGI_index_array_formats                         
      GL_SGI_index_func                                  
      GL_SGI_index_material                              
      GL_SGI_index_texture                               
      GL_SGI_make_current_read                           
      GL_SGI_texture_add_env                             
      GL_SGI_texture_color_table                         
      GL_SGI_texture_edge_clamp                          
      GL_SGI_texture_lod                                 
      GL_SGIS_color_range                                
      GL_SGIS_detail_texture                             
      GL_SGIS_fog_function                               
      GL_SGIS_generate_mipmap                           
      GL_SGIS_multisample                                
      GL_SGIS_multitexture                               
      GL_SGIS_pixel_texture                              
      GL_SGIS_point_line_texgen                          
      GL_SGIS_sharpen_texture                            
      GL_SGIS_texture_border_clamp                       
      GL_SGIS_texture_color_mask                         
      GL_SGIS_texture_edge_clamp                        
      GL_SGIS_texture_filter4                            
      GL_SGIS_texture_lod                               
      GL_SGIS_texture_select                             
      GL_SGIS_texture4D                                  
      GL_SGIX_async                                      
      GL_SGIX_async_histogram                            
      GL_SGIX_async_pixel                                
      GL_SGIX_blend_alpha_minmax                         
      GL_SGIX_clipmap                                    
      GL_SGIX_convolution_accuracy                       
      GL_SGIX_depth_pass_instrument                      
      GL_SGIX_depth_texture                              
      GL_SGIX_flush_raster                               
      GL_SGIX_fog_offset                                 
      GL_SGIX_fog_texture                                
      GL_SGIX_fragment_specular_lighting                 
      GL_SGIX_framezoom                                  
      GL_SGIX_instruments                                
      GL_SGIX_interlace                                  
      GL_SGIX_ir_instrument1                             
      GL_SGIX_list_priority                              
      GL_SGIX_pbuffer                                    
      GL_SGIX_pixel_texture                              
      GL_SGIX_pixel_texture_bits                         
      GL_SGIX_reference_plane                            
      GL_SGIX_resample                                   
      GL_SGIX_shadow                                     
      GL_SGIX_shadow_ambient                             
      GL_SGIX_sprite                                     
      GL_SGIX_subsample                                  
      GL_SGIX_tag_sample_buffer                          
      GL_SGIX_texture_add_env                            
      GL_SGIX_texture_coordinate_clamp                   
      GL_SGIX_texture_lod_bias                           
      GL_SGIX_texture_multi_buffer                       
      GL_SGIX_texture_range                              
      GL_SGIX_texture_scale_bias                         
      GL_SGIX_vertex_preclip                             
      GL_SGIX_vertex_preclip_hint                        
      GL_SGIX_ycrcb                                      
      GL_SGIX_ycrcb_subsample                            
      GL_SUN_convolution_border_modes                    
      GL_SUN_global_alpha                                
      GL_SUN_mesh_array                                  
      GL_SUN_multi_draw_arrays                           
      GL_SUN_read_video_pixels                           
      GL_SUN_slice_accum                                 
      GL_SUN_triangle_list                               
      GL_SUN_vertex                                      
      GL_SUNX_constant_data                              
      GL_VIV_shader_binary                               
      GL_WGL_ARB_extensions_string                       
      GL_WGL_EXT_extensions_string                       
      GL_WGL_EXT_swap_control                            
      GL_WIN_phong_shading                               
      GL_WIN_specular_fog                                
      GL_WIN_swap_hint                                  
      GLU_EXT_nurbs_tessellator                          
      GLU_EXT_object_space_tess                          
      GLU_SGI_filter4_parameters                         
      GLX_AMD_gpu_association                            
      GLX_ARB_create_context                             
      GLX_ARB_create_context_profile                     
      GLX_ARB_create_context_robustness                  
      GLX_ARB_fbconfig_float                             
      GLX_ARB_framebuffer_sRGB                           
      GLX_ARB_get_proc_address                           
      GLX_ARB_multisample                                
      GLX_ARB_robustness_application_isolation           
      GLX_ARB_robustness_share_group_isolation           
      GLX_ARB_vertex_buffer_object                       
      GLX_EXT_buffer_age                                 
      GLX_EXT_create_context_es_profile                  
      GLX_EXT_create_context_es2_profile                 
      GLX_EXT_fbconfig_packed_float                      
      GLX_EXT_framebuffer_sRGB                           
      GLX_EXT_import_context                             
      GLX_EXT_scene_marker                               
      GLX_EXT_swap_control                               
      GLX_EXT_swap_control_tear                          
      GLX_EXT_texture_from_pixmap                        
      GLX_EXT_visual_info                                
      GLX_EXT_visual_rating                              
      GLX_INTEL_swap_event                               
      GLX_MESA_agp_offset                                
      GLX_MESA_copy_sub_buffer                           
      GLX_MESA_multithread_makecurrent                   
      GLX_MESA_pixmap_colormap                           
      GLX_MESA_query_renderer                            
      GLX_MESA_release_buffers                           
      GLX_MESA_set_3dfx_mode                             
      GLX_MESA_swap_control                              
      GLX_NV_copy_image                                  
      GLX_NV_delay_before_swap                           
      GLX_NV_float_buffer                                
      GLX_NV_multisample_coverage                        
      GLX_NV_present_video                               
      GLX_NV_swap_group                                  
      GLX_NV_video_capture                               
      GLX_NV_video_out                                   
      GLX_NV_video_output                                
      GLX_OML_interlace                                  
      GLX_OML_swap_method                                
      GLX_OML_sync_control                               
      GLX_SGI_cushion                                    
      GLX_SGI_make_current_read                          
      GLX_SGI_swap_control                               
      GLX_SGI_video_sync                                 
      GLX_SGIS_blended_overlay                           
      GLX_SGIS_color_range                               
      GLX_SGIS_multisample                               
      GLX_SGIX_dm_buffer                                 
      GLX_SGIX_fbconfig                                  
      GLX_SGIX_hyperpipe                                 
      GLX_SGIX_pbuffer                                   
      GLX_SGIX_swap_barrier                              
      GLX_SGIX_swap_group                                
      GLX_SGIX_video_resize                              
      GLX_SGIX_video_source                              
      GLX_SGIX_visual_select_group                       
      GLX_SUN_get_transparent_index                      
      GLX_SUN_video_resize                               
      WGL_3DFX_gamma_control                             
      WGL_3DFX_multisample                               
      WGL_3DL_stereo_control                             
      WGL_AMD_gpu_association                            
      WGL_AMDX_gpu_association                           
      WGL_ARB_buffer_region                             
      WGL_ARB_context_flush_control                      
      WGL_ARB_create_context                            
      WGL_ARB_create_context_profile                     
      WGL_ARB_create_context_robustness                  
      WGL_ARB_extensions_string                         
      WGL_ARB_framebuffer_sRGB                          
      WGL_ARB_make_current_read                         
      WGL_ARB_multisample                               
      WGL_ARB_pbuffer                                   
      WGL_ARB_pixel_format                              
      WGL_ARB_pixel_format_float                        
      WGL_ARB_render_texture                             
      WGL_ARB_robustness_application_isolation           
      WGL_ARB_robustness_share_group_isolation           
      WGL_ATI_pbuffer_memory_hint                        
      WGL_ATI_pixel_format_float                         
      WGL_ATI_render_texture_rectangle                   
      WGL_EXT_buffer_region                              
      WGL_EXT_create_context_es_profile                  
      WGL_EXT_create_context_es2_profile                 
      WGL_EXT_depth_float                               
      WGL_EXT_display_color_table                        
      WGL_EXT_extensions_string                         
      WGL_EXT_framebuffer_sRGB                           
      WGL_EXT_framebuffer_sRGBWGL_ARB_create_context     
      WGL_EXT_gamma_control                              
      WGL_EXT_make_current_read                          
      WGL_EXT_multisample                                
      WGL_EXT_pbuffer                                    
      WGL_EXT_pixel_format                               
      WGL_EXT_pixel_format_packed_float                 
      WGL_EXT_render_texture                             
      WGL_EXT_swap_control                              
      WGL_EXT_swap_control_tear                         
      WGL_EXT_swap_interval                              
      WGL_I3D_digital_video_control                      
      WGL_I3D_gamma                                      
      WGL_I3D_genlock                                    
      WGL_I3D_image_buffer                               
      WGL_I3D_swap_frame_lock                            
      WGL_I3D_swap_frame_usage                           
      WGL_MTX_video_preview                              
      WGL_NV_copy_image                                  
      WGL_NV_delay_before_swap                           
      WGL_NV_DX_interop                                  
      WGL_NV_DX_interop2                                 
      WGL_NV_float_buffer                                
      WGL_NV_gpu_affinity                                
      WGL_NV_multisample_coverage                        
      WGL_NV_present_video                               
      WGL_NV_render_depth_texture                        
      WGL_NV_render_texture_rectangle                    
      WGL_NV_swap_group                                  
      WGL_NV_texture_rectangle                           
      WGL_NV_vertex_array_range                          
      WGL_NV_video_capture                               
      WGL_NV_video_output                                
      WGL_NVX_DX_interop                                 
      WGL_OML_sync_control                               
      WGL_S3_cl_sharingWGL_ARB_create_context_profile    

       :
      RGB DXT1                                          
      RGBA DXT1                                         
      RGBA DXT3                                         
      RGBA DXT5                                         
      RGB FXT1                                          
      RGBA FXT1                                         
      3Dc                                                

     :
                                                   Intel Corporation
                                     http://www.intel.com/products/chipsets
                                       http://support.intel.com/support/graphics
                                     http://www.aida64.com/driver-updates


--------[ GPGPU ]-------------------------------------------------------------------------------------------------------

  [ CUDA: GeForce GT 630M ]

     :
                                           GeForce GT 630M
      PCI Domain / Bus / Device                         0 / 1 / 0
                                                 1344 
      Asynchronous Engines                              1
      /                             2 / 96
       L2                                            128 
      Max Threads Per Multiprocessor                    1536
      Max Threads Per Block                             1024
      Max Registers Per Block                           32768
      Max 32-bit Registers Per Multiprocessor           32768
      Max Instructions Per Kernel                       512 .
      Warp Size                                         32 threads
      Max Block Size                                    1024 x 1024 x 64
      Max Grid Size                                     65535 x 65535 x 65535
      Max 1D Texture Width                              65536
      Max 2D Texture Size                               65536 x 65535
      Max 3D Texture Size                               2048 x 2048 x 2048
      Max 1D Linear Texture Width                       134217728
      Max 2D Linear Texture Size                        65000 x 65000
      Max 2D Linear Texture Pitch                       1048544 
      Max 1D Layered Texture Width                      16384
      Max 1D Layered Texture Layers                     2048
      Max Mipmapped 1D Texture Width                    16384
      Max Mipmapped 2D Texture Size                     16384 x 16384
      Max Cubemap Texture Size                          16384 x 16384
      Max Cubemap Layered Texture Size                  16384 x 16384
      Max Cubemap Layered Texture Layers                2046
      Max Texture Array Size                            16384 x 16384
      Max Texture Array Slices                          2048
      Max 1D Surface Width                              65536
      Max 2D Surface Size                               65536 x 32768
      Max 3D Surface Size                               65536 x 32768 x 2048
      Max 1D Layered Surface Width                      65536
      Max 1D Layered Surface Layers                     2048
      Max 2D Layered Surface Size                       65536 x 32768
      Max 2D Layered Surface Layers                     2048
      Compute Mode                                      Default: Multiple contexts allowed per device
      Compute Capability                                2.1
      CUDA DLL                                          nvcuda.dll (8.17.13.4411 - nVIDIA ForceWare 344.11)

     :
                                           800 
      Global Memory Bus Width                           128 
      Total Memory                                      1 
      Total Constant Memory                             64 
      Max Shared Memory Per Block                       48 
      Max Shared Memory Per Multiprocessor              48 
      Max Memory Pitch                                  2147483647 
      Texture Alignment                                 512 
      Texture Pitch Alignment                           32 
      Surface Alignment                                 512 

     :
      32-bit Floating-Point Atomic Addition             
      32-bit Integer Atomic Operations                  
      64-bit Integer Atomic Operations                  
      Caching Globals in L1 Cache                       
      Caching Locals in L1 Cache                        
      Concurrent Kernel Execution                       
      Concurrent Memory Copy & Execute                  
      Double-Precision Floating-Point                   
      ECC                                               
      Funnel Shift                                       
      Host Memory Mapping                               
      Integrated Device                                 
      Managed Memory                                     
      Multi-GPU Board                                   
      Stream Priorities                                  
      Surface Functions                                 
      TCC Driver                                        
      Warp Vote Functions                               
      __ballot()                                        
      __syncthreads_and()                               
      __syncthreads_count()                             
      __syncthreads_or()                                
      __threadfence_system()                            

     :
                                                   NVIDIA Corporation
                                     http://www.nvidia.com/page/products.html
                                       http://www.nvidia.com/content/drivers/drivers.asp
                                     http://www.aida64.com/driver-updates

  [ Direct3D: NVIDIA GeForce GT 630M   (GF108) ]

     :
                                           NVIDIA GeForce GT 630M  
                                       GF108
      PCI-                                    10DE-0DE9 / 1025-0505  (Rev A1)
                                        971 
      Shader Model                                      SM 5.0
      Max Threads                                       1024
      Multiple UAV Access                               8 UAVs
      Thread Dispatch                                   3D
      Thread Local Storage                              32 

     :
      10-bit Precision Floating-Point                    
      16-bit Precision Floating-Point                    
      Append/Consume Buffers                            
      Atomic Operations                                 
      Double-Precision Floating-Point                   
      Gather4                                           
      Indirect Compute Dispatch                         
      Map On Default Buffers                             

     :
                                                   NVIDIA Corporation
                                     http://www.nvidia.com/page/products.html
                                       http://www.nvidia.com/content/drivers/drivers.asp
                                     http://www.aida64.com/driver-updates

  [ OpenCL: Intel(R) Core(TM) i5-2450M CPU @ 2.50GHz ]

     OpenCL:
                                               Intel(R) OpenCL
                                      Intel(R) Corporation
                                         OpenCL 1.1 
                                        Full

     :
                                           Intel(R) Core(TM) i5-2450M CPU @ 2.50GHz
                                           
                                     Intel(R) Corporation
                                        OpenCL 1.1 (Build 37149.37214)
                                       Full
                                          1.1
       OpenCL C                                   OpenCL C 1.1 
                                                 2500 
                                   4
      Address Space Size                                32 
      Max 2D Image Size                                 8192 x 8192
      Max 3D Image Size                                 2048 x 2048 x 2048
      Max Samplers                                      480
      Max Work-Item Size                                1024 x 1024 x 1024
      Max Work-Group Size                               1024
      Max Argument Size                                 3840 
      Max Constant Buffer Size                          128 
      Max Constant Arguments                            480
      Native ISA Vector Widths                          char16, short8, int2, float4, double2
      Preferred Native Vector Widths                    char16, short8, int4, long2, float4, double2
      Profiling Timer Resolution                        410 ns
      OpenCL DLL                                        opencl.dll (1.1.0)

     :
      Global Memory                                     2047 
      Global Memory Cache                               256   (Read/Write, 64-byte line)
      Local Memory                                      32 
      Max Memory Object Allocation Size                 524256 
      Memory Base Address Alignment                     1024 
      Min Data Type Alignment                           128 

     OpenCL:
      OpenCL 1.1                                          (100%)
      OpenCL 1.2                                          (100%)
      OpenCL 2.0                                          (62%)

     :
      Command-Queue Out Of Order Execution              
      Command-Queue Profiling                           
      Compiler Available                                
                                          
      Images                                            
      Kernel Execution                                  
      Linker Available                                  
      Little-Endian Device                              
      Native Kernel Execution                           
      SVM Atomics                                        
      SVM Coarse Grain Buffer                            
      SVM Fine Grain Buffer                              
      SVM Fine Grain System                              
      Thread Trace                                       
      Unified Memory                                    

         :
      Correctly Rounded Divide and Sqrt                  
      Denorms                                            
      IEEE754-2008 FMA                                   
      INF and NaNs                                       
      Rounding to Infinity                               
      Rounding to Nearest Even                           
      Rounding to Zero                                   
      Software Basic Floating-Point Operations          

         :
      Correctly Rounded Divide and Sqrt                  
      Denorms                                           
      IEEE754-2008 FMA                                   
      INF and NaNs                                      
      Rounding to Infinity                               
      Rounding to Nearest Even                          
      Rounding to Zero                                   
      Software Basic Floating-Point Operations          

         :
      Correctly Rounded Divide and Sqrt                  
      Denorms                                           
      IEEE754-2008 FMA                                  
      INF and NaNs                                      
      Rounding to Infinity                              
      Rounding to Nearest Even                          
      Rounding to Zero                                  
      Software Basic Floating-Point Operations          

     :
       /                   84 / 12
      cl_altera_compiler_mode                            
      cl_altera_device_temperature                       
      cl_altera_live_object_tracking                     
      cl_amd_bus_addressable_memory                      
      cl_amd_c1x_atomics                                 
      cl_amd_compile_options                             
      cl_amd_core_id                                     
      cl_amd_d3d10_interop                               
      cl_amd_d3d9_interop                                
      cl_amd_device_attribute_query                      
      cl_amd_device_board_name                           
      cl_amd_device_memory_flags                         
      cl_amd_device_persistent_memory                    
      cl_amd_device_profiling_timer_offset               
      cl_amd_device_topology                             
      cl_amd_event_callback                              
      cl_amd_fp64                                        
      cl_amd_hsa                                         
      cl_amd_image2d_from_buffer_read_only               
      cl_amd_media_ops                                   
      cl_amd_media_ops2                                  
      cl_amd_offline_devices                             
      cl_amd_popcnt                                      
      cl_amd_predefined_macros                           
      cl_amd_printf                                      
      cl_amd_svm                                         
      cl_amd_vec3                                        
      cl_apple_contextloggingfunctions                   
      cl_apple_gl_sharing                                
      cl_apple_setmemobjectdestructor                    
      cl_arm_core_id                                     
      cl_arm_printf                                      
      cl_ext_atomic_counters_32                          
      cl_ext_atomic_counters_64                          
      cl_ext_device_fission                             
      cl_ext_migrate_memobject                           
      cl_intel_accelerator                               
      cl_intel_ctz                                       
      cl_intel_d3d11_nv12_media_sharing                  
      cl_intel_device_partition_by_names                 
      cl_intel_dx9_media_sharing                        
      cl_intel_exec_by_local_thread                     
      cl_intel_motion_estimation                         
      cl_intel_printf                                   
      cl_intel_thread_local_exec                         
      cl_khr_3d_image_writes                             
      cl_khr_byte_addressable_store                     
      cl_khr_context_abort                               
      cl_khr_d3d10_sharing                               
      cl_khr_d3d11_sharing                               
      cl_khr_depth_images                                
      cl_khr_dx9_media_sharing                           
      cl_khr_egl_event                                   
      cl_khr_egl_image                                   
      cl_khr_fp16                                        
      cl_khr_fp64                                       
      cl_khr_gl_depth_images                             
      cl_khr_gl_event                                    
      cl_khr_gl_msaa_sharing                             
      cl_khr_gl_sharing                                 
      cl_khr_global_int32_base_atomics                  
      cl_khr_global_int32_extended_atomics              
      cl_khr_icd                                        
      cl_khr_image2d_from_buffer                         
      cl_khr_initialize_memory                           
      cl_khr_int64_base_atomics                          
      cl_khr_int64_extended_atomics                      
      cl_khr_local_int32_base_atomics                   
      cl_khr_local_int32_extended_atomics               
      cl_khr_mipmap_image                                
      cl_khr_mipmap_image_writes                         
      cl_khr_select_fprounding_mode                      
      cl_khr_spir                                        
      cl_khr_srgb_image_writes                           
      cl_khr_subgroups                                   
      cl_khr_terminate_context                           
      cl_nv_compiler_options                             
      cl_nv_d3d10_sharing                                
      cl_nv_d3d11_sharing                                
      cl_nv_d3d9_sharing                                 
      cl_nv_device_attribute_query                       
      cl_nv_pragma_unroll                                
      cl_qcom_ext_host_ptr                               
      cl_qcom_ion_host_ptr                               

     :
                                                   Intel Corporation
                                     http://www.intel.com/products/chipsets
                                       http://support.intel.com/support/graphics
                                     http://www.aida64.com/driver-updates

  [ OpenCL: GeForce GT 630M ]

     OpenCL:
                                               NVIDIA CUDA
                                      NVIDIA Corporation
                                         OpenCL 1.1 CUDA 6.5.19
                                        Full

     :
                                           GeForce GT 630M
                                            
                                     NVIDIA Corporation
                                        OpenCL 1.1 CUDA
                                       Full
                                          344.11
       OpenCL C                                   OpenCL C 1.1 
                                                 1344 
       /                       2 / 96
      Address Space Size                                32 
      Max 2D Image Size                                 32768 x 32768
      Max 3D Image Size                                 2048 x 2048 x 2048
      Max Image Array Size                              2048
      Max Image Buffer Size                             134217728
      Max Samplers                                      16
      Max Work-Item Size                                1024 x 1024 x 64
      Max Work-Group Size                               1024
      Max Argument Size                                 4352 
      Max Constant Buffer Size                          64 
      Max Constant Arguments                            9
      Native ISA Vector Widths                          char1, short1, int1, float1, double1
      Preferred Native Vector Widths                    char1, short1, int1, long1, float1, double1
      Profiling Timer Resolution                        1000 ns
      CUDA Compute Capability                           2.1
      Max Registers Per Block                           32768
      Warp Size                                         32 threads
      Asynchronous Engines                              1
      PCI Bus / Device                                  1 / 0
      OpenCL DLL                                        opencl.dll (1.1.0)

     :
      Global Memory                                     1 
      Global Memory Cache                               32   (Read/Write, 128-byte line)
      Local Memory                                      47 
      Max Memory Object Allocation Size                 256 
      Memory Base Address Alignment                     4096 
      Min Data Type Alignment                           128 

     OpenCL:
      OpenCL 1.1                                          (100%)
      OpenCL 1.2                                          (100%)
      OpenCL 2.0                                          (62%)

     :
      Command-Queue Out Of Order Execution              
      Command-Queue Profiling                           
      Compiler Available                                
                                          
      Images                                            
      Kernel Execution                                  
      Linker Available                                  
      Little-Endian Device                              
      Native Kernel Execution                            
      SVM Atomics                                        
      SVM Coarse Grain Buffer                            
      SVM Fine Grain Buffer                              
      SVM Fine Grain System                              
      Thread Trace                                       
      Unified Memory                                    

         :
      Correctly Rounded Divide and Sqrt                  
      Denorms                                            
      IEEE754-2008 FMA                                   
      INF and NaNs                                       
      Rounding to Infinity                               
      Rounding to Nearest Even                           
      Rounding to Zero                                   
      Software Basic Floating-Point Operations          

         :
      Correctly Rounded Divide and Sqrt                  
      Denorms                                           
      IEEE754-2008 FMA                                  
      INF and NaNs                                      
      Rounding to Infinity                              
      Rounding to Nearest Even                          
      Rounding to Zero                                  
      Software Basic Floating-Point Operations          

         :
      Correctly Rounded Divide and Sqrt                  
      Denorms                                           
      IEEE754-2008 FMA                                  
      INF and NaNs                                      
      Rounding to Infinity                              
      Rounding to Nearest Even                          
      Rounding to Zero                                  
      Software Basic Floating-Point Operations          

     :
       /                   84 / 15
      cl_altera_compiler_mode                            
      cl_altera_device_temperature                       
      cl_altera_live_object_tracking                     
      cl_amd_bus_addressable_memory                      
      cl_amd_c1x_atomics                                 
      cl_amd_compile_options                             
      cl_amd_core_id                                     
      cl_amd_d3d10_interop                               
      cl_amd_d3d9_interop                                
      cl_amd_device_attribute_query                      
      cl_amd_device_board_name                           
      cl_amd_device_memory_flags                         
      cl_amd_device_persistent_memory                    
      cl_amd_device_profiling_timer_offset               
      cl_amd_device_topology                             
      cl_amd_event_callback                              
      cl_amd_fp64                                        
      cl_amd_hsa                                         
      cl_amd_image2d_from_buffer_read_only               
      cl_amd_media_ops                                   
      cl_amd_media_ops2                                  
      cl_amd_offline_devices                             
      cl_amd_popcnt                                      
      cl_amd_predefined_macros                           
      cl_amd_printf                                      
      cl_amd_svm                                         
      cl_amd_vec3                                        
      cl_apple_contextloggingfunctions                   
      cl_apple_gl_sharing                                
      cl_apple_setmemobjectdestructor                    
      cl_arm_core_id                                     
      cl_arm_printf                                      
      cl_ext_atomic_counters_32                          
      cl_ext_atomic_counters_64                          
      cl_ext_device_fission                              
      cl_ext_migrate_memobject                           
      cl_intel_accelerator                               
      cl_intel_ctz                                       
      cl_intel_d3d11_nv12_media_sharing                  
      cl_intel_device_partition_by_names                 
      cl_intel_dx9_media_sharing                         
      cl_intel_exec_by_local_thread                      
      cl_intel_motion_estimation                         
      cl_intel_printf                                    
      cl_intel_thread_local_exec                         
      cl_khr_3d_image_writes                             
      cl_khr_byte_addressable_store                     
      cl_khr_context_abort                               
      cl_khr_d3d10_sharing                              
      cl_khr_d3d11_sharing                               
      cl_khr_depth_images                                
      cl_khr_dx9_media_sharing                           
      cl_khr_egl_event                                   
      cl_khr_egl_image                                   
      cl_khr_fp16                                        
      cl_khr_fp64                                       
      cl_khr_gl_depth_images                             
      cl_khr_gl_event                                    
      cl_khr_gl_msaa_sharing                             
      cl_khr_gl_sharing                                 
      cl_khr_global_int32_base_atomics                  
      cl_khr_global_int32_extended_atomics              
      cl_khr_icd                                        
      cl_khr_image2d_from_buffer                         
      cl_khr_initialize_memory                           
      cl_khr_int64_base_atomics                          
      cl_khr_int64_extended_atomics                      
      cl_khr_local_int32_base_atomics                   
      cl_khr_local_int32_extended_atomics               
      cl_khr_mipmap_image                                
      cl_khr_mipmap_image_writes                         
      cl_khr_select_fprounding_mode                      
      cl_khr_spir                                        
      cl_khr_srgb_image_writes                           
      cl_khr_subgroups                                   
      cl_khr_terminate_context                           
      cl_nv_compiler_options                            
      cl_nv_d3d10_sharing                               
      cl_nv_d3d11_sharing                               
      cl_nv_d3d9_sharing                                
      cl_nv_device_attribute_query                      
      cl_nv_pragma_unroll                               
      cl_qcom_ext_host_ptr                               
      cl_qcom_ion_host_ptr                               

     :
                                                   NVIDIA Corporation
                                     http://www.nvidia.com/page/products.html
                                       http://www.nvidia.com/content/drivers/drivers.asp
                                     http://www.aida64.com/driver-updates


--------[  ]------------------------------------------------------------------------------------------------------

    @Arial Unicode MS                         Swiss                               14 x 43   40 %
    @Arial Unicode MS                         Swiss                             14 x 43   40 %
    @Arial Unicode MS                         Swiss                            14 x 43   40 %
    @Arial Unicode MS                         Swiss                              14 x 43   40 %
    @Arial Unicode MS                         Swiss                               14 x 43   40 %
    @Arial Unicode MS                         Swiss                                  14 x 43   40 %
    @Arial Unicode MS                         Swiss                          14 x 43   40 %
    @Arial Unicode MS                         Swiss                (2312)        14 x 43   40 %
    @Arial Unicode MS                         Swiss                (BIG5)        14 x 43   40 %
    @Arial Unicode MS                         Swiss                                14 x 43   40 %
    @Arial Unicode MS                         Swiss                               14 x 43   40 %
    @Arial Unicode MS                         Swiss                (Johab)         14 x 43   40 %
    @Arial Unicode MS                         Swiss                                14 x 43   40 %
    @Arial Unicode MS                         Swiss                  14 x 43   40 %
    @Arial Unicode MS                         Swiss                               14 x 43   40 %
    @Batang                                   Roman       Regular                      16 x 32   40 %
    @Batang                                   Roman       Regular                       16 x 32   40 %
    @Batang                                   Roman       Regular                        16 x 32   40 %
    @Batang                                   Roman       Regular                   16 x 32   40 %
    @Batang                                   Roman       Regular                        16 x 32   40 %
    @Batang                                   Roman       Regular                         16 x 32   40 %
    @Batang                                   Roman       Regular           16 x 32   40 %
    @BatangChe                                Modern      Regular                      16 x 32   40 %
    @BatangChe                                Modern      Regular                       16 x 32   40 %
    @BatangChe                                Modern      Regular                        16 x 32   40 %
    @BatangChe                                Modern      Regular                   16 x 32   40 %
    @BatangChe                                Modern      Regular                        16 x 32   40 %
    @BatangChe                                Modern      Regular                         16 x 32   40 %
    @BatangChe                                Modern      Regular           16 x 32   40 %
    @DFKai-SB                                 Script      Regular                        16 x 32   40 %
    @DFKai-SB                                 Script      Regular         (BIG5)        16 x 32   40 %
    @Dotum                                    Swiss       Regular                      16 x 32   40 %
    @Dotum                                    Swiss       Regular                       16 x 32   40 %
    @Dotum                                    Swiss       Regular                        16 x 32   40 %
    @Dotum                                    Swiss       Regular                   16 x 32   40 %
    @Dotum                                    Swiss       Regular                        16 x 32   40 %
    @Dotum                                    Swiss       Regular                         16 x 32   40 %
    @Dotum                                    Swiss       Regular           16 x 32   40 %
    @DotumChe                                 Modern      Regular                      16 x 32   40 %
    @DotumChe                                 Modern      Regular                       16 x 32   40 %
    @DotumChe                                 Modern      Regular                        16 x 32   40 %
    @DotumChe                                 Modern      Regular                   16 x 32   40 %
    @DotumChe                                 Modern      Regular                        16 x 32   40 %
    @DotumChe                                 Modern      Regular                         16 x 32   40 %
    @DotumChe                                 Modern      Regular           16 x 32   40 %
    @FangSong                                 Modern                              16 x 32   40 %
    @FangSong                                 Modern               (2312)        16 x 32   40 %
    @Gulim                                    Swiss       Regular                      16 x 32   40 %
    @Gulim                                    Swiss       Regular                       16 x 32   40 %
    @Gulim                                    Swiss       Regular                        16 x 32   40 %
    @Gulim                                    Swiss       Regular                   16 x 32   40 %
    @Gulim                                    Swiss       Regular                        16 x 32   40 %
    @Gulim                                    Swiss       Regular                         16 x 32   40 %
    @Gulim                                    Swiss       Regular           16 x 32   40 %
    @GulimChe                                 Modern      Regular                      16 x 32   40 %
    @GulimChe                                 Modern      Regular                       16 x 32   40 %
    @GulimChe                                 Modern      Regular                        16 x 32   40 %
    @GulimChe                                 Modern      Regular                   16 x 32   40 %
    @GulimChe                                 Modern      Regular                        16 x 32   40 %
    @GulimChe                                 Modern      Regular                         16 x 32   40 %
    @GulimChe                                 Modern      Regular           16 x 32   40 %
    @Gungsuh                                  Roman       Regular                      16 x 32   40 %
    @Gungsuh                                  Roman       Regular                       16 x 32   40 %
    @Gungsuh                                  Roman       Regular                        16 x 32   40 %
    @Gungsuh                                  Roman       Regular                   16 x 32   40 %
    @Gungsuh                                  Roman       Regular                        16 x 32   40 %
    @Gungsuh                                  Roman       Regular                         16 x 32   40 %
    @Gungsuh                                  Roman       Regular           16 x 32   40 %
    @GungsuhChe                               Modern      Regular                      16 x 32   40 %
    @GungsuhChe                               Modern      Regular                       16 x 32   40 %
    @GungsuhChe                               Modern      Regular                        16 x 32   40 %
    @GungsuhChe                               Modern      Regular                   16 x 32   40 %
    @GungsuhChe                               Modern      Regular                        16 x 32   40 %
    @GungsuhChe                               Modern      Regular                         16 x 32   40 %
    @GungsuhChe                               Modern      Regular           16 x 32   40 %
    @KaiTi                                    Modern                              16 x 32   40 %
    @KaiTi                                    Modern               (2312)        16 x 32   40 %
    @Malgun Gothic                            Swiss       Regular                      15 x 43   40 %
    @Malgun Gothic                            Swiss       Regular                       15 x 43   40 %
    @Malgun Gothic                            Swiss       Regular                        15 x 43   40 %
    @Malgun Gothic                            Swiss       Regular                   15 x 43   40 %
    @Malgun Gothic                            Swiss       Regular                         15 x 43   40 %
    @Meiryo UI                                Swiss                             17 x 41   40 %
    @Meiryo UI                                Swiss                              17 x 41   40 %
    @Meiryo UI                                Swiss                               17 x 41   40 %
    @Meiryo UI                                Swiss                          17 x 41   40 %
    @Meiryo UI                                Swiss                               17 x 41   40 %
    @Meiryo UI                                Swiss                  17 x 41   40 %
    @Meiryo UI                                Swiss                               17 x 41   40 %
    @Meiryo                                   Swiss                             31 x 48   40 %
    @Meiryo                                   Swiss                              31 x 48   40 %
    @Meiryo                                   Swiss                               31 x 48   40 %
    @Meiryo                                   Swiss                          31 x 48   40 %
    @Meiryo                                   Swiss                               31 x 48   40 %
    @Meiryo                                   Swiss                  31 x 48   40 %
    @Meiryo                                   Swiss                               31 x 48   40 %
    @Microsoft JhengHei UI                    Swiss                              15 x 41   40 %
    @Microsoft JhengHei UI                    Swiss                               15 x 41   40 %
    @Microsoft JhengHei UI                    Swiss                (BIG5)        15 x 41   40 %
    @Microsoft JhengHei                       Swiss                              15 x 43   40 %
    @Microsoft JhengHei                       Swiss                               15 x 43   40 %
    @Microsoft JhengHei                       Swiss                (BIG5)        15 x 43   40 %
    @Microsoft YaHei UI                       Swiss                              15 x 41   40 %
    @Microsoft YaHei UI                       Swiss                               15 x 41   40 %
    @Microsoft YaHei UI                       Swiss                          15 x 41   40 %
    @Microsoft YaHei UI                       Swiss                (2312)        15 x 41   40 %
    @Microsoft YaHei UI                       Swiss                               15 x 41   40 %
    @Microsoft YaHei UI                       Swiss                  15 x 41   40 %
    @Microsoft YaHei                          Swiss                              15 x 42   40 %
    @Microsoft YaHei                          Swiss                               15 x 42   40 %
    @Microsoft YaHei                          Swiss                          15 x 42   40 %
    @Microsoft YaHei                          Swiss                (2312)        15 x 42   40 %
    @Microsoft YaHei                          Swiss                               15 x 42   40 %
    @Microsoft YaHei                          Swiss                  15 x 42   40 %
    @MingLiU_HKSCS                            Roman       Regular                        16 x 32   40 %
    @MingLiU_HKSCS                            Roman       Regular         (BIG5)        16 x 32   40 %
    @MingLiU_HKSCS-ExtB                       Roman       Regular                        16 x 32   40 %
    @MingLiU_HKSCS-ExtB                       Roman       Regular         (BIG5)        16 x 32   40 %
    @MingLiU                                  Modern      Regular                        16 x 32   40 %
    @MingLiU                                  Modern      Regular         (BIG5)        16 x 32   40 %
    @MingLiU-ExtB                             Roman       Regular                        16 x 32   40 %
    @MingLiU-ExtB                             Roman       Regular         (BIG5)        16 x 32   40 %
    @MS Gothic                                Modern      Regular                      16 x 32   40 %
    @MS Gothic                                Modern      Regular                       16 x 32   40 %
    @MS Gothic                                Modern      Regular                        16 x 32   40 %
    @MS Gothic                                Modern      Regular                   16 x 32   40 %
    @MS Gothic                                Modern      Regular                        16 x 32   40 %
    @MS Gothic                                Modern      Regular           16 x 32   40 %
    @MS Gothic                                Modern      Regular                        16 x 32   40 %
    @MS Mincho                                Modern      Regular                      16 x 32   40 %
    @MS Mincho                                Modern      Regular                       16 x 32   40 %
    @MS Mincho                                Modern      Regular                        16 x 32   40 %
    @MS Mincho                                Modern      Regular                   16 x 32   40 %
    @MS Mincho                                Modern      Regular                        16 x 32   40 %
    @MS Mincho                                Modern      Regular           16 x 32   40 %
    @MS Mincho                                Modern      Regular                        16 x 32   40 %
    @MS PGothic                               Swiss       Regular                      13 x 32   40 %
    @MS PGothic                               Swiss       Regular                       13 x 32   40 %
    @MS PGothic                               Swiss       Regular                        13 x 32   40 %
    @MS PGothic                               Swiss       Regular                   13 x 32   40 %
    @MS PGothic                               Swiss       Regular                        13 x 32   40 %
    @MS PGothic                               Swiss       Regular           13 x 32   40 %
    @MS PGothic                               Swiss       Regular                        13 x 32   40 %
    @MS PMincho                               Roman       Regular                      13 x 32   40 %
    @MS PMincho                               Roman       Regular                       13 x 32   40 %
    @MS PMincho                               Roman       Regular                        13 x 32   40 %
    @MS PMincho                               Roman       Regular                   13 x 32   40 %
    @MS PMincho                               Roman       Regular                        13 x 32   40 %
    @MS PMincho                               Roman       Regular           13 x 32   40 %
    @MS PMincho                               Roman       Regular                        13 x 32   40 %
    @MS UI Gothic                             Swiss       Regular                      13 x 32   40 %
    @MS UI Gothic                             Swiss       Regular                       13 x 32   40 %
    @MS UI Gothic                             Swiss       Regular                        13 x 32   40 %
    @MS UI Gothic                             Swiss       Regular                   13 x 32   40 %
    @MS UI Gothic                             Swiss       Regular                        13 x 32   40 %
    @MS UI Gothic                             Swiss       Regular           13 x 32   40 %
    @MS UI Gothic                             Swiss       Regular                        13 x 32   40 %
    @NSimSun                                  Modern      Regular                        16 x 32   40 %
    @NSimSun                                  Modern      Regular         (2312)        16 x 32   40 %
    @PMingLiU                                 Roman       Regular                        16 x 32   40 %
    @PMingLiU                                 Roman       Regular         (BIG5)        16 x 32   40 %
    @PMingLiU-ExtB                            Roman       Regular                        16 x 32   40 %
    @PMingLiU-ExtB                            Roman       Regular         (BIG5)        16 x 32   40 %
    @SimHei                                   Modern                              16 x 32   40 %
    @SimHei                                   Modern               (2312)        16 x 32   40 %
    @SimSun                                   Special     Regular                        16 x 32   40 %
    @SimSun                                   Special     Regular         (2312)        16 x 32   40 %
    @SimSun-ExtB                              Modern                              16 x 32   40 %
    @SimSun-ExtB                              Modern               (2312)        16 x 32   40 %
    Agency FB                                 Swiss                               10 x 36   40 %
    Aharoni                                   Special                             15 x 32   70 %
    Aldhabi                                   Special     Regular                        16 x 56   40 %
    Aldhabi                                   Special     Regular                        16 x 56   40 %
    Algerian                                  Decorative  Regular                        17 x 36   40 %
    Andalus                                   Roman                               15 x 49   40 %
    Andalus                                   Roman                               15 x 49   40 %
    Angsana New                               Roman                                8 x 43   40 %
    Angsana New                               Roman                                 8 x 43   40 %
    AngsanaUPC                                Roman                                8 x 43   40 %
    AngsanaUPC                                Roman                                 8 x 43   40 %
    Aparajita                                 Swiss                               16 x 38   40 %
    Arabic Typesetting                        Script                               9 x 36   40 %
    Arabic Typesetting                        Script                             9 x 36   40 %
    Arabic Typesetting                        Script                               9 x 36   40 %
    Arabic Typesetting                        Script                               9 x 36   40 %
    Arabic Typesetting                        Script                  9 x 36   40 %
    Arial Black                               Swiss                             18 x 45   90 %
    Arial Black                               Swiss                              18 x 45   90 %
    Arial Black                               Swiss                               18 x 45   90 %
    Arial Black                               Swiss                          18 x 45   90 %
    Arial Black                               Swiss                               18 x 45   90 %
    Arial Black                               Swiss                  18 x 45   90 %
    Arial Narrow                              Swiss                             12 x 36   40 %
    Arial Narrow                              Swiss                              12 x 36   40 %
    Arial Narrow                              Swiss                               12 x 36   40 %
    Arial Narrow                              Swiss                          12 x 36   40 %
    Arial Narrow                              Swiss                               12 x 36   40 %
    Arial Narrow                              Swiss                  12 x 36   40 %
    Arial Rounded MT Bold                     Swiss                               15 x 37   40 %
    Arial Unicode MS                          Swiss                               14 x 43   40 %
    Arial Unicode MS                          Swiss                             14 x 43   40 %
    Arial Unicode MS                          Swiss                            14 x 43   40 %
    Arial Unicode MS                          Swiss                              14 x 43   40 %
    Arial Unicode MS                          Swiss                               14 x 43   40 %
    Arial Unicode MS                          Swiss                                  14 x 43   40 %
    Arial Unicode MS                          Swiss                          14 x 43   40 %
    Arial Unicode MS                          Swiss                (2312)        14 x 43   40 %
    Arial Unicode MS                          Swiss                (BIG5)        14 x 43   40 %
    Arial Unicode MS                          Swiss                                14 x 43   40 %
    Arial Unicode MS                          Swiss                               14 x 43   40 %
    Arial Unicode MS                          Swiss                (Johab)         14 x 43   40 %
    Arial Unicode MS                          Swiss                                14 x 43   40 %
    Arial Unicode MS                          Swiss                  14 x 43   40 %
    Arial Unicode MS                          Swiss                               14 x 43   40 %
    Arial                                     Swiss                               14 x 36   40 %
    Arial                                     Swiss                             14 x 36   40 %
    Arial                                     Swiss                            14 x 36   40 %
    Arial                                     Swiss                              14 x 36   40 %
    Arial                                     Swiss                               14 x 36   40 %
    Arial                                     Swiss                                  14 x 36   40 %
    Arial                                     Swiss                          14 x 36   40 %
    Arial                                     Swiss                               14 x 36   40 %
    Arial                                     Swiss                  14 x 36   40 %
    Baskerville Old Face                      Roman                               13 x 37   40 %
    Batang                                    Roman       Regular                      16 x 32   40 %
    Batang                                    Roman       Regular                       16 x 32   40 %
    Batang                                    Roman       Regular                        16 x 32   40 %
    Batang                                    Roman       Regular                   16 x 32   40 %
    Batang                                    Roman       Regular                        16 x 32   40 %
    Batang                                    Roman       Regular                         16 x 32   40 %
    Batang                                    Roman       Regular           16 x 32   40 %
    BatangChe                                 Modern      Regular                      16 x 32   40 %
    BatangChe                                 Modern      Regular                       16 x 32   40 %
    BatangChe                                 Modern      Regular                        16 x 32   40 %
    BatangChe                                 Modern      Regular                   16 x 32   40 %
    BatangChe                                 Modern      Regular                        16 x 32   40 %
    BatangChe                                 Modern      Regular                         16 x 32   40 %
    BatangChe                                 Modern      Regular           16 x 32   40 %
    Bauhaus 93                                Decorative                          14 x 36   40 %
    Bell MT                                   Roman                               13 x 35   40 %
    Berlin Sans FB Demi                       Swiss                            14 x 36   70 %
    Berlin Sans FB                            Swiss                               13 x 35   40 %
    Bernard MT Condensed                      Roman                               12 x 38   40 %
    Blackadder ITC                            Decorative                          10 x 41   40 %
    Bodoni MT Black                           Roman                               16 x 37   90 %
    Bodoni MT Condensed                       Roman                                9 x 38   40 %
    Bodoni MT Poster Compressed               Roman                                8 x 37   30 %
    Bodoni MT Poster Compressed               Roman                                8 x 37   30 %
    Bodoni MT                                 Roman                               13 x 38   40 %
    Book Antiqua                              Roman                             14 x 40   40 %
    Book Antiqua                              Roman                              14 x 40   40 %
    Book Antiqua                              Roman                               14 x 40   40 %
    Book Antiqua                              Roman                          14 x 40   40 %
    Book Antiqua                              Roman                               14 x 40   40 %
    Book Antiqua                              Roman                  14 x 40   40 %
    Bookman Old Style                         Roman                             16 x 36   30 %
    Bookman Old Style                         Roman                              16 x 36   30 %
    Bookman Old Style                         Roman                               16 x 36   30 %
    Bookman Old Style                         Roman                          16 x 36   30 %
    Bookman Old Style                         Roman                               16 x 36   30 %
    Bookman Old Style                         Roman                  16 x 36   30 %
    Bookshelf Symbol 7                        Special     Regular                      21 x 32   40 %
    Bradley Hand ITC                          Script                              13 x 40   40 %
    Britannic Bold                            Swiss                               14 x 35   40 %
    Broadway                                  Decorative                          17 x 36   40 %
    Browallia New                             Swiss       Regular                         9 x 40   40 %
    Browallia New                             Swiss       Regular                          9 x 40   40 %
    BrowalliaUPC                              Swiss       Regular                         9 x 40   40 %
    BrowalliaUPC                              Swiss       Regular                          9 x 40   40 %
    Brush Script MT                           Script                               10 x 39   40 %
    Calibri Light                             Swiss       Regular                      17 x 39   30 %
    Calibri Light                             Swiss       Regular                     17 x 39   30 %
    Calibri Light                             Swiss       Regular                       17 x 39   30 %
    Calibri Light                             Swiss       Regular                        17 x 39   30 %
    Calibri Light                             Swiss       Regular                   17 x 39   30 %
    Calibri Light                             Swiss       Regular                        17 x 39   30 %
    Calibri Light                             Swiss       Regular           17 x 39   30 %
    Calibri                                   Swiss       Regular                      17 x 39   40 %
    Calibri                                   Swiss       Regular                     17 x 39   40 %
    Calibri                                   Swiss       Regular                       17 x 39   40 %
    Calibri                                   Swiss       Regular                        17 x 39   40 %
    Calibri                                   Swiss       Regular                   17 x 39   40 %
    Calibri                                   Swiss       Regular                        17 x 39   40 %
    Calibri                                   Swiss       Regular           17 x 39   40 %
    Californian FB                            Roman                               13 x 36   40 %
    Calisto MT                                Roman                               13 x 37   40 %
    Cambria Math                              Roman       Regular                      20 x 179   40 %
    Cambria Math                              Roman       Regular                     20 x 179   40 %
    Cambria Math                              Roman       Regular                       20 x 179   40 %
    Cambria Math                              Roman       Regular                        20 x 179   40 %
    Cambria Math                              Roman       Regular                   20 x 179   40 %
    Cambria Math                              Roman       Regular                        20 x 179   40 %
    Cambria Math                              Roman       Regular           20 x 179   40 %
    Cambria                                   Roman       Regular                      20 x 38   40 %
    Cambria                                   Roman       Regular                     20 x 38   40 %
    Cambria                                   Roman       Regular                       20 x 38   40 %
    Cambria                                   Roman       Regular                        20 x 38   40 %
    Cambria                                   Roman       Regular                   20 x 38   40 %
    Cambria                                   Roman       Regular                        20 x 38   40 %
    Cambria                                   Roman       Regular           20 x 38   40 %
    Candara                                   Swiss       Regular                      17 x 39   40 %
    Candara                                   Swiss       Regular                     17 x 39   40 %
    Candara                                   Swiss       Regular                       17 x 39   40 %
    Candara                                   Swiss       Regular                        17 x 39   40 %
    Candara                                   Swiss       Regular                   17 x 39   40 %
    Candara                                   Swiss       Regular                        17 x 39   40 %
    Candara                                   Swiss       Regular           17 x 39   40 %
    Castellar                                 Roman                               21 x 39   40 %
    Centaur                                   Roman                               12 x 36   40 %
    Century Gothic                            Swiss                             16 x 38   40 %
    Century Gothic                            Swiss                              16 x 38   40 %
    Century Gothic                            Swiss                               16 x 38   40 %
    Century Gothic                            Swiss                          16 x 38   40 %
    Century Gothic                            Swiss                               16 x 38   40 %
    Century Gothic                            Swiss                  16 x 38   40 %
    Century Schoolbook                        Roman                             15 x 38   40 %
    Century Schoolbook                        Roman                              15 x 38   40 %
    Century Schoolbook                        Roman                               15 x 38   40 %
    Century Schoolbook                        Roman                          15 x 38   40 %
    Century Schoolbook                        Roman                               15 x 38   40 %
    Century Schoolbook                        Roman                  15 x 38   40 %
    Century                                   Roman                             15 x 38   40 %
    Century                                   Roman                              15 x 38   40 %
    Century                                   Roman                               15 x 38   40 %
    Century                                   Roman                          15 x 38   40 %
    Century                                   Roman                               15 x 38   40 %
    Century                                   Roman                  15 x 38   40 %
    Chiller                                   Decorative                           9 x 37   40 %
    Colonna MT                                Decorative                          13 x 34   40 %
    Comic Sans MS                             Script                            15 x 45   40 %
    Comic Sans MS                             Script                             15 x 45   40 %
    Comic Sans MS                             Script                              15 x 45   40 %
    Comic Sans MS                             Script                         15 x 45   40 %
    Comic Sans MS                             Script                              15 x 45   40 %
    Comic Sans MS                             Script                 15 x 45   40 %
    Consolas                                  Modern      Regular                      18 x 37   40 %
    Consolas                                  Modern      Regular                     18 x 37   40 %
    Consolas                                  Modern      Regular                       18 x 37   40 %
    Consolas                                  Modern      Regular                        18 x 37   40 %
    Consolas                                  Modern      Regular                   18 x 37   40 %
    Consolas                                  Modern      Regular                        18 x 37   40 %
    Consolas                                  Modern      Regular           18 x 37   40 %
    Constantia                                Roman       Regular                      17 x 39   40 %
    Constantia                                Roman       Regular                     17 x 39   40 %
    Constantia                                Roman       Regular                       17 x 39   40 %
    Constantia                                Roman       Regular                        17 x 39   40 %
    Constantia                                Roman       Regular                   17 x 39   40 %
    Constantia                                Roman       Regular                        17 x 39   40 %
    Constantia                                Roman       Regular           17 x 39   40 %
    Cooper Black                              Roman                               16 x 37   40 %
    Copperplate Gothic Bold                   Swiss                               19 x 36   40 %
    Copperplate Gothic Light                  Swiss                               18 x 35   40 %
    Corbel                                    Swiss       Regular                      17 x 39   40 %
    Corbel                                    Swiss       Regular                     17 x 39   40 %
    Corbel                                    Swiss       Regular                       17 x 39   40 %
    Corbel                                    Swiss       Regular                        17 x 39   40 %
    Corbel                                    Swiss       Regular                   17 x 39   40 %
    Corbel                                    Swiss       Regular                        17 x 39   40 %
    Corbel                                    Swiss       Regular           17 x 39   40 %
    Cordia New                                Swiss       Regular                         9 x 44   40 %
    Cordia New                                Swiss       Regular                          9 x 44   40 %
    CordiaUPC                                 Swiss       Regular                         9 x 44   40 %
    CordiaUPC                                 Swiss       Regular                          9 x 44   40 %
    Courier New                               Modern                              19 x 36   40 %
    Courier New                               Modern                            19 x 36   40 %
    Courier New                               Modern                           19 x 36   40 %
    Courier New                               Modern                             19 x 36   40 %
    Courier New                               Modern                              19 x 36   40 %
    Courier New                               Modern                                 19 x 36   40 %
    Courier New                               Modern                         19 x 36   40 %
    Courier New                               Modern                              19 x 36   40 %
    Courier New                               Modern                 19 x 36   40 %
    Courier                                   Roman                                  8 x 13   40 %
    Curlz MT                                  Decorative                          12 x 42   40 %
    DaunPenh                                  Special                             12 x 43   40 %
    David                                     Swiss       Regular                           13 x 31   40 %
    DFKai-SB                                  Script      Regular                        16 x 32   40 %
    DFKai-SB                                  Script      Regular         (BIG5)        16 x 32   40 %
    DilleniaUPC                               Roman                                9 x 42   40 %
    DilleniaUPC                               Roman                                 9 x 42   40 %
    DokChampa                                 Swiss                               19 x 62   40 %
    DokChampa                                 Swiss                                19 x 62   40 %
    Dotum                                     Swiss       Regular                      16 x 32   40 %
    Dotum                                     Swiss       Regular                       16 x 32   40 %
    Dotum                                     Swiss       Regular                        16 x 32   40 %
    Dotum                                     Swiss       Regular                   16 x 32   40 %
    Dotum                                     Swiss       Regular                        16 x 32   40 %
    Dotum                                     Swiss       Regular                         16 x 32   40 %
    Dotum                                     Swiss       Regular           16 x 32   40 %
    DotumChe                                  Modern      Regular                      16 x 32   40 %
    DotumChe                                  Modern      Regular                       16 x 32   40 %
    DotumChe                                  Modern      Regular                        16 x 32   40 %
    DotumChe                                  Modern      Regular                   16 x 32   40 %
    DotumChe                                  Modern      Regular                        16 x 32   40 %
    DotumChe                                  Modern      Regular                         16 x 32   40 %
    DotumChe                                  Modern      Regular           16 x 32   40 %
    Ebrima                                    Special                           19 x 43   40 %
    Ebrima                                    Special                             19 x 43   40 %
    Ebrima                                    Special                             19 x 43   40 %
    Ebrima                                    Special                19 x 43   40 %
    Edwardian Script ITC                      Script                               8 x 38   40 %
    Elephant                                  Roman                               16 x 41   40 %
    Engravers MT                              Roman                               25 x 37   50 %
    Eras Bold ITC                             Swiss                               16 x 37   40 %
    Eras Demi ITC                             Swiss                               15 x 36   40 %
    Eras Light ITC                            Swiss                               13 x 36   40 %
    Eras Medium ITC                           Swiss                               14 x 36   40 %
    Estrangelo Edessa                         Script                              16 x 36   40 %
    EucrosiaUPC                               Roman                                9 x 39   40 %
    EucrosiaUPC                               Roman                                 9 x 39   40 %
    Euphemia                                  Swiss       Regular                        22 x 42   40 %
    FangSong                                  Modern                              16 x 32   40 %
    FangSong                                  Modern               (2312)        16 x 32   40 %
    Felix Titling                             Decorative                          19 x 37   40 %
    Fixedsys                                  Swiss                                  8 x 16   40 %
    Footlight MT Light                        Roman                               13 x 34   30 %
    Forte                                     Script      Regular                        14 x 35   40 %
    Franklin Gothic Book                      Swiss                             13 x 36   40 %
    Franklin Gothic Book                      Swiss                              13 x 36   40 %
    Franklin Gothic Book                      Swiss                               13 x 36   40 %
    Franklin Gothic Book                      Swiss                          13 x 36   40 %
    Franklin Gothic Book                      Swiss                               13 x 36   40 %
    Franklin Gothic Book                      Swiss                  13 x 36   40 %
    Franklin Gothic Demi Cond                 Swiss                             12 x 36   40 %
    Franklin Gothic Demi Cond                 Swiss                              12 x 36   40 %
    Franklin Gothic Demi Cond                 Swiss                               12 x 36   40 %
    Franklin Gothic Demi Cond                 Swiss                          12 x 36   40 %
    Franklin Gothic Demi Cond                 Swiss                               12 x 36   40 %
    Franklin Gothic Demi Cond                 Swiss                  12 x 36   40 %
    Franklin Gothic Demi                      Swiss                             14 x 36   40 %
    Franklin Gothic Demi                      Swiss                              14 x 36   40 %
    Franklin Gothic Demi                      Swiss                               14 x 36   40 %
    Franklin Gothic Demi                      Swiss                          14 x 36   40 %
    Franklin Gothic Demi                      Swiss                               14 x 36   40 %
    Franklin Gothic Demi                      Swiss                  14 x 36   40 %
    Franklin Gothic Heavy                     Swiss                             15 x 36   40 %
    Franklin Gothic Heavy                     Swiss                              15 x 36   40 %
    Franklin Gothic Heavy                     Swiss                               15 x 36   40 %
    Franklin Gothic Heavy                     Swiss                          15 x 36   40 %
    Franklin Gothic Heavy                     Swiss                               15 x 36   40 %
    Franklin Gothic Heavy                     Swiss                  15 x 36   40 %
    Franklin Gothic Medium Cond               Swiss                             12 x 36   40 %
    Franklin Gothic Medium Cond               Swiss                              12 x 36   40 %
    Franklin Gothic Medium Cond               Swiss                               12 x 36   40 %
    Franklin Gothic Medium Cond               Swiss                          12 x 36   40 %
    Franklin Gothic Medium Cond               Swiss                               12 x 36   40 %
    Franklin Gothic Medium Cond               Swiss                  12 x 36   40 %
    Franklin Gothic Medium                    Swiss                             14 x 36   40 %
    Franklin Gothic Medium                    Swiss                              14 x 36   40 %
    Franklin Gothic Medium                    Swiss                               14 x 36   40 %
    Franklin Gothic Medium                    Swiss                          14 x 36   40 %
    Franklin Gothic Medium                    Swiss                               14 x 36   40 %
    Franklin Gothic Medium                    Swiss                  14 x 36   40 %
    FrankRuehl                                Swiss       Regular                           13 x 30   40 %
    FreesiaUPC                                Swiss       Regular                         9 x 38   40 %
    FreesiaUPC                                Swiss       Regular                          9 x 38   40 %
    Freestyle Script                          Script                               8 x 38   40 %
    French Script MT                          Script                               9 x 36   40 %
    Gabriola                                  Decorative  Regular                      16 x 59   40 %
    Gabriola                                  Decorative  Regular                       16 x 59   40 %
    Gabriola                                  Decorative  Regular                        16 x 59   40 %
    Gabriola                                  Decorative  Regular                   16 x 59   40 %
    Gabriola                                  Decorative  Regular                        16 x 59   40 %
    Gabriola                                  Decorative  Regular           16 x 59   40 %
    Gadugi                                    Swiss                               18 x 43   40 %
    Garamond                                  Roman                             12 x 36   40 %
    Garamond                                  Roman                              12 x 36   40 %
    Garamond                                  Roman                               12 x 36   40 %
    Garamond                                  Roman                          12 x 36   40 %
    Garamond                                  Roman                               12 x 36   40 %
    Garamond                                  Roman                  12 x 36   40 %
    Gautami                                   Swiss                               18 x 56   40 %
    Georgia                                   Roman                             14 x 36   40 %
    Georgia                                   Roman                              14 x 36   40 %
    Georgia                                   Roman                               14 x 36   40 %
    Georgia                                   Roman                          14 x 36   40 %
    Georgia                                   Roman                               14 x 36   40 %
    Georgia                                   Roman                  14 x 36   40 %
    Gigi                                      Decorative                          13 x 44   40 %
    Gill Sans MT Condensed                    Swiss                               10 x 39   40 %
    Gill Sans MT Condensed                    Swiss                  10 x 39   40 %
    Gill Sans MT Ext Condensed Bold           Swiss                                7 x 38   40 %
    Gill Sans MT Ext Condensed Bold           Swiss                   7 x 38   40 %
    Gill Sans MT                              Swiss                               13 x 37   40 %
    Gill Sans MT                              Swiss                  13 x 37   40 %
    Gill Sans Ultra Bold Condensed            Swiss                               14 x 40   40 %
    Gill Sans Ultra Bold Condensed            Swiss                  14 x 40   40 %
    Gill Sans Ultra Bold                      Swiss                               20 x 40   40 %
    Gill Sans Ultra Bold                      Swiss                  20 x 40   40 %
    Gisha                                     Swiss                               16 x 38   40 %
    Gisha                                     Swiss                                  16 x 38   40 %
    Gloucester MT Extra Condensed             Roman       Regular                         9 x 37   40 %
    Goudy Old Style                           Roman                               13 x 36   40 %
    Goudy Stout                               Roman                               36 x 44   40 %
    Gulim                                     Swiss       Regular                      16 x 32   40 %
    Gulim                                     Swiss       Regular                       16 x 32   40 %
    Gulim                                     Swiss       Regular                        16 x 32   40 %
    Gulim                                     Swiss       Regular                   16 x 32   40 %
    Gulim                                     Swiss       Regular                        16 x 32   40 %
    Gulim                                     Swiss       Regular                         16 x 32   40 %
    Gulim                                     Swiss       Regular           16 x 32   40 %
    GulimChe                                  Modern      Regular                      16 x 32   40 %
    GulimChe                                  Modern      Regular                       16 x 32   40 %
    GulimChe                                  Modern      Regular                        16 x 32   40 %
    GulimChe                                  Modern      Regular                   16 x 32   40 %
    GulimChe                                  Modern      Regular                        16 x 32   40 %
    GulimChe                                  Modern      Regular                         16 x 32   40 %
    GulimChe                                  Modern      Regular           16 x 32   40 %
    Gungsuh                                   Roman       Regular                      16 x 32   40 %
    Gungsuh                                   Roman       Regular                       16 x 32   40 %
    Gungsuh                                   Roman       Regular                        16 x 32   40 %
    Gungsuh                                   Roman       Regular                   16 x 32   40 %
    Gungsuh                                   Roman       Regular                        16 x 32   40 %
    Gungsuh                                   Roman       Regular                         16 x 32   40 %
    Gungsuh                                   Roman       Regular           16 x 32   40 %
    GungsuhChe                                Modern      Regular                      16 x 32   40 %
    GungsuhChe                                Modern      Regular                       16 x 32   40 %
    GungsuhChe                                Modern      Regular                        16 x 32   40 %
    GungsuhChe                                Modern      Regular                   16 x 32   40 %
    GungsuhChe                                Modern      Regular                        16 x 32   40 %
    GungsuhChe                                Modern      Regular                         16 x 32   40 %
    GungsuhChe                                Modern      Regular           16 x 32   40 %
    Haettenschweiler                          Swiss                             10 x 33   40 %
    Haettenschweiler                          Swiss                              10 x 33   40 %
    Haettenschweiler                          Swiss                               10 x 33   40 %
    Haettenschweiler                          Swiss                          10 x 33   40 %
    Haettenschweiler                          Swiss                               10 x 33   40 %
    Haettenschweiler                          Swiss                  10 x 33   40 %
    Harlow Solid Italic                       Decorative  Italic                         12 x 40   40 %
    Harrington                                Decorative                          14 x 38   40 %
    High Tower Text                           Roman                               13 x 37   40 %
    Impact                                    Swiss                             19 x 39   40 %
    Impact                                    Swiss                              19 x 39   40 %
    Impact                                    Swiss                               19 x 39   40 %
    Impact                                    Swiss                          19 x 39   40 %
    Impact                                    Swiss                               19 x 39   40 %
    Impact                                    Swiss                  19 x 39   40 %
    Imprint MT Shadow                         Decorative                          13 x 38   40 %
    Informal Roman                            Script                              12 x 32   40 %
    IrisUPC                                   Swiss       Regular                         9 x 40   40 %
    IrisUPC                                   Swiss       Regular                          9 x 40   40 %
    Iskoola Pota                              Swiss                               22 x 36   40 %
    JasmineUPC                                Roman       Regular                         9 x 34   40 %
    JasmineUPC                                Roman       Regular                          9 x 34   40 %
    Jokerman                                  Decorative                          16 x 48   40 %
    Juice ITC                                 Decorative                           9 x 36   40 %
    KaiTi                                     Modern                              16 x 32   40 %
    KaiTi                                     Modern               (2312)        16 x 32   40 %
    Kalinga                                   Swiss                               19 x 48   40 %
    Kartika                                   Roman                               27 x 46   40 %
    Khmer UI                                  Swiss                               21 x 36   40 %
    KodchiangUPC                              Roman       Regular                         9 x 31   40 %
    KodchiangUPC                              Roman       Regular                          9 x 31   40 %
    Kokila                                    Swiss       Regular                        13 x 37   40 %
    Kristen ITC                               Script                              16 x 44   40 %
    Kunstler Script                           Script                               8 x 35   40 %
    Lao UI                                    Swiss                               18 x 43   40 %
    Latha                                     Swiss                               23 x 44   40 %
    Leelawadee                                Swiss                               17 x 38   40 %
    Leelawadee                                Swiss                                17 x 38   40 %
    Levenim MT                                Special     Regular                           16 x 42   40 %
    LilyUPC                                   Swiss                                9 x 30   40 %
    LilyUPC                                   Swiss                                 9 x 30   40 %
    Lucida Bright                             Roman       Regular                        16 x 36   40 %
    Lucida Calligraphy                        Script      Italic                         17 x 40   40 %
    Lucida Console                            Modern                             19 x 32   40 %
    Lucida Console                            Modern                              19 x 32   40 %
    Lucida Console                            Modern                         19 x 32   40 %
    Lucida Console                            Modern                              19 x 32   40 %
    Lucida Console                            Modern                 19 x 32   40 %
    Lucida Fax                                Roman       Regular                        16 x 37   40 %
    Lucida Handwriting                        Script      Italic                         18 x 41   40 %
    Lucida Sans Typewriter                    Modern      Regular                        19 x 36   40 %
    Lucida Sans Unicode                       Swiss                             16 x 49   40 %
    Lucida Sans Unicode                       Swiss                              16 x 49   40 %
    Lucida Sans Unicode                       Swiss                               16 x 49   40 %
    Lucida Sans Unicode                       Swiss                                  16 x 49   40 %
    Lucida Sans Unicode                       Swiss                          16 x 49   40 %
    Lucida Sans Unicode                       Swiss                               16 x 49   40 %
    Lucida Sans Unicode                       Swiss                  16 x 49   40 %
    Lucida Sans                               Swiss       Regular                        16 x 36   40 %
    Magneto                                   Decorative                       18 x 39   70 %
    Maiandra GD                               Swiss                               14 x 38   40 %
    Malgun Gothic                             Swiss       Regular                      15 x 43   40 %
    Malgun Gothic                             Swiss       Regular                       15 x 43   40 %
    Malgun Gothic                             Swiss       Regular                        15 x 43   40 %
    Malgun Gothic                             Swiss       Regular                   15 x 43   40 %
    Malgun Gothic                             Swiss       Regular                         15 x 43   40 %
    Mangal                                    Roman                               19 x 54   40 %
    Marlett                                   Special     Regular                      31 x 32   50 %
    Matura MT Script Capitals                 Script                              14 x 43   40 %
    Meiryo UI                                 Swiss                             17 x 41   40 %
    Meiryo UI                                 Swiss                              17 x 41   40 %
    Meiryo UI                                 Swiss                               17 x 41   40 %
    Meiryo UI                                 Swiss                          17 x 41   40 %
    Meiryo UI                                 Swiss                               17 x 41   40 %
    Meiryo UI                                 Swiss                  17 x 41   40 %
    Meiryo UI                                 Swiss                               17 x 41   40 %
    Meiryo                                    Swiss                             31 x 48   40 %
    Meiryo                                    Swiss                              31 x 48   40 %
    Meiryo                                    Swiss                               31 x 48   40 %
    Meiryo                                    Swiss                          31 x 48   40 %
    Meiryo                                    Swiss                               31 x 48   40 %
    Meiryo                                    Swiss                  31 x 48   40 %
    Meiryo                                    Swiss                               31 x 48   40 %
    Microsoft Himalaya                        Special     Regular                        13 x 32   40 %
    Microsoft JhengHei UI                     Swiss                              15 x 41   40 %
    Microsoft JhengHei UI                     Swiss                               15 x 41   40 %
    Microsoft JhengHei UI                     Swiss                (BIG5)        15 x 41   40 %
    Microsoft JhengHei                        Swiss                              15 x 43   40 %
    Microsoft JhengHei                        Swiss                               15 x 43   40 %
    Microsoft JhengHei                        Swiss                (BIG5)        15 x 43   40 %
    Microsoft New Tai Lue                     Swiss                               19 x 42   40 %
    Microsoft PhagsPa                         Swiss                               24 x 41   40 %
    Microsoft Sans Serif                      Swiss                               14 x 36   40 %
    Microsoft Sans Serif                      Swiss                             14 x 36   40 %
    Microsoft Sans Serif                      Swiss                            14 x 36   40 %
    Microsoft Sans Serif                      Swiss                              14 x 36   40 %
    Microsoft Sans Serif                      Swiss                               14 x 36   40 %
    Microsoft Sans Serif                      Swiss                                  14 x 36   40 %
    Microsoft Sans Serif                      Swiss                          14 x 36   40 %
    Microsoft Sans Serif                      Swiss                                14 x 36   40 %
    Microsoft Sans Serif                      Swiss                               14 x 36   40 %
    Microsoft Sans Serif                      Swiss                  14 x 36   40 %
    Microsoft Tai Le                          Swiss                               19 x 41   40 %
    Microsoft Uighur                          Special                             13 x 32   40 %
    Microsoft Uighur                          Special                             13 x 32   40 %
    Microsoft YaHei UI                        Swiss                              15 x 41   40 %
    Microsoft YaHei UI                        Swiss                               15 x 41   40 %
    Microsoft YaHei UI                        Swiss                          15 x 41   40 %
    Microsoft YaHei UI                        Swiss                (2312)        15 x 41   40 %
    Microsoft YaHei UI                        Swiss                               15 x 41   40 %
    Microsoft YaHei UI                        Swiss                  15 x 41   40 %
    Microsoft YaHei                           Swiss                              15 x 42   40 %
    Microsoft YaHei                           Swiss                               15 x 42   40 %
    Microsoft YaHei                           Swiss                          15 x 42   40 %
    Microsoft YaHei                           Swiss                (2312)        15 x 42   40 %
    Microsoft YaHei                           Swiss                               15 x 42   40 %
    Microsoft YaHei                           Swiss                  15 x 42   40 %
    Microsoft Yi Baiti                        Script                              21 x 32   40 %
    MingLiU_HKSCS                             Roman       Regular                        16 x 32   40 %
    MingLiU_HKSCS                             Roman       Regular         (BIG5)        16 x 32   40 %
    MingLiU_HKSCS-ExtB                        Roman       Regular                        16 x 32   40 %
    MingLiU_HKSCS-ExtB                        Roman       Regular         (BIG5)        16 x 32   40 %
    MingLiU                                   Modern      Regular                        16 x 32   40 %
    MingLiU                                   Modern      Regular         (BIG5)        16 x 32   40 %
    MingLiU-ExtB                              Roman       Regular                        16 x 32   40 %
    MingLiU-ExtB                              Roman       Regular         (BIG5)        16 x 32   40 %
    Miriam Fixed                              Modern      Regular                           19 x 32   40 %
    Miriam                                    Swiss       Regular                           13 x 32   40 %
    Mistral                                   Script                            10 x 39   40 %
    Mistral                                   Script                             10 x 39   40 %
    Mistral                                   Script                              10 x 39   40 %
    Mistral                                   Script                         10 x 39   40 %
    Mistral                                   Script                              10 x 39   40 %
    Mistral                                   Script                 10 x 39   40 %
    Modern No. 20                             Roman                               13 x 33   40 %
    Modern                                    Modern                     OEM/DOS                 19 x 37   40 %
    Mongolian Baiti                           Script                              14 x 34   40 %
    Monotype Corsiva                          Script                            11 x 35   40 %
    Monotype Corsiva                          Script                             11 x 35   40 %
    Monotype Corsiva                          Script                              11 x 35   40 %
    Monotype Corsiva                          Script                         11 x 35   40 %
    Monotype Corsiva                          Script                              11 x 35   40 %
    Monotype Corsiva                          Script                 11 x 35   40 %
    MoolBoran                                 Swiss                               13 x 43   40 %
    MS Gothic                                 Modern      Regular                      16 x 32   40 %
    MS Gothic                                 Modern      Regular                       16 x 32   40 %
    MS Gothic                                 Modern      Regular                        16 x 32   40 %
    MS Gothic                                 Modern      Regular                   16 x 32   40 %
    MS Gothic                                 Modern      Regular                        16 x 32   40 %
    MS Gothic                                 Modern      Regular           16 x 32   40 %
    MS Gothic                                 Modern      Regular                        16 x 32   40 %
    MS Mincho                                 Modern      Regular                      16 x 32   40 %
    MS Mincho                                 Modern      Regular                       16 x 32   40 %
    MS Mincho                                 Modern      Regular                        16 x 32   40 %
    MS Mincho                                 Modern      Regular                   16 x 32   40 %
    MS Mincho                                 Modern      Regular                        16 x 32   40 %
    MS Mincho                                 Modern      Regular           16 x 32   40 %
    MS Mincho                                 Modern      Regular                        16 x 32   40 %
    MS Outlook                                Special                           31 x 33   40 %
    MS PGothic                                Swiss       Regular                      13 x 32   40 %
    MS PGothic                                Swiss       Regular                       13 x 32   40 %
    MS PGothic                                Swiss       Regular                        13 x 32   40 %
    MS PGothic                                Swiss       Regular                   13 x 32   40 %
    MS PGothic                                Swiss       Regular                        13 x 32   40 %
    MS PGothic                                Swiss       Regular           13 x 32   40 %
    MS PGothic                                Swiss       Regular                        13 x 32   40 %
    MS PMincho                                Roman       Regular                      13 x 32   40 %
    MS PMincho                                Roman       Regular                       13 x 32   40 %
    MS PMincho                                Roman       Regular                        13 x 32   40 %
    MS PMincho                                Roman       Regular                   13 x 32   40 %
    MS PMincho                                Roman       Regular                        13 x 32   40 %
    MS PMincho                                Roman       Regular           13 x 32   40 %
    MS PMincho                                Roman       Regular                        13 x 32   40 %
    MS Reference Sans Serif                   Swiss                             16 x 39   40 %
    MS Reference Sans Serif                   Swiss                            16 x 39   40 %
    MS Reference Sans Serif                   Swiss                              16 x 39   40 %
    MS Reference Sans Serif                   Swiss                               16 x 39   40 %
    MS Reference Sans Serif                   Swiss                          16 x 39   40 %
    MS Reference Sans Serif                   Swiss                               16 x 39   40 %
    MS Reference Sans Serif                   Swiss                  16 x 39   40 %
    MS Reference Specialty                    Special                           23 x 39   40 %
    MS Sans Serif                             Swiss                                  5 x 13   40 %
    MS Serif                                  Roman                                  5 x 13   40 %
    MS UI Gothic                              Swiss       Regular                      13 x 32   40 %
    MS UI Gothic                              Swiss       Regular                       13 x 32   40 %
    MS UI Gothic                              Swiss       Regular                        13 x 32   40 %
    MS UI Gothic                              Swiss       Regular                   13 x 32   40 %
    MS UI Gothic                              Swiss       Regular                        13 x 32   40 %
    MS UI Gothic                              Swiss       Regular           13 x 32   40 %
    MS UI Gothic                              Swiss       Regular                        13 x 32   40 %
    MT Extra                                  Roman       Regular                      20 x 32   40 %
    MV Boli                                   Special                             18 x 52   40 %
    Myanmar Text                              Swiss                               18 x 60   40 %
    Narkisim                                  Swiss       Regular                           12 x 32   40 %
    Niagara Engraved                          Decorative                           8 x 34   40 %
    Niagara Solid                             Decorative                           8 x 34   40 %
    Nirmala UI                                Swiss                               31 x 43   40 %
    NSimSun                                   Modern      Regular                        16 x 32   40 %
    NSimSun                                   Modern      Regular         (2312)        16 x 32   40 %
    Nyala                                     Special                           18 x 33   40 %
    Nyala                                     Special                             18 x 33   40 %
    Nyala                                     Special                             18 x 33   40 %
    Nyala                                     Special                18 x 33   40 %
    OCR A Extended                            Modern                              19 x 33   40 %
    Old English Text MT                       Script                              12 x 39   40 %
    Onyx                                      Decorative                           8 x 37   40 %
    Palace Script MT                          Script      Regular                         7 x 30   40 %
    Palatino Linotype                         Roman                             14 x 43   40 %
    Palatino Linotype                         Roman                            14 x 43   40 %
    Palatino Linotype                         Roman                              14 x 43   40 %
    Palatino Linotype                         Roman                               14 x 43   40 %
    Palatino Linotype                         Roman                          14 x 43   40 %
    Palatino Linotype                         Roman                               14 x 43   40 %
    Palatino Linotype                         Roman                  14 x 43   40 %
    Papyrus                                   Script                              13 x 50   40 %
    Parchment                                 Script                               6 x 34   40 %
    Perpetua Titling MT                       Roman       Light                          19 x 38   30 %
    Perpetua                                  Roman                               12 x 37   40 %
    Plantagenet Cherokee                      Roman                               14 x 41   40 %
    Playbill                                  Decorative                           8 x 32   40 %
    PMingLiU                                  Roman       Regular                        16 x 32   40 %
    PMingLiU                                  Roman       Regular         (BIG5)        16 x 32   40 %
    PMingLiU-ExtB                             Roman       Regular                        16 x 32   40 %
    PMingLiU-ExtB                             Roman       Regular         (BIG5)        16 x 32   40 %
    Poor Richard                              Roman                               12 x 36   40 %
    Pristina                                  Script                              10 x 42   40 %
    Raavi                                     Swiss                               13 x 53   40 %
    Rage Italic                               Script                              11 x 40   40 %
    Ravie                                     Decorative                          22 x 43   40 %
    Rockwell Condensed                        Roman                               11 x 38   40 %
    Rockwell Extra Bold                       Roman                               19 x 38   80 %
    Rockwell                                  Roman                               15 x 38   40 %
    Rod                                       Modern      Regular                           19 x 31   40 %
    Roman                                     Roman                      OEM/DOS                 22 x 37   40 %
    Sakkal Majalla                            Special                             16 x 45   40 %
    Sakkal Majalla                            Special                           16 x 45   40 %
    Sakkal Majalla                            Special                             16 x 45   40 %
    Sakkal Majalla                            Special                             16 x 45   40 %
    Sakkal Majalla                            Special                16 x 45   40 %
    Script MT Bold                            Script      Regular                        13 x 39   70 %
    Script                                    Script                     OEM/DOS                 16 x 36   40 %
    Segoe Print                               Special     Regular                      21 x 56   40 %
    Segoe Print                               Special     Regular                       21 x 56   40 %
    Segoe Print                               Special     Regular                        21 x 56   40 %
    Segoe Print                               Special     Regular                   21 x 56   40 %
    Segoe Print                               Special     Regular                        21 x 56   40 %
    Segoe Print                               Special     Regular           21 x 56   40 %
    Segoe Script                              Swiss                             22 x 51   40 %
    Segoe Script                              Swiss                              22 x 51   40 %
    Segoe Script                              Swiss                               22 x 51   40 %
    Segoe Script                              Swiss                          22 x 51   40 %
    Segoe Script                              Swiss                               22 x 51   40 %
    Segoe Script                              Swiss                  22 x 51   40 %
    Segoe UI Light                            Swiss       Regular                        17 x 43   30 %
    Segoe UI Light                            Swiss       Regular                      17 x 43   30 %
    Segoe UI Light                            Swiss       Regular                     17 x 43   30 %
    Segoe UI Light                            Swiss       Regular                       17 x 43   30 %
    Segoe UI Light                            Swiss       Regular                        17 x 43   30 %
    Segoe UI Light                            Swiss       Regular                           17 x 43   30 %
    Segoe UI Light                            Swiss       Regular                   17 x 43   30 %
    Segoe UI Light                            Swiss       Regular                        17 x 43   30 %
    Segoe UI Light                            Swiss       Regular           17 x 43   30 %
    Segoe UI Semibold                         Swiss       Regular                        18 x 43   60 %
    Segoe UI Semibold                         Swiss       Regular                      18 x 43   60 %
    Segoe UI Semibold                         Swiss       Regular                     18 x 43   60 %
    Segoe UI Semibold                         Swiss       Regular                       18 x 43   60 %
    Segoe UI Semibold                         Swiss       Regular                        18 x 43   60 %
    Segoe UI Semibold                         Swiss       Regular                           18 x 43   60 %
    Segoe UI Semibold                         Swiss       Regular                   18 x 43   60 %
    Segoe UI Semibold                         Swiss       Regular                        18 x 43   60 %
    Segoe UI Semibold                         Swiss       Regular           18 x 43   60 %
    Segoe UI Semilight                        Swiss       Regular                        17 x 43   35 %
    Segoe UI Semilight                        Swiss       Regular                      17 x 43   35 %
    Segoe UI Semilight                        Swiss       Regular                     17 x 43   35 %
    Segoe UI Semilight                        Swiss       Regular                       17 x 43   35 %
    Segoe UI Semilight                        Swiss       Regular                        17 x 43   35 %
    Segoe UI Semilight                        Swiss       Regular                           17 x 43   35 %
    Segoe UI Semilight                        Swiss       Regular                   17 x 43   35 %
    Segoe UI Semilight                        Swiss       Regular                        17 x 43   35 %
    Segoe UI Semilight                        Swiss       Regular           17 x 43   35 %
    Segoe UI Symbol                           Swiss                               23 x 43   40 %
    Segoe UI                                  Swiss                               17 x 43   40 %
    Segoe UI                                  Swiss                             17 x 43   40 %
    Segoe UI                                  Swiss                            17 x 43   40 %
    Segoe UI                                  Swiss                              17 x 43   40 %
    Segoe UI                                  Swiss                               17 x 43   40 %
    Segoe UI                                  Swiss                                  17 x 43   40 %
    Segoe UI                                  Swiss                          17 x 43   40 %
    Segoe UI                                  Swiss                               17 x 43   40 %
    Segoe UI                                  Swiss                  17 x 43   40 %
    Shonar Bangla                             Swiss                               16 x 41   40 %
    Showcard Gothic                           Decorative                          18 x 40   40 %
    Shruti                                    Swiss                               14 x 54   40 %
    SimHei                                    Modern                              16 x 32   40 %
    SimHei                                    Modern               (2312)        16 x 32   40 %
    Simplified Arabic Fixed                   Modern      Regular                        19 x 35   40 %
    Simplified Arabic Fixed                   Modern      Regular                        19 x 35   40 %
    Simplified Arabic                         Roman                               13 x 53   40 %
    Simplified Arabic                         Roman                               13 x 53   40 %
    SimSun                                    Special     Regular                        16 x 32   40 %
    SimSun                                    Special     Regular         (2312)        16 x 32   40 %
    SimSun-ExtB                               Modern                              16 x 32   40 %
    SimSun-ExtB                               Modern               (2312)        16 x 32   40 %
    Small Fonts                               Swiss                                   1 x 3   40 %
    Snap ITC                                  Decorative                          19 x 41   40 %
    Stencil                                   Decorative                          18 x 38   40 %
    Sylfaen                                   Roman                             13 x 42   40 %
    Sylfaen                                   Roman                              13 x 42   40 %
    Sylfaen                                   Roman                               13 x 42   40 %
    Sylfaen                                   Roman                          13 x 42   40 %
    Sylfaen                                   Roman                               13 x 42   40 %
    Sylfaen                                   Roman                  13 x 42   40 %
    Symbol                                    Roman                             19 x 39   40 %
    System                                    Swiss                                  7 x 16   70 %
    Tahoma                                    Swiss                               14 x 39   40 %
    Tahoma                                    Swiss                             14 x 39   40 %
    Tahoma                                    Swiss                            14 x 39   40 %
    Tahoma                                    Swiss                              14 x 39   40 %
    Tahoma                                    Swiss                               14 x 39   40 %
    Tahoma                                    Swiss                                  14 x 39   40 %
    Tahoma                                    Swiss                          14 x 39   40 %
    Tahoma                                    Swiss                                14 x 39   40 %
    Tahoma                                    Swiss                               14 x 39   40 %
    Tahoma                                    Swiss                  14 x 39   40 %
    Tempus Sans ITC                           Decorative                          13 x 42   40 %
    Terminal                                  Modern                     OEM/DOS                  8 x 12   40 %
    Times New Roman                           Roman                               13 x 35   40 %
    Times New Roman                           Roman                             13 x 35   40 %
    Times New Roman                           Roman                            13 x 35   40 %
    Times New Roman                           Roman                              13 x 35   40 %
    Times New Roman                           Roman                               13 x 35   40 %
    Times New Roman                           Roman                                  13 x 35   40 %
    Times New Roman                           Roman                          13 x 35   40 %
    Times New Roman                           Roman                               13 x 35   40 %
    Times New Roman                           Roman                  13 x 35   40 %
    Traditional Arabic                        Roman                               15 x 48   40 %
    Traditional Arabic                        Roman                               15 x 48   40 %
    Trebuchet MS                              Swiss                             15 x 37   40 %
    Trebuchet MS                              Swiss                              15 x 37   40 %
    Trebuchet MS                              Swiss                               15 x 37   40 %
    Trebuchet MS                              Swiss                          15 x 37   40 %
    Trebuchet MS                              Swiss                               15 x 37   40 %
    Trebuchet MS                              Swiss                  15 x 37   40 %
    Tunga                                     Swiss                               18 x 53   40 %
    Tw Cen MT Condensed Extra Bold            Swiss                               12 x 35   40 %
    Tw Cen MT Condensed Extra Bold            Swiss                  12 x 35   40 %
    Tw Cen MT Condensed                       Swiss                               10 x 34   40 %
    Tw Cen MT Condensed                       Swiss                  10 x 34   40 %
    Tw Cen MT                                 Swiss                               13 x 35   40 %
    Tw Cen MT                                 Swiss                  13 x 35   40 %
    Urdu Typesetting                          Script      Regular                        13 x 55   40 %
    Urdu Typesetting                          Script      Regular                      13 x 55   40 %
    Urdu Typesetting                          Script      Regular                        13 x 55   40 %
    Urdu Typesetting                          Script      Regular                        13 x 55   40 %
    Urdu Typesetting                          Script      Regular           13 x 55   40 %
    Utsaah                                    Swiss       Regular                        13 x 36   40 %
    Vani                                      Swiss                               23 x 54   40 %
    Verdana                                   Swiss                             16 x 39   40 %
    Verdana                                   Swiss                            16 x 39   40 %
    Verdana                                   Swiss                              16 x 39   40 %
    Verdana                                   Swiss                               16 x 39   40 %
    Verdana                                   Swiss                          16 x 39   40 %
    Verdana                                   Swiss                               16 x 39   40 %
    Verdana                                   Swiss                  16 x 39   40 %
    Vijaya                                    Swiss                               19 x 32   40 %
    Viner Hand ITC                            Script                              15 x 52   40 %
    Vivaldi                                   Script                                9 x 38   40 %
    Vladimir Script                           Script                              10 x 39   40 %
    Vrinda                                    Swiss                               20 x 44   40 %
    Webdings                                  Roman                             31 x 32   40 %
    Wide Latin                                Roman                               26 x 39   40 %
    Wingdings 2                               Roman       Regular                      27 x 34   40 %
    Wingdings 3                               Roman       Regular                      25 x 36   40 %
    Wingdings                                 Special     Regular                      28 x 36   40 %


--------[  Windows ]-----------------------------------------------------------------------------------------------

    midi-out.0   0001 001B  Microsoft GS Wavetable Synth
    mixer.0      0001 0068   (Realtek High Definiti
    mixer.1      0001 0068   (Realtek High Definiti
    wave-in.0    0001 0065   (Realtek High Definiti
    wave-out.0   0001 0064   (Realtek High Definiti


--------[  PCI / PnP ]---------------------------------------------------------------------------------------------

    Intel Cougar Point HDMI @ Intel Cougar Point PCH - High Definition Audio Controller [B-2]  PCI
    Realtek ALC269 @ Intel Cougar Point PCH - High Definition Audio Controller [B-2]  PCI


--------[ HD Audio ]----------------------------------------------------------------------------------------------------

  [ Intel Cougar Point PCH - High Definition Audio Controller [B-2] ]

     :
                                      Intel Cougar Point PCH - High Definition Audio Controller [B-2]
        (Windows)                      High Definition Audio (Microsoft)
                                                 PCI
       /  /                        0 / 27 / 0
      ID                                      8086-1C20
                               1025-0504
                                                  04
       ID                                     PCI\VEN_8086&DEV_1C20&SUBSYS_05041025&REV_04

     :
                                                   Intel Corporation
                                     http://www.intel.com/products/chipsets
                                       http://support.intel.com/support/chipsets
       BIOS                                 http://www.aida64.com/bios-updates
                                     http://www.aida64.com/driver-updates

  [ Realtek ALC269 ]

     :
                                      Realtek ALC269
        (Windows)                     Realtek High Definition Audio
                                           Audio
                                                 HDAUDIO
      ID                                      10EC-0269
                               1025-0504
                                                  1001
       ID                                     HDAUDIO\FUNC_01&VEN_10EC&DEV_0269&SUBSYS_10250504&REV_1001

     :
                                                   Realtek Semiconductor Corp.
                                     http://www.realtek.com.tw/products/productsView.aspx?Langid=1&PNid=8&PFid=14&Level=3&Conn=2
                                       http://www.realtek.com.tw/downloads
                                     http://www.aida64.com/driver-updates

  [ Intel Cougar Point HDMI ]

     :
                                      Intel Cougar Point HDMI
        (Windows)                      Intel(R)  
                                           Audio
                                                 HDAUDIO
      ID                                      8086-2805
                               8086-0101
                                                  1000
       ID                                     HDAUDIO\FUNC_01&VEN_8086&DEV_2805&SUBSYS_80860101&REV_1000

     :
                                                   Intel Corporation
                                     http://www.intel.com/products/chipsets
                                       http://support.intel.com/support/chipsets
                                     http://www.aida64.com/driver-updates


--------[   ]------------------------------------------------------------------------------------------------

  [ Fraunhofer IIS MPEG Layer-3 Codec (decode only) ]

      ACM:
                                        Fraunhofer IIS MPEG Layer-3 Codec (decode only)
      Copyright-                                  Copyright  1996-1999 Fraunhofer Institut Integrierte Schaltungen IIS
                                         decoder only version
                                          1.09

  [  ADPCM (Microsoft) ]

      ACM:
                                         ADPCM (Microsoft)
      Copyright-                                    , 1992-1996.
                                             Microsoft ADPCM.
                                          4.00

  [  CCITT G.711 A-Law  u-Law (Microsoft) ]

      ACM:
                                         CCITT G.711 A-Law  u-Law (Microsoft)
      Copyright-                                  ()  , 1993-1996.
                                             CCITT G.711 A-Law / u-Law.
                                          4.00

  [  GSM 6.10 (Microsoft) ]

      ACM:
                                         GSM 6.10 (Microsoft)
      Copyright-                                  ()  , 1993-1996.
                                                 ETSI-GSM (European Telecommunications Standards Institute-Groupe Special Mobile)  6.10.
                                          4.00

  [  IMA ADPCM (Microsoft) ]

      ACM:
                                         IMA ADPCM (Microsoft)
      Copyright-                                    , 1992-1996.
                                             IMA ADPCM.
                                          4.00

  [  PCM Microsoft ]

      ACM:
                                         PCM Microsoft
      Copyright-                                    , 1992-1996.
                                                PCM.
                                          5.00


--------[   ]------------------------------------------------------------------------------------------------

    iccvid.dll                 1.10.0.11                            Cinepak
    iyuv_32.dll                6.2.9200.16384 (win8_rtm.120725-1247)  Intel Indeo(R) Video YUV 
    msrle32.dll                6.2.9200.16384 (win8_rtm.120725-1247)  Microsoft RLE Compressor
    msvidc32.dll               6.2.9200.16384 (win8_rtm.120725-1247)    Microsoft Video 1
    msyuv.dll                  6.2.9200.16384 (win8_rtm.120725-1247)  Microsoft UYVY Video Decompressor
    tsbyuv.dll                 6.2.9200.16384 (win8_rtm.120725-1247)  Toshiba Video Codec


--------[ MCI ]---------------------------------------------------------------------------------------------------------

  [ AVIVideo ]

      MCI:
                                              AVIVideo
                                                       Windows
                                                 MCI Video  Windows
                                                     Digital Video Device
                                                 mciavi32.dll
                                                  

      MCI:
                                     
                                  
                                      
                                         
                                 
                                                  
                                        
      ''                             
                                      
                                         
                                         
                                            
                                          
                                          
                                

  [ CDAudio ]

      MCI:
                                              CDAudio
                                                     -
                                                 MCI   cdaudio
                                                     CD Audio Device
                                                 mcicda.dll
                                                  

      MCI:
                                     
                                  
                                      
                                         
                                                  
                                        
                                          
                                          

  [ MPEGVideo ]

      MCI:
                                              MPEGVideo
                                                     DirectShow
                                                 MCI DirectShow
                                                     Digital Video Device
                                                 mciqtz32.dll
                                                  

      MCI:
                                     
                                  
                                      
                                         
                                 
                                                  
                                        
      ''                             
                                      
                                         
                                         
                                            
                                          
                                          
                                

  [ Sequencer ]

      MCI:
                                              Sequencer
                                                      MIDI
                                                 MCI   MIDI
                                                     Sequencer Device
                                                 mciseq.dll
                                                  

      MCI:
                                     
                                  
                                      
                                         
                                                  
                                        
                                          
                                          

  [ WaveAudio ]

      MCI:
                                              WaveAudio
                                                     Sound
                                                 MCI   
                                                     Waveform Audio Device
                                                 mciwave.dll
                                                  

      MCI:
                                     
                                  
                                      
                                         
                                                  
                                        
                                          
                                          


--------[ SAPI ]--------------------------------------------------------------------------------------------------------

     SAPI:
       SAPI4                                      -
       SAPI5                                      5.3.15125.0

     (SAPI5):
                                                     Microsoft Zira Desktop - English (United States)
                                              C:\Windows\Speech\Engines\TTS\en-US\M1033ZIR
                                                 
                                                     
                                                     ()
                                           Microsoft
                                                  10.4
       DLL                                          C:\Windows\SysWOW64\speech\engines\tts\MSTTSEngine.dll  (x86)
      CLSID                                             {C64501F6-E6E6-451f-A150-25D0839BC510}


--------[   Windows ]-------------------------------------------------------------------------------------

  [ Hitachi HTS547575A9E384 ]

     :
                                        Hitachi HTS547575A9E384
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          disk.inf

       :
                                           Hitachi
                                  Travelstar 5K750
      -                                       2.5"
                                  750 
                                                   2
                                 4
                                      100 x 70 x 9.5 mm
                                         102 g
                                5.5 ms
                                        5400 RPM
      .                     996 /
                                      12 ms
                                1 ms
                                       20 ms
                                               SATA-II
        '-'                300 /
                                             8 

     :
                                                   Hitachi Global Storage Technologies
                                     http://www.hgst.com

  [ PIONEER DVD-RW DVRTD11RS ]

     :
                                        PIONEER DVD-RW DVRTD11RS
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          cdrom.inf

     :
                                                   Pioneer High Fidelity Taiwan co., Ltd.
                                     http://www.pioneer-optical.eu/Products_Index.asp
                                        http://www.pioneer-optical.eu/Download_Firmware-Download.asp

  [ Intel(R) Mobile Express Chipset SATA AHCI Controller ]

     :
                                        Intel(R) Mobile Express Chipset SATA AHCI Controller
                                            09.07.2012
                                          11.5.0.1207
                                       Intel Corporation
      INF-                                          oem9.inf

     :
      IRQ                                               65536
                                                  D1A08000-D1A087FF
                                                    3060-307F
                                                    3090-3097
                                                    3098-309F
                                                    30B8-30BB
                                                    30BC-30BF

  [    () ]

     :
                                        Microsoft Storage Spaces Controller
                                            21.06.2006
                                          6.2.9200.16604
                                       Microsoft
      INF-                                          spaceport.inf


--------[   ]--------------------------------------------------------------------------------------------

    C:                                               NTFS          69899       37145       32754    47 %  289B-3D51
    D: ( )                              NTFS         645400      483559      161841    25 %  4C4B-CE04
    E:                                                                                                               


--------[   ]--------------------------------------------------------------------------------------------

  [  #1 - Hitachi HTS547575A9E384 (698 ) ]

    #1 ()    NTFS                                                             1 MB      100 MB
    #2               NTFS             C:                                            101 MB    69900 MB
    #3               NTFS             D: ( )                         70001 MB   645401 MB


--------[   ]---------------------------------------------------------------------------------------

  [ E:\  PIONEER DVD-RW DVRTD11RS ]

      :
                                      PIONEER DVD-RW DVRTD11RS
                                           SKB5204368
                                          1.01
                                            02.03.2011
                                             1 
                                              
                               5
                                      4

      :
      BD-ROM                                             
      BD-R                                               
      BD-RE                                              
      HD DVD-ROM                                         
      HD DVD-R Dual Layer                                
      HD DVD-RW Dual Layer                               
      HD DVD-R                                           
      HD DVD-RW                                          
      HD DVD-RAM                                         
      DVD-ROM                                           
      DVD+R9 Dual Layer                                  + 
      DVD+RW9 Dual Layer                                 
      DVD+R                                              + 
      DVD+RW                                             + 
      DVD-R9 Dual Layer                                  + 
      DVD-RW9 Dual Layer                                 
      DVD-R                                              + 
      DVD-RW                                             + 
      DVD-RAM                                            + 
      CD-ROM                                            
      CD-R                                               + 
      CD-RW                                              + 

      :
      AACS                                               
      BD CPS                                             
      Buffer Underrun Protection                        
      C2 Error Pointers                                 
      CD+G                                              
      CD-Text                                           
      DVD-Download Disc Recording                        
      Hybrid Disc                                        
      JustLink                                          
      CPRM                                              
      CSS                                               
      LabelFlash                                         
      Layer-Jump Recording                              
      LightScribe                                        
      Mount Rainier                                      
      OSSC                                               
      Qflix Recording                                    
      SecurDisc                                          
      SMART                                             
      VCPS                                              


--------[ ASPI ]--------------------------------------------------------------------------------------------------------

    00  00  00         ATA       Hitachi HTS54757  A60A  
    00  00  00       PIONEER   DVD-RW DVRTD11RS  1.01  
    00  07  00  -             iaStorA                           


--------[ ATA ]---------------------------------------------------------------------------------------------------------

  [ Hitachi HTS547575A9E384 (J2140054JY22WA) ]

      ATA:
      ID                                          Hitachi HTS547575A9E384
                                           J2140054JY22WA
                                                  JE4OA60A
      World Wide Name                                   5-000CCA-644E965A0
                                           SATA-II
                                               : 1453521, : 16,   : 63,   : 512
       LBA                                       1465149168
       /             4  / 512 
                                                   8  (Dual Ported, Read Ahead)
                                           16
      .  PIO                                   PIO 4
      .  MWDMA                                 MWDMA 2
      .  UDMA                                  UDMA 6
        UDMA                               UDMA 6
                                715405 
      -                                       2.5"
                                        5400 RPM
       ATA                                      ATA8-ACS

      ATA:
      48-bit LBA                                        , 
      Automatic Acoustic Management (AAM)                
      Device Configuration Overlay (DCO)                , 
      DMA Setup Auto-Activate                           , 
      Free-Fall Control                                  
      General Purpose Logging (GPL)                     , 
      Hardware Feature Control                           
      Host Protected Area (HPA)                         , 
      HPA Security Extensions                           , 
      Hybrid Information Feature                         
      In-Order Data Delivery                            , 
      Native Command Queuing (NCQ)                      
      NCQ Autosense                                      
      NCQ Priority Information                          
      NCQ Queue Management Command                       
      NCQ Streaming                                      
      Phy Event Counters                                
      Read Look-Ahead                                   , 
      Release Interrupt                                  
                                       , 
      Sense Data Reporting (SDR)                         
      Service Interrupt                                  
      SMART                                             , 
      SMART Error Logging                               , 
      SMART Self-Test                                   , 
      Software Settings Preservation (SSP)              , 
      Streaming                                          
      Tagged Command Queuing (TCQ)                       
                                               , 
      Write-Read-Verify                                  

     SSD:
      Data Set Management                                
      Deterministic Read After TRIM                      
       TRIM                                       

     :
       (APM)                            , 
      Automatic Partial to Slumber Transitions (APST)   
      Device Initiated Interface Power Management (DIPM), 
      Device Sleep (DEVSLP)                              
      Extended Power Conditions (EPC)                    
      Host Initiated Interface Power Management (HIPM)  
      IDLE IMMEDIATE With UNLOAD FEATURE                , 
      Link Power State Device Sleep                      
                                          , 
      Power-Up In Standby (PUIS)                        , 

     ATA:
      DEVICE RESET                                       
      DOWNLOAD MICROCODE                                , 
      FLUSH CACHE                                       , 
      FLUSH CACHE EXT                                   , 
      NOP                                               , 
      READ BUFFER                                       , 
      WRITE BUFFER                                      , 

       ATA:
                                           Hitachi
                                  Travelstar 5K750
      -                                       2.5"
                                  750 
                                                   2
                                 4
                                      100 x 70 x 9.5 mm
                                         102 g
                                5.5 ms
                                        5400 RPM
      .                     996 /
                                      12 ms
                                1 ms
                                       20 ms
                                               SATA-II
        '-'                300 /
                                             8 

     ATA-:
                                                   Hitachi Global Storage Technologies
                                     http://www.hgst.com
                                     http://www.aida64.com/driver-updates


--------[ SMART ]-------------------------------------------------------------------------------------------------------

  [ Hitachi HTS547575A9E384 (J2140054JY22WA) ]

    01  Raw Read Error Rate                  62   100  100           0  OK:  
    02  Throughput Performance               40   100  100           0  OK:  
    03  Spinup Time                          33   211  211           0  OK:  
    04  Start/Stop Count                     0    99   99         1648  OK:  
    05  Reallocated Sector Count             5    100  100           0  OK:  
    07  Seek Error Rate                      67   100  100           0  OK:  
    08  Seek Time Performance                40   100  100           0  OK:  
    09  Power-On Time Count                  0    89   89         5185  OK:  
    0A  Spinup Retry Count                   60   100  100           0  OK:  
    0C  Power Cycle Count                    0    99   99         1635  OK:  
    BF  Mechanical Shock                     0    100  100           0  OK:  
    C0  Power-Off Retract Count              0    100  100          57  OK:  
    C1  Load/Unload Cycle Count              0    97   97        34942  OK:  
    C2  Temperature                          0    187  187  46, 13, 32  OK:  
    C4  Reallocation Event Count             0    100  100           0  OK:  
    C5  Current Pending Sector Count         0    100  100           0  OK:  
    C6  Offline Uncorrectable Sector Count   0    100  100           0  OK:  
    C7  Ultra ATA CRC Error Rate             0    200  200           0  OK:  
    DF  Load/Unload Retry Count              0    100  100           0  OK:  


--------[  Windows ]------------------------------------------------------------------------------------------------

  [ Broadcom 802.11n Network Adapter ]

      :
                                          Broadcom 802.11n Network Adapter
                                           802.11 Wireless Ethernet
                                         64-27-37-72-FA-17
                                               
      MTU                                               1500 
                                            0
                                          0

      :
      DNS                                               192.168.1.1

      :
                                                   Broadcom Corporation
                                     http://www.broadcom.com/products
                                       http://www.broadcom.com/support/ethernet_nic
                                     http://www.aida64.com/driver-updates

  [ WiMAX Network Adapter ]

      :
                                          WiMAX Network Adapter
                                           Ethernet
                                         64-16-F0-A1-C2-95
                                              Ethernet 2
                                      100 Mbps
      MTU                                               1400 
                                            752336793 (717.5 )
                                          31380980 (29.9 )

      :
      IP /                                  169.254.74.180 / 255.255.0.0

  [ Wimax ]

      :
                                          Wimax
                                           PPP
                                         00-00-00-00-00-00
                                      100 Mbps
      MTU                                               1480 
                                            748008215 (713.4 )
                                          23391096 (22.3 )

      :
      IP /                                  100.88.127.160 / 255.255.255.255
      DNS                                               82.209.243.241
      DNS                                               82.209.240.241

  [   Wi-Fi Direct () ]

      :
                                            Wi-Fi Direct ()
                                           802.11 Wireless Ethernet
                                         66-27-37-72-FA-17
                                                 * 12
      MTU                                               1500 
                                            0
                                          0

  [   Broadcom NetLink (TM) Gigabit Ethernet ]

      :
                                            Broadcom NetLink (TM) Gigabit Ethernet
                                           Gigabit Ethernet
                                         DC-0E-A1-8F-BC-FF
                                              Ethernet
      MTU                                               1500 
                                            0
                                          0


--------[  PCI / PnP ]----------------------------------------------------------------------------------------------

    Broadcom BCM43227 802.11b/g/n Wireless Network Adapter                            PCI
    Broadcom NetLink BCM57785 PCI-E Gigabit Ethernet Controller                       PCI


--------[ RAS ]---------------------------------------------------------------------------------------------------------

  [ Wimax ]

     :
                                              Wimax
                                                  
                                           pppoe
                                           -   (PPPOE)
                                         1706012952101@beltel.by
                                                    
        /                                 
                                          
                                     
      IP-                                          
      DNS-                                        
      WINS-                                       
                                        TCP/IP
                                    PPP
                                

     :
                           
                                       
                                               
       IP-                               
                                       
       PPP LCP                                
                                 
                              
                            
       MS-                  
                               
                                


--------[  ]----------------------------------------------------------------------------------------------------

     :
                                        http://go.microsoft.com/fwlink/p/?LinkId=255141
                                          http://go.microsoft.com/fwlink/?LinkId=54896
                                       C:\Windows\system32\blank.htm
                               

     :
                                            

    LAN-:
                                            


--------[  ]----------------------------------------------------------------------------------------------------

                  0.0.0.0          0.0.0.0   100.88.127.160  21   100.88.127.160 (Wimax)
           100.88.127.160  255.255.255.255   100.88.127.160  276  100.88.127.160 (Wimax)
                127.0.0.0        255.0.0.0        127.0.0.1  4531  127.0.0.1 (Software Loopback Interface 1)
                127.0.0.1  255.255.255.255        127.0.0.1  4531  127.0.0.1 (Software Loopback Interface 1)
          127.255.255.255  255.255.255.255        127.0.0.1  4531  127.0.0.1 (Software Loopback Interface 1)
              169.254.0.0      255.255.0.0   169.254.74.180  4501  169.254.74.180 (WiMAX Network Adapter)
           169.254.74.180  255.255.255.255   169.254.74.180  4501  169.254.74.180 (WiMAX Network Adapter)
          169.254.255.255  255.255.255.255   169.254.74.180  4501  169.254.74.180 (WiMAX Network Adapter)
                224.0.0.0        240.0.0.0        127.0.0.1  4531  127.0.0.1 (Software Loopback Interface 1)
                224.0.0.0        240.0.0.0   169.254.74.180  4501  169.254.74.180 (WiMAX Network Adapter)
                224.0.0.0        240.0.0.0   100.88.127.160  21   100.88.127.160 (Wimax)
          255.255.255.255  255.255.255.255        127.0.0.1  4531  127.0.0.1 (Software Loopback Interface 1)
          255.255.255.255  255.255.255.255   169.254.74.180  4501  169.254.74.180 (WiMAX Network Adapter)
          255.255.255.255  255.255.255.255   100.88.127.160  276  100.88.127.160 (Wimax)


--------[ IE Cookie ]---------------------------------------------------------------------------------------------------

    2014-10-17 22:53:26   @yandex.ru/
    2014-10-19 11:54:30   @utclient.utorrent.com/
    2014-10-19 11:54:30   @utorrent.com/
    2014-10-19 13:26:03   @c.bing.com/
    2014-10-19 13:57:07   @c.msn.com/
    2014-10-19 13:57:08   @bay406-m.hotmail.com/
    2014-10-20 01:26:24   @engine.ap.bittorrent.com/
    2014-10-20 17:53:53   @~~local~~/C:/Users/Александр%20Пашкевич/AppData/Local/Skype/Apps/login/
    2014-10-20 17:53:55   @bing.com/
    2014-10-20 17:53:55   @msn.com/
    2014-10-20 17:53:56   @skype.com/
    2014-10-21 17:28:19   @bitmedianetwork.com/


--------[   ]--------------------------------------------------------------------------------------------

    2014-10-17 21:40:00  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/Ð¿ÑÐ¾Ð³Ð¸/Windows%208.1/65656.jpg
    2014-10-17 22:08:55  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@http://www.bing.com/search?q=GfxUI.exe+GfxUI&FORM=IE8SRC
    2014-10-17 22:42:41  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/Ð¿ÑÐ¾Ð³Ð¸/ÐÐ»Ñ%20Windows%20%208.1%202014/aimp_3.55.1355
    2014-10-17 22:49:26  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@http://java.com/en/download/installed.jsp
    2014-10-17 22:53:24  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@http://drp.su/afterdownload/textlink.html
    2014-10-17 22:53:29  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@http://d.addelive.com/widget/render/hash/3475bdd4772bec65d0254f8f09923b60
    2014-10-18 07:29:39  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/Ð¤ÐÐÐ¬ÐÐ«/2014/Strag1.Galakt1k1.2014.D.CAMRip.1400Mb.avi
    2014-10-18 17:39:20  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/Iggy_Azalea_feat._Rita_Ora_-_Black_Widow_feat._Rita_Ora_(iPlayer.fm).mp3
    2014-10-18 18:14:32  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/ÐÐ£ÐÐ«ÐÐ/ÑÑÐ°ÑÐ¾Ðµ/mp3/28fc6de8dc94.mp3
    2014-10-18 18:16:06  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/ÐÐ£ÐÐ«ÐÐ/ÑÑÐ°ÑÐ¾Ðµ/mp3/juanes_-_me_enamora.mp3
    2014-10-19 11:15:36  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/3525758.png
    2014-10-19 11:18:25  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/WkybN8t5fyg.jpg
    2014-10-19 11:22:36  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/1409858041_the-sims-4-deluxe-edition-2014-pc.torrent
    2014-10-19 11:22:44  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/454.jpg
    2014-10-19 11:29:30  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/Nelly_Fortado_feat._Juanes_-_Te_Busgue_(iPlayer.fm).mp3
    2014-10-19 11:54:29  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@about:blank
    2014-10-19 11:54:29  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@http://utclient.utorrent.com/plus/utorrent/nonupgraded.html
    2014-10-19 12:06:16  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/Ð¤ÐÐÐ¬ÐÐ«/2014/Dobro.pojalovat.v.NY.2014.P.DVDRip.1400MB.avi
    2014-10-19 12:06:21  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/Ð¤ÐÐÐ¬ÐÐ«/2014/Dymaj.kak.myzh4ina.2014.P.HDRip1.46Gb.avi
    2014-10-19 12:06:29  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/Ð¤ÐÐÐ¬ÐÐ«/2014/Novyj.Kamedi.klab.(388.vypusk).2014.flv
    2014-10-19 12:08:05  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/Ð¤ÐÐÐ¬ÐÐ«/2014/Bobik.v.gostiax.u.Barbosa.1977.Android.MediaClub.mp4
    2014-10-19 12:08:25  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/Ð¤ÐÐÐ¬ÐÐ«/2014/Captain.Phillips.2013_HDRip_dub_[scarabey.org].avi
    2014-10-19 12:22:33  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/1413665245_oboi-dlya-rabochego-stola-raznoe-1680x1050-2560x1600-2014-jpg.torrent
    2014-10-19 12:29:00  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/Enrique_Eglesias_-_Baby_you_are_right_(iPlayer.fm).mp3
    2014-10-19 13:02:26  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/Down/1409858041_the-sims-4-deluxe-edition-2014-pc.torrent
    2014-10-19 13:25:57  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@https://apps.skype.com/home/?uiversion=6.20.0.104&language=ru
    2014-10-19 13:57:08  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@https://m.hotmail.com/
    2014-10-19 13:57:08  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@https://s-static.ak.facebook.com/connect/xd_arbiter/w9JKbyW340G.js?version=41
    2014-10-19 13:57:08  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@javascript:false
    2014-10-19 13:57:24  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@https://apps.skype.com/incalladwidget/
    2014-10-19 13:59:57  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@https://apps.skype.com/chatadwidget/
    2014-10-19 17:07:13  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///F:/ÐÐ¸Ð´ÐµÐ¾/Marvels.Agents.of.S.H.I.E.L.D.S02E04.rus.LostFilm.TV.avi
    2014-10-19 21:48:28  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/ÐÐ£ÐÐ«ÐÐ/ÑÑÐ°ÑÐ¾Ðµ/mp3/b1130b6d7f30.mp3
    2014-10-19 22:35:53  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/BI-2_-_Hipster_CHARTOVA_DYUZHINA._2_mesto_(iPlayer.fm).mp3
    2014-10-19 23:09:44  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@mshelp://windows/?id=5569a7bb-b6c5-4985-b5ab-c3cf224eae69
    2014-10-19 23:12:28  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/ÐÐ£ÐÐ«ÐÐ/NEW/Ð²%20ÑÐ°ÑÐºÑ/7b4e80200acc.mp3
    2014-10-20 00:56:09  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/1413234952_sbornik-100-klubnyh-novinok-2014-mp3.torrent
    2014-10-20 00:56:18  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/1413235004_va-luchshie-hity-v-tvoyu-tachku-2014-mp3.torrent
    2014-10-20 00:56:26  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/1413663641_sleeping-dogs-definitive-edition-update-1-2014-pc.torrent
    2014-10-20 00:57:34  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/ÐÐ£ÐÐ«ÐÐ/ISP/80/200LuchRetro9/002%20Rose%20-%20Magic%20Carillion.mp3
    2014-10-20 00:57:34  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/ÐÐ£ÐÐ«ÐÐ/ISP/80/200LuchRetro9/004%20Pussycat%20-%20Rio.mp3
    2014-10-20 00:57:34  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/ÐÐ£ÐÐ«ÐÐ/ISP/80/200LuchRetro9/006%20Ottawan%20-%20D.i.s.c.o.mp3
    2014-10-20 00:57:35  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/ÐÐ£ÐÐ«ÐÐ/ISP/80/200LuchRetro9/012%20Kaoma%20-%20Lambada.mp3
    2014-10-20 00:57:36  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/ÐÐ£ÐÐ«ÐÐ/ISP/80/200LuchRetro9/022%20Joy%20-%20Touch%20By%20Touch.mp3
    2014-10-20 01:26:48  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/Ð¤ÐÐÐ¬ÐÐ«/2014/Bad.Grandpa.0.5.2014.D.WEB-DLRip.1400Mb.avi
    2014-10-20 14:24:26  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/ÐÐ£ÐÐ«ÐÐ/ÑÑÐ°ÑÐ¾Ðµ/vk/115230500_227072563.mp3
    2014-10-20 14:39:23  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/ÐÐ£ÐÐ«ÐÐ/ISP/Pompeya%20-%20Foursome%20(2012)/07%20-%20Slow.mp3
    2014-10-20 14:42:44  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/ÐÐ£ÐÐ«ÐÐ/ÑÑÐ°ÑÐ¾Ðµ/kioky88i8o/Â®ÐÐ°Ð@.mp3
    2014-10-20 17:34:33  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/Ð¿ÑÐ¾Ð³Ð¸/Windows%208.1/256.jpg
    2014-10-20 17:53:56  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@res://C%3A%5CProgram%20Files%20(x86)%5CSkype%5CPhone%5CSkype.exe/23/skypehome%2Findex.html
    2014-10-20 19:46:13  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/Pitbull%20-%20Celebrate.mp3
    2014-10-20 19:50:49  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/Down/RECORD%20SUPER%20CHART%20#359/02.CALVIN%20HARRIS%20-%20Cuba.mp3
    2014-10-20 19:51:24  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/Down/RECORD%20SUPER%20CHART%20#359/06.ZHU%20-%20Faded%20(Original%20Mix).mp3
    2014-10-20 19:51:55  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/Down/RECORD%20SUPER%20CHART%20#359/09.Kiesza%20-%20Hideaway%20(Extended%20Mix).mp3
    2014-10-20 19:53:32  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/Down/RECORD%20SUPER%20CHART%20#359/14.SCOOTER%20&%20VASSY%20-%20Today.mp3
    2014-10-20 19:59:29  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/Down/Clubmix%20Summer%20(2014)/08%20-%20Pineapple%20-%20New%20World%20Sound%20.mp3
    2014-10-20 20:00:12  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/Down/Clubmix%20Summer%20(2014)/11%20-%20Freedom%20-%20Grades%20.mp3
    2014-10-20 20:00:49  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/Down/Clubmix%20Summer%20(2014)/13%20-%20Aciiid%20-%20Moguai%20.mp3
    2014-10-20 20:00:55  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/Down/Clubmix%20Summer%20(2014)/13%20-%20Ey%20Yo%20(Grades%20Remix)%20-%20Kant%20.mp3
    2014-10-20 20:01:03  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/Down/Clubmix%20Summer%20(2014)/14%20-%20Okay%20-%20Shiba%20San%20.mp3
    2014-10-20 20:01:33  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/Down/Clubmix%20Summer%20(2014)/15%20-%20I%20Love%20You%20-%20Mark%20Wells%20.mp3
    2014-10-20 20:02:16  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/Down/Clubmix%20Summer%20(2014)/18%20-%20Bootcamp%20-%20Jay%20Hardway%20.mp3
    2014-10-20 20:36:30  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/D3g-1weY-JY.jpg
    2014-10-20 20:36:50  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/-RwM-ggEHNE.jpg
    2014-10-20 20:36:56  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/QyojHoiPhO4.jpg
    2014-10-20 20:39:01  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/Nicco%20&%20Chris%20Deelay%20-%20Remember%20(Radio%20Mix).mp3
    2014-10-20 21:15:37  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/Chris%20Deelay%20Feat.%20Nicco%20-%20Remember%20(Malibu%20Drive%20Remix).mp3
    2014-10-20 21:18:05  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/BI-2_Hipster_-_EP_-_Hipster_album_version_(iPlayer.fm).mp3
    2014-10-20 21:43:32  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/Hush.rar
    2014-10-20 21:53:57  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/gray_8_light.zip
    2014-10-20 21:56:56  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/frost_vs_windows7.zip
    2014-10-21 00:16:36  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@mshelp://Help/?id=Microsoft.Windows.Resources.NavFailOnline
    2014-10-21 15:04:40  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/FIFA%2015_1411398670.torrent
    2014-10-21 17:45:29  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/Ð¿ÑÐ¾Ð³Ð¸/Ð¡Ð°Ð¹ÑÑ%20Ð²%20ÐÐ¿ÐµÑÐ°_19_2014.txt
    2014-10-21 19:06:36  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/Marta_Kot_feat._ST_-_Estety_2014_RESPECT_(iPlayer.fm).mp3
    2014-10-21 19:15:37  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/ÐÐ£ÐÐ«ÐÐ/NEW/2014/ÐÐÑ/078%20Lorde%20-%20Team.mp3
    2014-10-21 20:16:37  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/[Torrent-Soft.Net]_Windows%20Embedded%208.1%20with%20Update%20[Russian].torrent
    2014-10-21 20:30:28  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/[Torrent-Soft.Net]_Windows.8.1.by.SmokieBlahBlah.17.09.14.iso.torrent
    2014-10-21 21:16:21  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/Ð¡Ð²ÐµÐ´ÐµÐ½Ð¸Ñ%20Ð¾%20ÑÐ¸ÑÑÐµÐ¼Ðµ.zip
    2014-10-21 22:28:28  %D0%90%D0%BB%D0%B5%D0%BA%D1%81%D0%B0%D0%BD%D0%B4%D1%80 %D0%9F%D0%B0%D1%88%D0%BA%D0%B5%D0%B2%D0%B8%D1%87@file:///D:/Ð¡Ð²ÐµÐ´ÐµÐ½Ð¸Ñ%20Ð¾%20ÑÐ¸ÑÑÐµÐ¼Ðµ.txt


--------[  DirectX ]-----------------------------------------------------------------------------------------------

    amstream.dll                              6.06.9200.16384   Final Retail                         64512  26.07.2012 7:17:50
    bdaplgin.ax                               6.02.9200.16384   Final Retail                         74752  26.07.2012 7:17:41
    d2d1.dll                                  6.02.9200.16384   Final Retail  Russian                     3295232  26.07.2012 7:18:12
    d3d10.dll                                 6.02.9200.16384   Final Retail  English                     1081344  26.07.2012 7:18:12
    d3d10_1.dll                               6.02.9200.16384   Final Retail  English                      145920  26.07.2012 7:18:12
    d3d10_1core.dll                           6.02.9200.16384   Final Retail  English                      238080  26.07.2012 7:18:12
    d3d10core.dll                             6.02.9200.16384   Final Retail  English                      208896  26.07.2012 7:18:12
    d3d10level9.dll                           6.02.9200.16384   Final Retail  English                      555520  26.07.2012 7:18:12
    d3d10warp.dll                             6.02.9200.16384   Final Retail  English                     2034176  26.07.2012 7:18:14
    d3d11.dll                                 6.02.9200.16384   Final Retail  English                     1701376  26.07.2012 7:18:14
    d3d8.dll                                  6.02.9200.16384   Final Retail                    1012736  26.07.2012 7:18:12
    d3d8thk.dll                               6.02.9200.16384   Final Retail                      11776  26.07.2012 7:18:12
    d3d9.dll                                  6.02.9200.16384   Final Retail                    1762304  26.07.2012 7:18:13
    d3dim.dll                                 6.02.9200.16384   Final Retail                     390656  26.07.2012 7:18:13
    d3dim700.dll                              6.02.9200.16384   Final Retail                     858112  26.07.2012 7:18:13
    d3dramp.dll                               6.02.9200.16384   Final Retail                     594944  26.07.2012 7:18:13
    d3dxof.dll                                6.02.9200.16384   Final Retail                      54272  26.07.2012 7:18:13
    ddraw.dll                                 6.02.9200.16384   Final Retail                        474624  26.07.2012 7:18:17
    ddrawex.dll                               6.02.9200.16384   Final Retail                      31232  26.07.2012 7:18:18
    devenum.dll                               6.06.9200.16384   Final Retail                         64512  26.07.2012 7:18:18
    dinput.dll                                6.02.9200.16384   Final Retail                        135168  26.07.2012 7:18:19
    dinput8.dll                               6.02.9200.16384   Final Retail                        144896  26.07.2012 7:18:19
    dmband.dll                                6.02.9200.16384   Final Retail                      30208  26.07.2012 7:18:20
    dmcompos.dll                              6.02.9200.16384   Final Retail                      65024  26.07.2012 7:18:20
    dmime.dll                                 6.02.9200.16384   Final Retail                     180736  26.07.2012 7:18:20
    dmloader.dll                              6.02.9200.16384   Final Retail                      36352  26.07.2012 7:18:20
    dmscript.dll                              6.02.9200.16384   Final Retail                      87040  26.07.2012 7:18:20
    dmstyle.dll                               6.02.9200.16384   Final Retail                     107520  26.07.2012 7:18:20
    dmsynth.dll                               6.02.9200.16384   Final Retail                     107008  26.07.2012 7:18:20
    dmusic.dll                                6.02.9200.16384   Final Retail                         95744  26.07.2012 7:18:20
    dplaysvr.exe                              6.02.9200.16384   Final Retail                         30208  26.07.2012 7:20:45
    dplayx.dll                                6.02.9200.16384   Final Retail                     211968  26.07.2012 7:18:21
    dpmodemx.dll                              6.02.9200.16384   Final Retail                         23552  26.07.2012 7:18:21
    dpnaddr.dll                               6.02.9200.16450   Final Retail                       2560  03.11.2012 9:00:53
    dpnathlp.dll                              6.02.9200.16450   Final Retail  English                       58880  03.11.2012 9:24:36
    dpnet.dll                                 6.02.9200.16450   Final Retail                        375808  03.11.2012 9:24:34
    dpnhpast.dll                              6.02.9200.16450   Final Retail                       8192  03.11.2012 9:24:34
    dpnhupnp.dll                              6.02.9200.16450   Final Retail                       8192  03.11.2012 9:24:34
    dpnlobby.dll                              6.02.9200.16450   Final Retail                       3072  03.11.2012 9:00:54
    dpnsvr.exe                                6.02.9200.16450   Final Retail                         32256  03.11.2012 9:26:12
    dpwsockx.dll                              6.02.9200.16384   Final Retail                         44544  26.07.2012 7:18:21
    dsdmo.dll                                 6.02.9200.16384   Final Retail                     172032  26.07.2012 7:18:22
    dsound.dll                                6.02.9200.16384   Final Retail                        523776  26.07.2012 7:18:22
    dswave.dll                                6.02.9200.16384   Final Retail                      21504  26.07.2012 7:18:22
    dwrite.dll                                6.02.9200.16581   Final Retail  Russian                     1421312  20.10.2014 0:32:24
    dxdiagn.dll                               6.02.9200.16384   Final Retail                        247296  26.07.2012 7:18:23
    dxgi.dll                                  6.02.9200.16384   Final Retail  English                      366080  26.07.2012 7:18:24
    dxmasf.dll                                12.00.9200.16420  Final Retail                       4608  20.09.2012 9:54:47
    dxtmsft.dll                               10.00.9200.16384  Final Retail  English                      358400  26.07.2012 7:18:24
    dxtrans.dll                               10.00.9200.16384  Final Retail  English                      226816  26.07.2012 7:18:26
    dxva2.dll                                 6.02.9200.16384   Final Retail  English                       92160  26.07.2012 7:18:26
    encapi.dll                                6.02.9200.16384   Final Retail                      19968  26.07.2012 7:18:25
    gcdef.dll                                 6.02.9200.16384   Final Retail                        121344  26.07.2012 7:18:32
    iac25_32.ax                               2.00.0005.0053    Final Retail                        197632  26.07.2012 7:17:41
    ir41_32.ax                                6.02.9200.16384   Final Retail                       8704  26.07.2012 7:18:44
    ir41_qc.dll                               6.02.9200.16384   Final Retail                       8192  26.07.2012 7:18:44
    ir41_qcx.dll                              6.02.9200.16384   Final Retail                       8192  26.07.2012 7:18:45
    ir50_32.dll                               6.02.9200.16384   Final Retail                       8704  26.07.2012 7:18:45
    ir50_qc.dll                               6.02.9200.16384   Final Retail                       8192  26.07.2012 7:18:45
    ir50_qcx.dll                              6.02.9200.16384   Final Retail                       8192  26.07.2012 7:18:45
    ivfsrc.ax                                 5.10.0002.0051    Final Retail                        146944  26.07.2012 7:17:41
    joy.cpl                                   6.02.9200.16384   Final Retail                        137728  26.07.2012 7:17:42
    ksproxy.ax                                6.02.9200.16384   Final Retail                        190464  26.07.2012 7:17:41
    kstvtune.ax                               6.02.9200.16384   Final Retail                         84992  26.07.2012 7:17:41
    ksuser.dll                                6.02.9200.16384   Final Retail                         14336  26.07.2012 7:34:26
    kswdmcap.ax                               6.02.9200.16384   Final Retail                        106496  26.07.2012 7:17:41
    ksxbar.ax                                 6.02.9200.16384   Final Retail                         49664  26.07.2012 7:17:41
    mciqtz32.dll                              6.06.9200.16384   Final Retail                         35840  26.07.2012 7:18:55
    mfc40.dll                                 4.01.0000.6140    Final Retail                        924944  26.07.2012 7:18:56
    mfc42.dll                                 6.06.8063.0000    Beta Retail                        1119232  26.07.2012 7:18:57
    Microsoft.DirectX.AudioVideoPlayback.dll  5.04.0000.2904    Final Retail                      53248  10.03.2008 16:19:22
    Microsoft.DirectX.Diagnostics.dll         5.04.0000.2904    Final Retail                      12800  10.03.2008 16:19:22
    Microsoft.DirectX.Direct3D.dll            9.05.0132.0000    Final Retail                     473600  10.03.2008 16:19:22
    Microsoft.DirectX.Direct3DX.dll           5.04.0000.3900    Final Retail                    2676224  10.03.2008 16:19:14
    Microsoft.DirectX.Direct3DX.dll           9.04.0091.0000    Final Retail                    2846720  10.03.2008 16:19:16
    Microsoft.DirectX.Direct3DX.dll           9.05.0132.0000    Final Retail                     563712  10.03.2008 16:19:16
    Microsoft.DirectX.Direct3DX.dll           9.06.0168.0000    Final Retail                     567296  10.03.2008 16:19:16
    Microsoft.DirectX.Direct3DX.dll           9.07.0239.0000    Final Retail                     576000  10.03.2008 16:19:18
    Microsoft.DirectX.Direct3DX.dll           9.08.0299.0000    Final Retail                     577024  10.03.2008 16:19:18
    Microsoft.DirectX.Direct3DX.dll           9.09.0376.0000    Final Retail                     577536  10.03.2008 16:19:18
    Microsoft.DirectX.Direct3DX.dll           9.10.0455.0000    Final Retail                     577536  10.03.2008 16:19:18
    Microsoft.DirectX.Direct3DX.dll           9.11.0519.0000    Final Retail                     578560  10.03.2008 16:19:20
    Microsoft.DirectX.Direct3DX.dll           9.12.0589.0000    Final Retail                     578560  10.03.2008 16:19:22
    Microsoft.DirectX.DirectDraw.dll          5.04.0000.2904    Final Retail                     145920  10.03.2008 16:19:22
    Microsoft.DirectX.DirectInput.dll         5.04.0000.2904    Final Retail                     159232  10.03.2008 16:19:22
    Microsoft.DirectX.DirectPlay.dll          5.04.0000.2904    Final Retail                     364544  10.03.2008 16:19:22
    Microsoft.DirectX.DirectSound.dll         5.04.0000.2904    Final Retail                     178176  10.03.2008 16:19:22
    Microsoft.DirectX.dll                     5.04.0000.2904    Final Retail                     223232  10.03.2008 16:19:22
    mpeg2data.ax                              6.06.9200.16384   Final Retail                         74240  26.07.2012 7:17:41
    mpg2splt.ax                               6.06.9200.16384   Final Retail                     197632  26.07.2012 7:17:41
    msdmo.dll                                 6.06.9200.16384   Final Retail                      30208  26.07.2012 7:19:09
    msdvbnp.ax                                6.06.9200.16384   Final Retail                         60416  26.07.2012 7:17:41
    msvidctl.dll                              6.05.9200.16384   Final Retail                       2293248  26.07.2012 7:19:18
    msyuv.dll                                 6.02.9200.16384   Final Retail                      22528  26.07.2012 7:19:20
    pid.dll                                   6.02.9200.16384   Final Retail                      37376  26.07.2012 7:19:41
    psisdecd.dll                              6.06.9200.16384   Final Retail                        462848  26.07.2012 7:19:46
    psisrndr.ax                               6.06.9200.16384   Final Retail                         77824  26.07.2012 7:17:41
    qasf.dll                                  12.00.9200.16384  Final Retail                     189440  26.07.2012 7:19:46
    qcap.dll                                  6.06.9200.16384   Final Retail                        178688  26.07.2012 7:19:46
    qdv.dll                                   6.06.9200.16384   Final Retail                        273920  26.07.2012 7:19:46
    qdvd.dll                                  6.06.9200.16384   Final Retail                        468992  26.07.2012 7:19:46
    qedit.dll                                 6.06.9200.16384   Final Retail                        496640  26.07.2012 7:19:47
    qedwipes.dll                              6.06.9200.16384   Final Retail                     733184  26.07.2012 6:45:50
    quartz.dll                                6.06.9200.16384   Final Retail                       1376768  26.07.2012 7:19:47
    vbisurf.ax                                6.02.9200.16384   Final Retail                      35328  26.07.2012 7:17:41
    vfwwdm32.dll                              6.02.9200.16384   Final Retail                         54272  26.07.2012 7:20:12
    wsock32.dll                               6.02.9200.16384   Final Retail                         15872  26.07.2012 7:20:39


--------[ DirectX -  ]---------------------------------------------------------------------------------------------

  [   ]

     DirectDraw:
        DirectDraw                           display
        DirectDraw                       
                                       nvumdshim.dll (9.18.13.4411)
                                      Intel(R) HD Graphics 3000

     Direct3D:
                                8, 16, 32
        Z-                          16, 24, 32
      Multisample Anti-Aliasing Modes                   MSAA 2x, MSAA 4x
                               1 x 1
                              8192 x 8192
                              4.1
        DirectX                      DirectX v10.1

     Direct3D:
      Additive Texture Blending                         
      AGP Texturing                                      
      Anisotropic Filtering                             
      Automatic Mipmap Generation                       
      Bilinear Filtering                                
      Compute Shader                                     
      Cubic Environment Mapping                         
      Cubic Filtering                                    
      Decal-Alpha Texture Blending                      
      Decal Texture Blending                            
      Directional Lights                                
      DirectX Texture Compression                        
      DirectX Volumetric Texture Compression             
      Dithering                                         
      Dot3 Texture Blending                             
      Double-Precision Floating-Point                    
      Driver Concurrent Creates                         
      Driver Command Lists                               
      Dynamic Textures                                  
      Edge Anti-Aliasing                                 
      Environmental Bump Mapping                        
      Environmental Bump Mapping + Luminance            
      Factor Alpha Blending                             
      Geometric Hidden-Surface Removal                   
      Geometry Shader                                   
      Guard Band                                        
      Hardware Scene Rasterization                      
      Hardware Transform & Lighting                     
      Legacy Depth Bias                                 
      Map On Default Buffers                             
      Mipmap LOD Bias Adjustments                       
      Mipmapped Cube Textures                           
      Mipmapped Volume Textures                         
      Modulate-Alpha Texture Blending                   
      Modulate Texture Blending                         
      Non-Square Textures                               
      N-Patches                                          
      Perspective Texture Correction                    
      Point Lights                                      
      Point Sampling                                    
      Projective Textures                               
      Quintic Bezier Curves & B-Splines                  
      Range-Based Fog                                   
      Rectangular & Triangular Patches                   
      Rendering In Windowed Mode                        
      Runtime Shader Linking                             
      Scissor Test                                      
      Slope-Scale Based Depth Bias                      
      Specular Flat Shading                             
      Specular Gouraud Shading                          
      Specular Phong Shading                             
      Spherical Mapping                                 
      Spot Lights                                       
      Stencil Buffers                                   
      Sub-Pixel Accuracy                                
      Subtractive Texture Blending                      
      Table Fog                                         
      Texture Alpha Blending                            
      Texture Clamping                                  
      Texture Mirroring                                 
      Texture Transparency                              
      Texture Wrapping                                  
      Tiled Resources                                    
      Triangle Culling                                   
      Trilinear Filtering                               
      Two-Sided Stencil Test                            
      Vertex Alpha Blending                             
      Vertex Fog                                        
      Vertex Tweening                                   
      Volume Textures                                   
      W-Based Fog                                       
      W-Buffering                                        
      Z-Based Fog                                       
      Z-Bias                                            
      Z-Test                                            

      FourCC:
      AI44                                              
      AYUV                                              
      I420                                              
      IA44                                              
      IMC1                                              
      IMC2                                              
      IMC3                                              
      IMC4                                              
      IYUV                                              
      NV11                                              
      NV12                                              
      P208                                              
      UYVY                                              
      VYUY                                              
      YUY2                                              
      YV12                                              
      YVU9                                              
      YVYU                                              

     :
                                                   Intel Corporation
                                     http://www.intel.com/products/chipsets
                                       http://support.intel.com/support/graphics
                                     http://www.aida64.com/driver-updates


--------[ DirectX -  ]----------------------------------------------------------------------------------------------

  [    ]

     DirectSound:
                                        
                                          
                                         1
      ./.          100 / 200000 
                             8 , 16 , , 
                             8 , 16 , , 
       /                   1 / 0
       /        1 / 0
       /           1 / 0
       /   3D-                0 / 0
       /    3D-    0 / 0
       /    3D-       0 / 0

     DirectSound:
                                
                                      
                                    
      DirectSound3D                                      
      Creative EAX 1.0                                   
      Creative EAX 2.0                                   
      Creative EAX 3.0                                   
      Creative EAX 4.0                                   
      Creative EAX 5.0                                   
      I3DL2                                              
      Sensaura ZoomFX                                    

  [  (Realtek High Definition Audio) ]

     DirectSound:
                                       (Realtek High Definition Audio)
                                          {0.0.0.00000000}.{40d36fb4-9376-4610-a3f2-7d1937ea1e2b}
                                         1
      ./.          100 / 200000 
                             8 , 16 , , 
                             8 , 16 , , 
       /                   1 / 0
       /        1 / 0
       /           1 / 0
       /   3D-                0 / 0
       /    3D-    0 / 0
       /    3D-       0 / 0

     DirectSound:
                                
                                      
                                    
      DirectSound3D                                      
      Creative EAX 1.0                                   
      Creative EAX 2.0                                   
      Creative EAX 3.0                                   
      Creative EAX 4.0                                   
      Creative EAX 5.0                                   
      I3DL2                                              
      Sensaura ZoomFX                                    


--------[ DirectX -  ]----------------------------------------------------------------------------------------------

  [  ]

     DirectInput:
                                      
                                           
                                        
                                                     3
      /                                    5

     DirectInput:
                                      
      Alias Device                                      
      Polled Device                                     
      Polled Data Format                                
      Attack Force Feedback                              
      Deadband Force Feedback                            
      Fade Force Feedback                                
      Force Feedback                                     
      Saturation Force Feedback                          
      +/- Force Feedback Coefficients                    
      +/- Force Feedback Saturation                      

  [  ]

     DirectInput:
                                      
                                           
                                        
      /                                    128

     DirectInput:
                                      
      Alias Device                                      
      Polled Device                                     
      Polled Data Format                                
      Attack Force Feedback                              
      Deadband Force Feedback                            
      Fade Force Feedback                                
      Force Feedback                                     
      Saturation Force Feedback                          
      +/- Force Feedback Coefficients                    
      +/- Force Feedback Saturation                      


--------[  Windows ]------------------------------------------------------------------------------------------

  [  ]

    DVD-   -:
      PIONEER DVD-RW DVRTD11RS                          6.2.9200.16384

      :
       (Realtek High Definition Audio)          6.2.9200.16384
       (Realtek High Definition Audio)          6.2.9200.16384

    :
         ()             6.2.9200.16384
        ACPI-  ()6.2.9200.16384

    :
      Intel(R) HD Graphics 3000                         9.17.10.2843
      NVIDIA GeForce GT 630M                            9.18.13.4411

     :
      Hitachi HTS547575A9E384                           6.2.9200.16384

    ,   :
      CyberLink WebCam Virtual Driver                   6.0.5600.0
      NVIDIA Virtual Audio Device (Wave Extensible) (WDM)1.2.25.0
      Realtek High Definition Audio                     6.0.1.6438
       Intel(R)                         6.14.0.3097

    :
        PS/2                       6.2.9200.16548

    :
      ACPI    x64                        6.2.9200.16384

     IDE ATA/ATAPI:
      Intel(R) Mobile Express Chipset SATA AHCI Controller11.5.0.1207

     USB:
      Generic USB Hub                                   6.2.9200.16655
      Generic USB Hub                                   6.2.9200.16655
       USB-                         6.2.9200.16655
       USB-                         6.2.9200.16655
       - Intel(R) 6 Series/C200 Series Chipset Family USB  1C266.2.9200.16655
       - Intel(R) 6 Series/C200 Series Chipset Family USB  1C2D6.2.9200.16655
       USB                           6.2.9200.16655

      :
         ()    6.2.9200.16604

    :
        PnP                         6.2.9200.16548

        :
      ELAN PS/2 Port Smart-Pad                          11.6.11.2
      HID-                               6.2.9200.16548

     :
      Fax                                               6.2.9200.16384
      Microsoft XPS Document Writer                     6.2.9200.16384
                                   6.2.9200.16384
        OneNote 2013                          6.2.9200.16384

    :
      Intel(R) Core(TM) i5-2450M CPU @ 2.50GHz          6.2.9200.16384
      Intel(R) Core(TM) i5-2450M CPU @ 2.50GHz          6.2.9200.16384
      Intel(R) Core(TM) i5-2450M CPU @ 2.50GHz          6.2.9200.16384
      Intel(R) Core(TM) i5-2450M CPU @ 2.50GHz          6.2.9200.16384

     :
      Broadcom 802.11n Network Adapter                  5.100.245.20
      WiMAX Network Adapter                             5.2.116.5008
       Microsoft 6to4                            6.2.9200.16384
       Microsoft ISATAP #2                       6.2.9200.16384
       Microsoft ISATAP #3                       6.2.9200.16384
       Microsoft ISATAP                          6.2.9200.16384
        Wi-Fi Direct ()     6.2.9200.16384
      -   (IKEv2)                 6.2.9200.16384
      -   (IP)                    6.2.9200.16384
      -   (IPv6)                  6.2.9200.16384
      -   (L2TP)                  6.2.9200.16384
      -   (PPPOE)                 6.2.9200.16384
      -   (PPTP)                  6.2.9200.16384
      -   (SSTP)                  6.2.9200.16384
      -   ( )       6.2.9200.16384
        Broadcom NetLink (TM) Gigabit Ethernet14.8.1.12
           ()      6.2.9200.16384
        Microsoft Teredo               6.2.9200.16384

     :
      Broadcom Memory Stick                             1.0.4.0
      Broadcom xD Picture Bus Driver                    1.1.16.0
      Broadcom xD Picture Card Host Controller          1.1.16.0
      CMOS                                         6.2.9200.16384
      Intel(R) 6 Series/C200 Series Chipset Family SMBus Controller - 1C229.2.0.1011
      Intel(R) 82802 Firmware               6.2.9200.16384
      Intel(R) Management Engine Interface              8.1.0.1263
      Microsoft ACPI-                 6.2.9200.16384
      Microsoft ACPI-    6.2.9200.16384
      PCI Express Root Complex                          6.2.9200.16384
      UMBus                    6.2.9200.16384
      WiMAX Bus Driver                                  5.2.116.5006
                               6.2.9200.16384
        ()                 6.2.9200.16384
         ()            6.2.9200.16384
                               6.2.9200.16384
                                          6.2.9200.16384
       Microsoft System Management BIOS          6.2.9200.16384
         ACPI Microsoft Windows   6.2.9200.16384
         ACPI Microsoft Windows   6.2.9200.16384
         ACPI Microsoft Windows   6.2.9200.16384
        ACPI                               6.2.9200.16384
         ACPI                        6.2.9200.16384
       DRAM   Intel(R) Core(TM)    01046.2.9200.16384
       High Definition Audio (Microsoft)      6.2.9200.16384
                         6.2.9200.16384
        PCI Express 1     Intel(R) 6 Series/C200 Series  1C106.2.9200.16384
        PCI Express 2     Intel(R) 6 Series/C200 Series  1C126.2.9200.16384
        PCI Express  Xeon E3-1200/  Intel(R) Core(TM)    01016.2.9200.16384
       ACPI                                       6.2.9200.16384
         ()     6.2.9200.16384
                            6.2.9200.16384
         Plug and Play 6.2.9200.16384
                     6.2.9200.16384
                                   6.2.9200.16384
                                   6.2.9200.16384
                                   6.2.9200.16384
                                   6.2.9200.16384
         Intel(R) HM65 Express,  LPC-  1C496.2.9200.16384
                                          6.2.9200.16384
                                         6.2.9200.16384
         ACPI          6.2.9200.16384
           6.2.9200.16384

        :
                           6.2.9200.16384

      :
                                        6.2.9200.16384
                                        6.2.9200.16384
                                        6.2.9200.16384

     HID (Human Interface Devices):
      USB-                               6.2.9200.16656

      :
      1.3M HD WebCam                                    6.2.9200.16664

    -  :
      Broadcom SD Host Controller                       1.0.0.243

  [ DVD-   - / PIONEER DVD-RW DVRTD11RS ]

     :
                                        PIONEER DVD-RW DVRTD11RS
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          cdrom.inf
       ID                                     SCSI\CdRomPIONEER_DVD-RW_DVRTD11RS1.01
                                     Bus Number 1, Target Id 0, LUN 0

     :
                                                   Pioneer High Fidelity Taiwan co., Ltd.
                                     http://www.pioneer-optical.eu/Products_Index.asp
                                        http://www.pioneer-optical.eu/Download_Firmware-Download.asp
                                     http://www.aida64.com/driver-updates

  [    /  (Realtek High Definition Audio) ]

     :
                                         (Realtek High Definition Audio)
                                            25.07.2012
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          AudioEndpoint.inf
       ID                                     MMDEVAPI\AudioEndpoints

  [    /  (Realtek High Definition Audio) ]

     :
                                         (Realtek High Definition Audio)
                                            25.07.2012
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          AudioEndpoint.inf
       ID                                     MMDEVAPI\AudioEndpoints

  [  /    () ]

     :
                                           ()
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          cmbatt.inf
       ID                                     ACPI\VEN_ACPI&DEV_0003

     :
                                     http://www.aida64.com/driver-updates

  [  /   ACPI-  () ]

     :
                                          ACPI-  ()
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          cmbatt.inf
       ID                                     ACPI\VEN_PNP&DEV_0C0A

     :
                                     http://www.aida64.com/driver-updates

  [  / Intel(R) HD Graphics 3000 ]

     :
                                        Intel(R) HD Graphics 3000
                                            21.08.2012
                                          9.17.10.2843
                                       Intel Corporation
      INF-                                          oem10.inf
       ID                                     PCI\VEN_8086&DEV_0126&SUBSYS_05041025&REV_09
                                     PCI bus 0, device 2, function 0
      PCI-                                    Intel Sandy Bridge-MB - Integrated Graphics Controller (MB GT2 1.3GHz+)

     :
      IRQ                                               65536
                                                  000A0000-000BFFFF
                                                  C0000000-CFFFFFFF
                                                  D1400000-D17FFFFF
                                                    03B0-03BB
                                                    03C0-03DF
                                                    3000-303F

     :
                                                   Intel Corporation
                                     http://www.intel.com/products/chipsets
                                       http://support.intel.com/support/graphics
                                     http://www.aida64.com/driver-updates

  [  / NVIDIA GeForce GT 630M ]

     :
                                        NVIDIA GeForce GT 630M
                                            13.09.2014
                                          9.18.13.4411
                                       NVIDIA
      INF-                                          oem13.inf
       ID                                     PCI\VEN_10DE&DEV_0DE9&SUBSYS_05051025&REV_A1
                                     PCI bus 1, device 0, function 0
      PCI-                                    nVIDIA GeForce GT 630M (Acer) Video Adapter

     :
      IRQ                                               16
                                                  A0000000-AFFFFFFF
                                                  B0000000-B1FFFFFF
                                                  D0000000-D0FFFFFF
                                                    2F80-2FFF

     :
                                                   NVIDIA Corporation
                                     http://www.nvidia.com/page/products.html
                                       http://www.nvidia.com/content/drivers/drivers.asp
                                     http://www.aida64.com/driver-updates

  [   / Hitachi HTS547575A9E384 ]

     :
                                        Hitachi HTS547575A9E384
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          disk.inf
       ID                                     SCSI\DiskATA_____Hitachi_HTS54757A60A
                                     Bus Number 0, Target Id 0, LUN 0

     :
                                                   Hitachi Global Storage Technologies
                                     http://www.hgst.com
                                     http://www.aida64.com/driver-updates

  [ ,    / CyberLink WebCam Virtual Driver ]

     :
                                        CyberLink WebCam Virtual Driver
                                            30.04.2012
                                          6.0.5600.0
                                       CyberLink
      INF-                                          oem23.inf
       ID                                     clwvd

     :
                                     http://www.aida64.com/driver-updates

  [ ,    / NVIDIA Virtual Audio Device (Wave Extensible) (WDM) ]

     :
                                        NVIDIA Virtual Audio Device (Wave Extensible) (WDM)
                                            05.09.2014
                                          1.2.25.0
                                       NVIDIA
      INF-                                          oem14.inf
       ID                                     USB\VID_0955&PID_9000

     :
                                                   NVIDIA Corporation
                                     http://www.nvidia.com/page/mobo.html
                                       http://www.nvidia.com/content/drivers/drivers.asp
                                     http://www.aida64.com/driver-updates

  [ ,    / Realtek High Definition Audio ]

     :
                                        Realtek High Definition Audio
                                            16.08.2011
                                          6.0.1.6438
                                       Realtek Semiconductor Corp.
      INF-                                          oem17.inf
       ID                                     HDAUDIO\FUNC_01&VEN_10EC&DEV_0269&SUBSYS_10250504&REV_1001
                                     Internal High Definition Audio Bus

     :
                                                   Realtek Semiconductor Corp.
                                     http://www.realtek.com.tw/products/productsView.aspx?Langid=1&PNid=8&PFid=14&Level=3&Conn=2
                                       http://www.realtek.com.tw/downloads
                                     http://www.aida64.com/driver-updates

  [ ,    /  Intel(R)   ]

     :
                                         Intel(R)  
                                            19.06.2012
                                          6.14.0.3097
                                       Intel(R) Corporation
      INF-                                          oem11.inf
       ID                                     HDAUDIO\FUNC_01&VEN_8086&DEV_2805&SUBSYS_80860101&REV_1000
                                     Internal High Definition Audio Bus

     :
                                     http://www.aida64.com/driver-updates

  [  /   PS/2 ]

     :
                                          PS/2
                                            21.06.2006
                                          6.2.9200.16548
                                       Microsoft
      INF-                                          keyboard.inf
       ID                                     ACPI\VEN_PNP&DEV_0303

     :
      IRQ                                               01
                                                    0060-0060
                                                    0064-0064

     :
                                     http://www.aida64.com/driver-updates

  [  / ACPI    x64 ]

     :
                                        ACPI    x64
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          hal.inf
       ID                                     acpiapic

  [  IDE ATA/ATAPI / Intel(R) Mobile Express Chipset SATA AHCI Controller ]

     :
                                        Intel(R) Mobile Express Chipset SATA AHCI Controller
                                            09.07.2012
                                          11.5.0.1207
                                       Intel Corporation
      INF-                                          oem9.inf
       ID                                     PCI\VEN_8086&DEV_1C03&SUBSYS_05041025&REV_04
                                     PCI bus 0, device 31, function 2
      PCI-                                    Intel Cougar Point-M PCH - SATA AHCI 6-Port Controller [B-2]

     :
      IRQ                                               65536
                                                  D1A08000-D1A087FF
                                                    3060-307F
                                                    3090-3097
                                                    3098-309F
                                                    30B8-30BB
                                                    30BC-30BF

     :
                                                   Intel Corporation
                                     http://www.intel.com/products/chipsets
                                       http://support.intel.com/support/chipsets
       BIOS                                 http://www.aida64.com/bios-updates
                                     http://www.aida64.com/driver-updates

  [  USB / Generic USB Hub ]

     :
                                        Generic USB Hub
                                            21.06.2006
                                          6.2.9200.16655
                                       Microsoft
      INF-                                          usb.inf
       ID                                     USB\VID_8087&PID_0024&REV_0000
                                     Port_#0001.Hub_#0001

  [  USB / Generic USB Hub ]

     :
                                        Generic USB Hub
                                            21.06.2006
                                          6.2.9200.16655
                                       Microsoft
      INF-                                          usb.inf
       ID                                     USB\VID_8087&PID_0024&REV_0000
                                     Port_#0001.Hub_#0002

  [  USB /  USB- ]

     :
                                         USB-
                                            21.06.2006
                                          6.2.9200.16655
                                       Microsoft
      INF-                                          usbport.inf
       ID                                     USB\ROOT_HUB20&VID8086&PID1C2D&REV0004

  [  USB /  USB- ]

     :
                                         USB-
                                            21.06.2006
                                          6.2.9200.16655
                                       Microsoft
      INF-                                          usbport.inf
       ID                                     USB\ROOT_HUB20&VID8086&PID1C26&REV0004

  [  USB /  - Intel(R) 6 Series/C200 Series Chipset Family USB  1C26 ]

     :
                                         - Intel(R) 6 Series/C200 Series Chipset Family USB  1C26
                                            21.06.2006
                                          6.2.9200.16655
                                       Microsoft
      INF-                                          usbport.inf
       ID                                     PCI\VEN_8086&DEV_1C26&SUBSYS_05041025&REV_04
                                     PCI bus 0, device 29, function 0
      PCI-                                    Intel Cougar Point PCH - USB EHCI #1 Controller [B-2]

     :
      IRQ                                               23
                                                  D1A09000-D1A093FF

     :
                                                   Intel Corporation
                                     http://www.intel.com/products/chipsets
                                       http://support.intel.com/support/chipsets
       BIOS                                 http://www.aida64.com/bios-updates
                                     http://www.aida64.com/driver-updates

  [  USB /  - Intel(R) 6 Series/C200 Series Chipset Family USB  1C2D ]

     :
                                         - Intel(R) 6 Series/C200 Series Chipset Family USB  1C2D
                                            21.06.2006
                                          6.2.9200.16655
                                       Microsoft
      INF-                                          usbport.inf
       ID                                     PCI\VEN_8086&DEV_1C2D&SUBSYS_05041025&REV_04
                                     PCI bus 0, device 26, function 0
      PCI-                                    Intel Cougar Point PCH - USB EHCI #2 Controller [B-2]

     :
      IRQ                                               16
                                                  D1A0A000-D1A0A3FF

     :
                                                   Intel Corporation
                                     http://www.intel.com/products/chipsets
                                       http://support.intel.com/support/chipsets
       BIOS                                 http://www.aida64.com/bios-updates
                                     http://www.aida64.com/driver-updates

  [  USB /  USB  ]

     :
                                         USB 
                                            21.06.2006
                                          6.2.9200.16655
                                       Microsoft
      INF-                                          usb.inf
       ID                                     USB\VID_04F2&PID_B21B&REV_4957
                                     Port_#0003.Hub_#0003

  [    /    () ]

     :
                                           ()
                                            21.06.2006
                                          6.2.9200.16604
                                       Microsoft
      INF-                                          spaceport.inf
       ID                                     Root\Spaceport

     :
                                     http://www.aida64.com/driver-updates

  [  /   PnP ]

     :
                                          PnP
                                            21.06.2006
                                          6.2.9200.16548
                                       Microsoft
      INF-                                          monitor.inf
       ID                                     MONITOR\AUO26EC

     :
                                     http://www.aida64.com/driver-updates

  [      / ELAN PS/2 Port Smart-Pad ]

     :
                                        ELAN PS/2 Port Smart-Pad
                                            01.10.2012
                                          11.6.11.2
                                       ELAN
      INF-                                          oem21.inf
       ID                                     ACPI\VEN_ETD&DEV_0500

     :
      IRQ                                               12

     :
                                     http://www.aida64.com/driver-updates

  [      / HID-  ]

     :
                                        HID- 
                                            21.06.2006
                                          6.2.9200.16548
                                       Microsoft
      INF-                                          msmouse.inf
       ID                                     HID\VID_1BCF&PID_0005&REV_0013

     :
                                     http://www.aida64.com/driver-updates

  [   / Fax ]

     :
                                        Fax
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          PrintQueue.inf
       ID                                     PRINTENUM\microsoftmicrosoft_s7d14

  [   / Microsoft XPS Document Writer ]

     :
                                        Microsoft XPS Document Writer
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          PrintQueue.inf
       ID                                     PRINTENUM\{0f4130dd-19c7-7ab6-99a1-980f03b2ee4e}

  [   /    ]

     :
                                          
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          PrintQueue.inf
       ID                                     PRINTENUM\LocalPrintQueue

  [   /   OneNote 2013 ]

     :
                                          OneNote 2013
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          PrintQueue.inf
       ID                                     PRINTENUM\{3ee39114-30b4-45a4-a109-19d4a40fcc22}

  [  / Intel(R) Core(TM) i5-2450M CPU @ 2.50GHz ]

     :
                                        Intel(R) Core(TM) i5-2450M CPU @ 2.50GHz
                                            21.04.2009
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          cpu.inf
       ID                                     ACPI\GenuineIntel_-_Intel64_Family_6_Model_42

     :
                                                   Intel Corporation
                                     http://ark.intel.com/search.aspx?q=Intel Core i5-2450M
                                     http://www.aida64.com/driver-updates

  [  / Intel(R) Core(TM) i5-2450M CPU @ 2.50GHz ]

     :
                                        Intel(R) Core(TM) i5-2450M CPU @ 2.50GHz
                                            21.04.2009
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          cpu.inf
       ID                                     ACPI\GenuineIntel_-_Intel64_Family_6_Model_42

     :
                                                   Intel Corporation
                                     http://ark.intel.com/search.aspx?q=Intel Core i5-2450M
                                     http://www.aida64.com/driver-updates

  [  / Intel(R) Core(TM) i5-2450M CPU @ 2.50GHz ]

     :
                                        Intel(R) Core(TM) i5-2450M CPU @ 2.50GHz
                                            21.04.2009
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          cpu.inf
       ID                                     ACPI\GenuineIntel_-_Intel64_Family_6_Model_42

     :
                                                   Intel Corporation
                                     http://ark.intel.com/search.aspx?q=Intel Core i5-2450M
                                     http://www.aida64.com/driver-updates

  [  / Intel(R) Core(TM) i5-2450M CPU @ 2.50GHz ]

     :
                                        Intel(R) Core(TM) i5-2450M CPU @ 2.50GHz
                                            21.04.2009
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          cpu.inf
       ID                                     ACPI\GenuineIntel_-_Intel64_Family_6_Model_42

     :
                                                   Intel Corporation
                                     http://ark.intel.com/search.aspx?q=Intel Core i5-2450M
                                     http://www.aida64.com/driver-updates

  [   / Broadcom 802.11n Network Adapter ]

     :
                                        Broadcom 802.11n Network Adapter
                                            13.03.2012
                                          5.100.245.20
                                       Microsoft
      INF-                                          netbc63a.inf
       ID                                     PCI\VEN_14E4&DEV_4358&SUBSYS_E040105B&REV_00
                                     PCI bus 3, device 0, function 0
      PCI-                                    Broadcom BCM43227 802.11b/g/n Wireless Network Adapter

     :
      IRQ                                               17
                                                  D1900000-D1903FFF

      :
                                                   Broadcom Corporation
                                     http://www.broadcom.com/products
                                       http://www.broadcom.com/support/ethernet_nic
                                     http://www.aida64.com/driver-updates

  [   / WiMAX Network Adapter ]

     :
                                        WiMAX Network Adapter
                                            17.12.2009
                                          5.2.116.5008
                                       Beceem Communications Pvt. Ltd
      INF-                                          oem8.inf
       ID                                     BCMBus\BcmWiMAX

     :
                                                    FFFE-FFFE

     :
                                     http://www.aida64.com/driver-updates

  [   /  Microsoft 6to4 ]

     :
                                         Microsoft 6to4
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          nettun.inf
       ID                                     *6to4mp

     :
                                     http://www.aida64.com/driver-updates

  [   /  Microsoft ISATAP #2 ]

     :
                                         Microsoft ISATAP #2
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          nettun.inf
       ID                                     *ISATAP

     :
                                     http://www.aida64.com/driver-updates

  [   /  Microsoft ISATAP #3 ]

     :
                                         Microsoft ISATAP #3
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          nettun.inf
       ID                                     *ISATAP

     :
                                     http://www.aida64.com/driver-updates

  [   /  Microsoft ISATAP ]

     :
                                         Microsoft ISATAP
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          nettun.inf
       ID                                     *ISATAP

     :
                                     http://www.aida64.com/driver-updates

  [   /   Wi-Fi Direct () ]

     :
                                          Wi-Fi Direct ()
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          netvwifimp.inf
       ID                                     {5d624f94-8850-40c3-a3fa-a4fd2080baf3}\vwifimp_wfd
                                     VWiFi Bus 0

     :
                                     http://www.aida64.com/driver-updates

  [   / -   (IKEv2) ]

     :
                                        -   (IKEv2)
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          netavpna.inf
       ID                                     ms_agilevpnminiport

     :
                                     http://www.aida64.com/driver-updates

  [   / -   (IP) ]

     :
                                        -   (IP)
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          netrasa.inf
       ID                                     ms_ndiswanip

     :
                                     http://www.aida64.com/driver-updates

  [   / -   (IPv6) ]

     :
                                        -   (IPv6)
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          netrasa.inf
       ID                                     ms_ndiswanipv6

     :
                                     http://www.aida64.com/driver-updates

  [   / -   (L2TP) ]

     :
                                        -   (L2TP)
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          netrasa.inf
       ID                                     ms_l2tpminiport

     :
                                     http://www.aida64.com/driver-updates

  [   / -   (PPPOE) ]

     :
                                        -   (PPPOE)
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          netrasa.inf
       ID                                     ms_pppoeminiport

     :
                                     http://www.aida64.com/driver-updates

  [   / -   (PPTP) ]

     :
                                        -   (PPTP)
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          netrasa.inf
       ID                                     ms_pptpminiport

     :
                                     http://www.aida64.com/driver-updates

  [   / -   (SSTP) ]

     :
                                        -   (SSTP)
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          netsstpa.inf
       ID                                     ms_sstpminiport

     :
                                     http://www.aida64.com/driver-updates

  [   / -   ( ) ]

     :
                                        -   ( )
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          netrasa.inf
       ID                                     ms_ndiswanbh

     :
                                     http://www.aida64.com/driver-updates

  [   /   Broadcom NetLink (TM) Gigabit Ethernet ]

     :
                                          Broadcom NetLink (TM) Gigabit Ethernet
                                            23.02.2012
                                          14.8.1.12
                                       Microsoft
      INF-                                          netk57a.inf
       ID                                     PCI\VEN_14E4&DEV_16B5&SUBSYS_05041025&REV_10
                                     PCI bus 2, device 0, function 0
      PCI-                                    Broadcom NetLink BCM57785 PCI-E Gigabit Ethernet Controller

     :
      IRQ                                               65536
      IRQ                                               65536
      IRQ                                               65536
      IRQ                                               65536
      IRQ                                               65536
                                                  D1830000-D183FFFF
                                                  D1840000-D184FFFF

      :
                                                   Broadcom Corporation
                                     http://www.broadcom.com/products
                                       http://www.broadcom.com/support/ethernet_nic
                                     http://www.aida64.com/driver-updates

  [   /      () ]

     :
                                             ()
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          kdnic.inf
       ID                                     root\kdnic

     :
                                     http://www.aida64.com/driver-updates

  [   /   Microsoft Teredo ]

     :
                                          Microsoft Teredo
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          nettun.inf
       ID                                     *TEREDO

     :
                                     http://www.aida64.com/driver-updates

  [   / Broadcom Memory Stick ]

     :
                                        Broadcom Memory Stick
                                            18.06.2012
                                          1.0.4.0
                                       Broadcom Corporation
      INF-                                          oem18.inf
       ID                                     PCI\VEN_14E4&DEV_16BE&SUBSYS_05041025&REV_10
                                     PCI bus 2, device 0, function 2
      PCI-                                    Broadcom Memory Stick Card Reader

     :
      IRQ                                               17
                                                  D1810000-D181FFFF

  [   / Broadcom xD Picture Bus Driver ]

     :
                                        Broadcom xD Picture Bus Driver
                                            13.08.2012
                                          1.1.16.0
                                       Broadcom Corporation
      INF-                                          oem20.inf
       ID                                     PCI\VEN_14E4&DEV_16BF&SUBSYS_05041025&REV_10
                                     PCI bus 2, device 0, function 3
      PCI-                                    Broadcom xD Card Reader

     :
      IRQ                                               17
                                                  D1820000-D182FFFF

  [   / Broadcom xD Picture Card Host Controller ]

     :
                                        Broadcom xD Picture Card Host Controller
                                            13.08.2012
                                          1.1.16.0
                                       Broadcom Corporation
      INF-                                          oem20.inf
       ID                                     b57xdbd\xd-sc
                                     BRCM_loc 0

     :
      IRQ                                               09

  [   / CMOS   ]

     :
                                        CMOS  
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          machine.inf
       ID                                     ACPI\VEN_PNP&DEV_0B00

     :
      IRQ                                               08
                                                    0070-0077

  [   / Intel(R) 6 Series/C200 Series Chipset Family SMBus Controller - 1C22 ]

     :
                                        Intel(R) 6 Series/C200 Series Chipset Family SMBus Controller - 1C22
                                            10.09.2010
                                          9.2.0.1011
                                       Intel
      INF-                                          oem12.inf
       ID                                     PCI\VEN_8086&DEV_1C22&SUBSYS_05041025&REV_04
                                     PCI bus 0, device 31, function 3
      PCI-                                    Intel Cougar Point PCH - SMBus Controller [B-2]

     :
                                                   Intel Corporation
                                     http://www.intel.com/products/chipsets
                                       http://support.intel.com/support/chipsets
       BIOS                                 http://www.aida64.com/bios-updates
                                     http://www.aida64.com/driver-updates

  [   / Intel(R) 82802 Firmware  ]

     :
                                        Intel(R) 82802 Firmware 
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          machine.inf
       ID                                     ACPI\VEN_INT&DEV_0800

     :
                                                   Intel Corporation
                                     http://www.intel.com/products/chipsets
                                       http://support.intel.com/support/chipsets
       BIOS                                 http://www.aida64.com/bios-updates
                                     http://www.aida64.com/driver-updates

  [   / Intel(R) Management Engine Interface ]

     :
                                        Intel(R) Management Engine Interface
                                            02.07.2012
                                          8.1.0.1263
                                       Intel
      INF-                                          oem16.inf
       ID                                     PCI\VEN_8086&DEV_1C3A&SUBSYS_05041025&REV_04
                                     PCI bus 0, device 22, function 0
      PCI-                                    Intel Cougar Point PCH - Manageability Engine Interface 1 [B-2]

     :
      IRQ                                               16
                                                  D1A04000-D1A0400F

     :
                                                   Intel Corporation
                                     http://www.intel.com/products/chipsets
                                       http://support.intel.com/support/chipsets
       BIOS                                 http://www.aida64.com/bios-updates
                                     http://www.aida64.com/driver-updates

  [   / Microsoft ACPI-  ]

     :
                                        Microsoft ACPI- 
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          acpi.inf
       ID                                     ACPI_HAL\PNP0C08
      PnP-                                    ACPI Driver/BIOS

     :
      IRQ                                               100
      IRQ                                               101
      IRQ                                               102
      IRQ                                               103
      IRQ                                               104
      IRQ                                               105
      IRQ                                               106
      IRQ                                               107
      IRQ                                               108
      IRQ                                               109
      IRQ                                               110
      IRQ                                               111
      IRQ                                               112
      IRQ                                               113
      IRQ                                               114
      IRQ                                               115
      IRQ                                               116
      IRQ                                               117
      IRQ                                               118
      IRQ                                               119
      IRQ                                               120
      IRQ                                               121
      IRQ                                               122
      IRQ                                               123
      IRQ                                               124
      IRQ                                               125
      IRQ                                               126
      IRQ                                               127
      IRQ                                               128
      IRQ                                               129
      IRQ                                               130
      IRQ                                               131
      IRQ                                               132
      IRQ                                               133
      IRQ                                               134
      IRQ                                               135
      IRQ                                               136
      IRQ                                               137
      IRQ                                               138
      IRQ                                               139
      IRQ                                               140
      IRQ                                               141
      IRQ                                               142
      IRQ                                               143
      IRQ                                               144
      IRQ                                               145
      IRQ                                               146
      IRQ                                               147
      IRQ                                               148
      IRQ                                               149
      IRQ                                               150
      IRQ                                               151
      IRQ                                               152
      IRQ                                               153
      IRQ                                               154
      IRQ                                               155
      IRQ                                               156
      IRQ                                               157
      IRQ                                               158
      IRQ                                               159
      IRQ                                               160
      IRQ                                               161
      IRQ                                               162
      IRQ                                               163
      IRQ                                               164
      IRQ                                               165
      IRQ                                               166
      IRQ                                               167
      IRQ                                               168
      IRQ                                               169
      IRQ                                               170
      IRQ                                               171
      IRQ                                               172
      IRQ                                               173
      IRQ                                               174
      IRQ                                               175
      IRQ                                               176
      IRQ                                               177
      IRQ                                               178
      IRQ                                               179
      IRQ                                               180
      IRQ                                               181
      IRQ                                               182
      IRQ                                               183
      IRQ                                               184
      IRQ                                               185
      IRQ                                               186
      IRQ                                               187
      IRQ                                               188
      IRQ                                               189
      IRQ                                               190
      IRQ                                               191
      IRQ                                               256
      IRQ                                               257
      IRQ                                               258
      IRQ                                               259
      IRQ                                               260
      IRQ                                               261
      IRQ                                               262
      IRQ                                               263
      IRQ                                               264
      IRQ                                               265
      IRQ                                               266
      IRQ                                               267
      IRQ                                               268
      IRQ                                               269
      IRQ                                               270
      IRQ                                               271
      IRQ                                               272
      IRQ                                               273
      IRQ                                               274
      IRQ                                               275
      IRQ                                               276
      IRQ                                               277
      IRQ                                               278
      IRQ                                               279
      IRQ                                               280
      IRQ                                               281
      IRQ                                               282
      IRQ                                               283
      IRQ                                               284
      IRQ                                               285
      IRQ                                               286
      IRQ                                               287
      IRQ                                               288
      IRQ                                               289
      IRQ                                               290
      IRQ                                               291
      IRQ                                               292
      IRQ                                               293
      IRQ                                               294
      IRQ                                               295
      IRQ                                               296
      IRQ                                               297
      IRQ                                               298
      IRQ                                               299
      IRQ                                               300
      IRQ                                               301
      IRQ                                               302
      IRQ                                               303
      IRQ                                               304
      IRQ                                               305
      IRQ                                               306
      IRQ                                               307
      IRQ                                               308
      IRQ                                               309
      IRQ                                               310
      IRQ                                               311
      IRQ                                               312
      IRQ                                               313
      IRQ                                               314
      IRQ                                               315
      IRQ                                               316
      IRQ                                               317
      IRQ                                               318
      IRQ                                               319
      IRQ                                               320
      IRQ                                               321
      IRQ                                               322
      IRQ                                               323
      IRQ                                               324
      IRQ                                               325
      IRQ                                               326
      IRQ                                               327
      IRQ                                               328
      IRQ                                               329
      IRQ                                               330
      IRQ                                               331
      IRQ                                               332
      IRQ                                               333
      IRQ                                               334
      IRQ                                               335
      IRQ                                               336
      IRQ                                               337
      IRQ                                               338
      IRQ                                               339
      IRQ                                               340
      IRQ                                               341
      IRQ                                               342
      IRQ                                               343
      IRQ                                               344
      IRQ                                               345
      IRQ                                               346
      IRQ                                               347
      IRQ                                               348
      IRQ                                               349
      IRQ                                               350
      IRQ                                               351
      IRQ                                               352
      IRQ                                               353
      IRQ                                               354
      IRQ                                               355
      IRQ                                               356
      IRQ                                               357
      IRQ                                               358
      IRQ                                               359
      IRQ                                               360
      IRQ                                               361
      IRQ                                               362
      IRQ                                               363
      IRQ                                               364
      IRQ                                               365
      IRQ                                               366
      IRQ                                               367
      IRQ                                               368
      IRQ                                               369
      IRQ                                               370
      IRQ                                               371
      IRQ                                               372
      IRQ                                               373
      IRQ                                               374
      IRQ                                               375
      IRQ                                               376
      IRQ                                               377
      IRQ                                               378
      IRQ                                               379
      IRQ                                               380
      IRQ                                               381
      IRQ                                               382
      IRQ                                               383
      IRQ                                               384
      IRQ                                               385
      IRQ                                               386
      IRQ                                               387
      IRQ                                               388
      IRQ                                               389
      IRQ                                               390
      IRQ                                               391
      IRQ                                               392
      IRQ                                               393
      IRQ                                               394
      IRQ                                               395
      IRQ                                               396
      IRQ                                               397
      IRQ                                               398
      IRQ                                               399
      IRQ                                               400
      IRQ                                               401
      IRQ                                               402
      IRQ                                               403
      IRQ                                               404
      IRQ                                               405
      IRQ                                               406
      IRQ                                               407
      IRQ                                               408
      IRQ                                               409
      IRQ                                               410
      IRQ                                               411
      IRQ                                               412
      IRQ                                               413
      IRQ                                               414
      IRQ                                               415
      IRQ                                               416
      IRQ                                               417
      IRQ                                               418
      IRQ                                               419
      IRQ                                               420
      IRQ                                               421
      IRQ                                               422
      IRQ                                               423
      IRQ                                               424
      IRQ                                               425
      IRQ                                               426
      IRQ                                               427
      IRQ                                               428
      IRQ                                               429
      IRQ                                               430
      IRQ                                               431
      IRQ                                               432
      IRQ                                               433
      IRQ                                               434
      IRQ                                               435
      IRQ                                               436
      IRQ                                               437
      IRQ                                               438
      IRQ                                               439
      IRQ                                               440
      IRQ                                               441
      IRQ                                               442
      IRQ                                               443
      IRQ                                               444
      IRQ                                               445
      IRQ                                               446
      IRQ                                               447
      IRQ                                               448
      IRQ                                               449
      IRQ                                               450
      IRQ                                               451
      IRQ                                               452
      IRQ                                               453
      IRQ                                               454
      IRQ                                               455
      IRQ                                               456
      IRQ                                               457
      IRQ                                               458
      IRQ                                               459
      IRQ                                               460
      IRQ                                               461
      IRQ                                               462
      IRQ                                               463
      IRQ                                               464
      IRQ                                               465
      IRQ                                               466
      IRQ                                               467
      IRQ                                               468
      IRQ                                               469
      IRQ                                               470
      IRQ                                               471
      IRQ                                               472
      IRQ                                               473
      IRQ                                               474
      IRQ                                               475
      IRQ                                               476
      IRQ                                               477
      IRQ                                               478
      IRQ                                               479
      IRQ                                               480
      IRQ                                               481
      IRQ                                               482
      IRQ                                               483
      IRQ                                               484
      IRQ                                               485
      IRQ                                               486
      IRQ                                               487
      IRQ                                               488
      IRQ                                               489
      IRQ                                               490
      IRQ                                               491
      IRQ                                               492
      IRQ                                               493
      IRQ                                               494
      IRQ                                               495
      IRQ                                               496
      IRQ                                               497
      IRQ                                               498
      IRQ                                               499
      IRQ                                               500
      IRQ                                               501
      IRQ                                               502
      IRQ                                               503
      IRQ                                               504
      IRQ                                               505
      IRQ                                               506
      IRQ                                               507
      IRQ                                               508
      IRQ                                               509
      IRQ                                               510
      IRQ                                               511
      IRQ                                               81
      IRQ                                               82
      IRQ                                               83
      IRQ                                               84
      IRQ                                               85
      IRQ                                               86
      IRQ                                               87
      IRQ                                               88
      IRQ                                               89
      IRQ                                               90
      IRQ                                               91
      IRQ                                               92
      IRQ                                               93
      IRQ                                               94
      IRQ                                               95
      IRQ                                               96
      IRQ                                               97
      IRQ                                               98
      IRQ                                               99

  [   / Microsoft ACPI-   ]

     :
                                        Microsoft ACPI-  
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          machine.inf
       ID                                     ACPI\VEN_PNP&DEV_0C09

     :
                                                    0062-0062
                                                    0066-0066

  [   / PCI Express Root Complex ]

     :
                                        PCI Express Root Complex
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          machine.inf
       ID                                     ACPI\VEN_PNP&DEV_0A08

     :
                                                  000A0000-000BFFFF
                                                  9FA00000-FEAFFFFF
                                                    0000-0CF7
                                                    0D00-FFFF

  [   / UMBus    ]

     :
                                        UMBus   
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          umbus.inf
       ID                                     root\umbus

  [   / WiMAX Bus Driver ]

     :
                                        WiMAX Bus Driver
                                            20.11.2009
                                          5.2.116.5006
                                       Beceem Communications Pvt. Ltd.
      INF-                                          oem7.inf
       ID                                     USB\VID_198F&PID_0220&REV_0001
                                     Port_#0002.Hub_#0004

  [   /   ]

     :
                                         
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          machine.inf
       ID                                     ACPI\VEN_PNP&DEV_0C04

  [   /   () ]

     :
                                          ()
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          basicdisplay.inf
       ID                                     ROOT\BasicDisplay

  [   /    () ]

     :
                                           ()
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          basicrender.inf
       ID                                     ROOT\BasicRender

  [   /    ]

     :
                                          
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          machine.inf
       ID                                     ACPI\VEN_PNP&DEV_0103

  [   /   ]

     :
                                         
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          volmgr.inf
       ID                                     ROOT\VOLMGR

  [   /  Microsoft System Management BIOS ]

     :
                                         Microsoft System Management BIOS
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          mssmbios.inf
       ID                                     ROOT\mssmbios

  [   /    ACPI Microsoft Windows ]

     :
                                           ACPI Microsoft Windows
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          wmiacpi.inf
       ID                                     ACPI\VEN_PNP&DEV_0C14

  [   /    ACPI Microsoft Windows ]

     :
                                           ACPI Microsoft Windows
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          wmiacpi.inf
       ID                                     ACPI\VEN_PNP&DEV_0C14

  [   /    ACPI Microsoft Windows ]

     :
                                           ACPI Microsoft Windows
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          wmiacpi.inf
       ID                                     ACPI\VEN_pnp&DEV_0c14

  [   /   ACPI ]

     :
                                          ACPI
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          machine.inf
       ID                                     ACPI\VEN_PNP&DEV_0C0C

  [   /    ACPI ]

     :
                                           ACPI
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          machine.inf
       ID                                     ACPI\VEN_PNP&DEV_0C0E

  [   /  DRAM   Intel(R) Core(TM)    0104 ]

     :
                                         DRAM   Intel(R) Core(TM)    0104
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          machine.inf
       ID                                     PCI\VEN_8086&DEV_0104&SUBSYS_05041025&REV_09
                                     PCI bus 0, device 0, function 0
      PCI-                                    Intel Sandy Bridge-MB - Host Bridge/DRAM Controller

  [   /  High Definition Audio (Microsoft) ]

     :
                                         High Definition Audio (Microsoft)
                                            25.07.2012
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          hdaudbus.inf
       ID                                     PCI\VEN_8086&DEV_1C20&SUBSYS_05041025&REV_04
                                     PCI bus 0, device 27, function 0
      PCI-                                    Intel Cougar Point PCH - High Definition Audio Controller [B-2]

     :
      IRQ                                               22
                                                  D1A00000-D1A03FFF

  [   /      ]

     :
                                            
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          machine.inf
       ID                                     ACPI\VEN_PNP&DEV_0200

  [   /   PCI Express 1     Intel(R) 6 Series/C200 Series  1C10 ]

     :
                                          PCI Express 1     Intel(R) 6 Series/C200 Series  1C10
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          machine.inf
       ID                                     PCI\VEN_8086&DEV_1C10&SUBSYS_05041025&REV_B4
                                     PCI bus 0, device 28, function 0
      PCI-                                    Intel Cougar Point PCH - PCI Express Port 1 [B-2]

     :
      IRQ                                               17
                                                  D1800000-D18FFFFF

     :
                                                   Intel Corporation
                                     http://www.intel.com/products/chipsets
                                       http://support.intel.com/support/chipsets
       BIOS                                 http://www.aida64.com/bios-updates
                                     http://www.aida64.com/driver-updates

  [   /   PCI Express 2     Intel(R) 6 Series/C200 Series  1C12 ]

     :
                                          PCI Express 2     Intel(R) 6 Series/C200 Series  1C12
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          machine.inf
       ID                                     PCI\VEN_8086&DEV_1C12&SUBSYS_05041025&REV_B4
                                     PCI bus 0, device 28, function 1
      PCI-                                    Intel Cougar Point PCH - PCI Express Port 2 [B-2]

     :
      IRQ                                               16
                                                  D1900000-D19FFFFF

     :
                                                   Intel Corporation
                                     http://www.intel.com/products/chipsets
                                       http://support.intel.com/support/chipsets
       BIOS                                 http://www.aida64.com/bios-updates
                                     http://www.aida64.com/driver-updates

  [   /   PCI Express  Xeon E3-1200/  Intel(R) Core(TM)    0101 ]

     :
                                          PCI Express  Xeon E3-1200/  Intel(R) Core(TM)    0101
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          machine.inf
       ID                                     PCI\VEN_8086&DEV_0101&SUBSYS_05041025&REV_09
                                     PCI bus 0, device 1, function 0
      PCI-                                    Intel Sandy Bridge - PCI Express Controller

     :
      IRQ                                               16
                                                  A0000000-B1FFFFFF
                                                  D0000000-D10FFFFF
                                                    2000-2FFF

  [   /  ACPI ]

     :
                                         ACPI
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          machine.inf
       ID                                     ACPI\VEN_PNP&DEV_0C0D

  [   /    () ]

     :
                                           ()
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          vdrvroot.inf
       ID                                     ROOT\vdrvroot

  [   /    ]

     :
                                          
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          CompositeBus.inf
       ID                                     ROOT\CompositeBus

  [   /    Plug and Play ]

     :
                                           Plug and Play
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          swenum.inf
       ID                                     root\swenum

  [   /    ]

     :
                                          
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          machine.inf
       ID                                     ACPI\VEN_PNP&DEV_0000

  [   /    ]

     :
                                          
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          machine.inf
       ID                                     ACPI\VEN_INT&DEV_340E

  [   /    ]

     :
                                          
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          machine.inf
       ID                                     ACPI\VEN_PNP&DEV_0C02

  [   /    ]

     :
                                          
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          machine.inf
       ID                                     ACPI\VEN_PNP&DEV_0C02

  [   /    ]

     :
                                          
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          machine.inf
       ID                                     ACPI\VEN_INT&DEV_3F0D

  [   /    Intel(R) HM65 Express,  LPC-  1C49 ]

     :
                                           Intel(R) HM65 Express,  LPC-  1C49
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          machine.inf
       ID                                     PCI\VEN_8086&DEV_1C49&SUBSYS_05041025&REV_04
                                     PCI bus 0, device 31, function 0
      PCI-                                    Intel HM65 PCH - LPC Interface Controller [B-2]

  [   /   ]

     :
                                         
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          machine.inf
       ID                                     ACPI\VEN_PNP&DEV_0C01

  [   /   ]

     :
                                         
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          machine.inf
       ID                                     ACPI\VEN_PNP&DEV_0100

  [   /    ACPI ]

     :
                                           ACPI
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          machine.inf
       ID                                     ACPI\VEN_Fixe&DEV_dButton

  [   /       ]

     :
                                             
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          rdpbus.inf
       ID                                     ROOT\RDPBUS

  [      /     ]

     :
                                           
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          volsnap.inf
       ID                                     STORAGE\VolumeSnapshot

  [    /   ]

     :
                                         
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          volume.inf
       ID                                     STORAGE\Volume

  [    /   ]

     :
                                         
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          volume.inf
       ID                                     STORAGE\Volume

  [    /   ]

     :
                                         
                                            21.06.2006
                                          6.2.9200.16384
                                       Microsoft
      INF-                                          volume.inf
       ID                                     STORAGE\Volume

  [  HID (Human Interface Devices) / USB-  ]

     :
                                        USB- 
                                            21.06.2006
                                          6.2.9200.16656
                                       Microsoft
      INF-                                          input.inf
       ID                                     USB\VID_1BCF&PID_0005&REV_0013
                                     Port_#0003.Hub_#0004

     :
                                     http://www.aida64.com/driver-updates

  [    / 1.3M HD WebCam ]

     :
                                        1.3M HD WebCam
                                            21.06.2006
                                          6.2.9200.16664
                                       
      INF-                                          usbvideo.inf
       ID                                     USB\VID_04F2&PID_B21B&REV_4957&MI_00
                                     0000.001a.0000.001.003.000.000.000.000

     :
                                     http://www.aida64.com/driver-updates

  [ -   / Broadcom SD Host Controller ]

     :
                                        Broadcom SD Host Controller
                                            14.08.2012
                                          1.0.0.243
                                       Broadcom Corporation
      INF-                                          oem19.inf
       ID                                     PCI\VEN_14E4&DEV_16BC&SUBSYS_05041025&REV_10
                                     PCI bus 2, device 0, function 1
      PCI-                                    Broadcom SD Card Reader

     :
      IRQ                                               17
                                                  D1800000-D180FFFF

     :
                                     http://www.aida64.com/driver-updates


--------[   ]---------------------------------------------------------------------------------------

     PCI:
       3,  0,  0                   Broadcom BCM43227 802.11b/g/n Wireless Network Adapter
       2,  0,  2                   Broadcom Memory Stick Card Reader
       2,  0,  0                   Broadcom NetLink BCM57785 PCI-E Gigabit Ethernet Controller
       2,  0,  1                   Broadcom SD Card Reader
       2,  0,  3                   Broadcom xD Card Reader
       0,  27,  0                  Intel Cougar Point PCH - High Definition Audio Controller [B-2]
       0,  22,  0                  Intel Cougar Point PCH - Manageability Engine Interface 1 [B-2]
       0,  28,  0                  Intel Cougar Point PCH - PCI Express Port 1 [B-2]
       0,  28,  1                  Intel Cougar Point PCH - PCI Express Port 2 [B-2]
       0,  31,  3                  Intel Cougar Point PCH - SMBus Controller [B-2]
       0,  31,  6                  Intel Cougar Point PCH - Thermal Management Controller [B-2]
       0,  29,  0                  Intel Cougar Point PCH - USB EHCI #1 Controller [B-2]
       0,  26,  0                  Intel Cougar Point PCH - USB EHCI #2 Controller [B-2]
       0,  31,  2                  Intel Cougar Point-M PCH - SATA AHCI 6-Port Controller [B-2]
       0,  31,  0                  Intel HM65 PCH - LPC Interface Controller [B-2]
       0,  1,  0                   Intel Sandy Bridge - PCI Express Controller
       0,  0,  0                   Intel Sandy Bridge-MB - Host Bridge/DRAM Controller
       0,  2,  0                   Intel Sandy Bridge-MB - Integrated Graphics Controller (MB GT2 1.3GHz+)

     PnP:
      PNP0303                                           101/102-Key or MS Natural Keyboard
      PNP0C08                                           ACPI Driver/BIOS
      PNP0C14                                           ACPI Management Interface
      PNP0C14                                           ACPI Management Interface
      PNP0C14                                           ACPI Management Interface
      PNP0A08                                           ACPI Three-wire Device Bus
      PNP0C0A                                           Control Method Battery
      PNP0200                                           DMA Controller
      ETD0500                                           ELAN PS/2 Port Smart-Pad
      PNP0C09                                           Embedded Controller Device
      PNP0103                                           High Precision Event Timer
      INT0800                                           Intel Flash EEPROM
      INT340E                                           Intel System Device
      INT3F0D                                           Intel Watchdog Timer
      GENUINEINTEL_-_INTEL64_FAMILY_6_MODEL_42_-________INTEL(R)_CORE(TM)_I5-2450M_CPU_@_2.50GHZIntel(R) Core(TM) i5-2450M CPU @ 2.50GHz
      GENUINEINTEL_-_INTEL64_FAMILY_6_MODEL_42_-________INTEL(R)_CORE(TM)_I5-2450M_CPU_@_2.50GHZIntel(R) Core(TM) i5-2450M CPU @ 2.50GHz
      GENUINEINTEL_-_INTEL64_FAMILY_6_MODEL_42_-________INTEL(R)_CORE(TM)_I5-2450M_CPU_@_2.50GHZIntel(R) Core(TM) i5-2450M CPU @ 2.50GHz
      GENUINEINTEL_-_INTEL64_FAMILY_6_MODEL_42_-________INTEL(R)_CORE(TM)_I5-2450M_CPU_@_2.50GHZIntel(R) Core(TM) i5-2450M CPU @ 2.50GHz
      PNP0C0D                                           Lid
      ACPI0003                                          Microsoft AC Adapter
      PNP0C04                                           Numeric Data Processor
      PNP0C0C                                           Power Button
      PNP0000                                           Programmable Interrupt Controller
      PNP0B00                                           Real-Time Clock
      PNP0C0E                                           Sleep Button
      PNP0C01                                           System Board Extension
      PNP0100                                           System Timer
      PNP0C02                                           Thermal Monitoring ACPI Device
      PNP0C02                                           Thermal Monitoring ACPI Device
      6TO4MP                                             Microsoft 6to4
      ISATAP                                             Microsoft ISATAP #2
      ISATAP                                             Microsoft ISATAP #3
      ISATAP                                             Microsoft ISATAP
      TEREDO                                              Microsoft Teredo
      FIXEDBUTTON                                          ACPI

     USB:
      04F2 B21B                                         1.3M HD WebCam
      8087 0024                                         Generic USB Hub
      8087 0024                                         Generic USB Hub
      1BCF 0005                                         USB- 
      198F 0220                                         WiMAX Bus Driver
      04F2 B21B                                          USB 


--------[  PCI ]----------------------------------------------------------------------------------------------

  [ Broadcom BCM43227 802.11b/g/n Wireless Network Adapter ]

     :
                                      Broadcom BCM43227 802.11b/g/n Wireless Network Adapter
                                                 PCI Express 1.0 x1
       /  /                        3 / 0 / 0
      ID                                      14E4-4358
                               105B-E040
                                         0280 (Network Controller)
                                                  00
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

  [ Broadcom Memory Stick Card Reader ]

     :
                                      Broadcom Memory Stick Card Reader
                                                 PCI Express 2.0 x1
       /  /                        2 / 0 / 2
      ID                                      14E4-16BE
                               1025-0504
                                         0880 (Base System Peripheral)
                                                  10
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

  [ Broadcom NetLink BCM57785 PCI-E Gigabit Ethernet Controller ]

     :
                                      Broadcom NetLink BCM57785 PCI-E Gigabit Ethernet Controller
                                                 PCI Express 2.0 x1
       /  /                        2 / 0 / 0
      ID                                      14E4-16B5
                               1025-0504
                                         0200 (Ethernet Controller)
                                                  10
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

      :
                                                   Broadcom Corporation
                                     http://www.broadcom.com/products
                                       http://www.broadcom.com/support/ethernet_nic
                                     http://www.aida64.com/driver-updates

  [ Broadcom SD Card Reader ]

     :
                                      Broadcom SD Card Reader
                                                 PCI Express 2.0 x1
       /  /                        2 / 0 / 1
      ID                                      14E4-16BC
                               1025-0504
                                         0805 (SD Host Controller)
                                                  10
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

  [ Broadcom xD Card Reader ]

     :
                                      Broadcom xD Card Reader
                                                 PCI Express 2.0 x1
       /  /                        2 / 0 / 3
      ID                                      14E4-16BF
                               1025-0504
                                         0880 (Base System Peripheral)
                                                  10
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

  [ Intel Cougar Point PCH - High Definition Audio Controller [B-2] ]

     :
                                      Intel Cougar Point PCH - High Definition Audio Controller [B-2]
                                                 PCI Express 1.0
       /  /                        0 / 27 / 0
      ID                                      8086-1C20
                               1025-0504
                                         0403 (High Definition Audio)
                                                  04
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

  [ Intel Cougar Point PCH - Manageability Engine Interface 1 [B-2] ]

     :
                                      Intel Cougar Point PCH - Manageability Engine Interface 1 [B-2]
                                                 PCI
       /  /                        0 / 22 / 0
      ID                                      8086-1C3A
                               1025-0504
                                         0780 (Communications Controller)
                                                  04
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

  [ Intel Cougar Point PCH - PCI Express Port 1 [B-2] ]

     :
                                      Intel Cougar Point PCH - PCI Express Port 1 [B-2]
                                                 PCI
       /  /                        0 / 28 / 0
      ID                                      8086-1C10
                               0000-0000
                                         0604 (PCI/PCI Bridge)
                                                  B4
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

  [ Intel Cougar Point PCH - PCI Express Port 2 [B-2] ]

     :
                                      Intel Cougar Point PCH - PCI Express Port 2 [B-2]
                                                 PCI
       /  /                        0 / 28 / 1
      ID                                      8086-1C12
                               0000-0000
                                         0604 (PCI/PCI Bridge)
                                                  B4
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

  [ Intel Cougar Point PCH - SMBus Controller [B-2] ]

     :
                                      Intel Cougar Point PCH - SMBus Controller [B-2]
                                                 PCI
       /  /                        0 / 31 / 3
      ID                                      8086-1C22
                               1025-0504
                                         0C05 (SMBus Controller)
                                                  04
      Fast Back-to-Back Transactions                    , 

     :
      66-                                     
      Bus Mastering                                     

  [ Intel Cougar Point PCH - Thermal Management Controller [B-2] ]

     :
                                      Intel Cougar Point PCH - Thermal Management Controller [B-2]
                                                 PCI
       /  /                        0 / 31 / 6
      ID                                      8086-1C24
                               1025-0504
                                         1180 (Data Acquisition / Signal Processing Controller)
                                                  04
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

  [ Intel Cougar Point PCH - USB EHCI #1 Controller [B-2] ]

     :
                                      Intel Cougar Point PCH - USB EHCI #1 Controller [B-2]
                                                 PCI
       /  /                        0 / 29 / 0
      ID                                      8086-1C26
                               1025-0504
                                         0C03 (USB Controller)
                                                  04
      Fast Back-to-Back Transactions                    , 

     :
      66-                                     
      Bus Mastering                                     

  [ Intel Cougar Point PCH - USB EHCI #2 Controller [B-2] ]

     :
                                      Intel Cougar Point PCH - USB EHCI #2 Controller [B-2]
                                                 PCI
       /  /                        0 / 26 / 0
      ID                                      8086-1C2D
                               1025-0504
                                         0C03 (USB Controller)
                                                  04
      Fast Back-to-Back Transactions                    , 

     :
      66-                                     
      Bus Mastering                                     

  [ Intel Cougar Point-M PCH - SATA AHCI 6-Port Controller [B-2] ]

     :
                                      Intel Cougar Point-M PCH - SATA AHCI 6-Port Controller [B-2]
                                                 PCI
       /  /                        0 / 31 / 2
      ID                                      8086-1C03
                               1025-0504
                                         0106 (SATA Controller)
                                                  04
      Fast Back-to-Back Transactions                    , 

     :
      66-                                    
      Bus Mastering                                     

  [ Intel HM65 PCH - LPC Interface Controller [B-2] ]

     :
                                      Intel HM65 PCH - LPC Interface Controller [B-2]
                                                 PCI
       /  /                        0 / 31 / 0
      ID                                      8086-1C49
                               1025-0504
                                         0601 (PCI/ISA Bridge)
                                                  04
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

  [ Intel Sandy Bridge - PCI Express Controller ]

     :
                                      Intel Sandy Bridge - PCI Express Controller
                                                 PCI
       /  /                        0 / 1 / 0
      ID                                      8086-0101
                               0000-0000
                                         0604 (PCI/PCI Bridge)
                                                  09
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

  [ Intel Sandy Bridge-MB - Host Bridge/DRAM Controller ]

     :
                                      Intel Sandy Bridge-MB - Host Bridge/DRAM Controller
                                                 PCI
       /  /                        0 / 0 / 0
      ID                                      8086-0104
                               1025-0504
                                         0600 (Host/PCI Bridge)
                                                  09
      Fast Back-to-Back Transactions                    , 

     :
      66-                                     
      Bus Mastering                                     

  [ Intel Sandy Bridge-MB - Integrated Graphics Controller (MB GT2 1.3GHz+) ]

     :
                                      Intel Sandy Bridge-MB - Integrated Graphics Controller (MB GT2 1.3GHz+)
                                                 PCI
       /  /                        0 / 2 / 0
      ID                                      8086-0126
                               1025-0504
                                         0300 (VGA Display Controller)
                                                  09
      Fast Back-to-Back Transactions                    , 

     :
      66-                                     
      Bus Mastering                                     

     :
                                                   Intel Corporation
                                     http://www.intel.com/products/chipsets
                                       http://support.intel.com/support/graphics
                                     http://www.aida64.com/driver-updates


--------[  USB ]----------------------------------------------------------------------------------------------

  [ Generic USB Hub ]

     :
                                      Generic USB Hub
      ID                                      8087-0024
                                         09 / 00 (Hi-Speed Hub with single TT)
                                      01
        USB                         2.00
                                         High  (USB 2.0)

  [  USB  ]

     :
                                       USB 
      ID                                      04F2-B21B
                                         EF / 02 (Interface Association Descriptor)
                                      01
        USB                         2.00
                                         High  (USB 2.0)

  [ Generic USB Hub ]

     :
                                      Generic USB Hub
      ID                                      8087-0024
                                         09 / 00 (Hi-Speed Hub with single TT)
                                      01
        USB                         2.00
                                         High  (USB 2.0)

  [ WiMAX Bus Driver ]

     :
                                      WiMAX Bus Driver
      ID                                      198F-0220
                                         FF / FF
                                      FF
        USB                         2.00
                                         High  (USB 2.0)

  [ USB-  (USB Optical Mouse) ]

     :
                                      USB- 
      ID                                      1BCF-0005
                                         03 / 01 (Human Interface Device)
                                      02
                                                 USB Optical Mouse
        USB                         2.00
                                         Low  (USB 1.1)


--------[   ]-------------------------------------------------------------------------------------------

    IRQ 01                                 PS/2
    IRQ 08                               CMOS  
    IRQ 09                                        Broadcom xD Picture Card Host Controller
    IRQ 100                              Microsoft ACPI- 
    IRQ 101                              Microsoft ACPI- 
    IRQ 102                              Microsoft ACPI- 
    IRQ 103                              Microsoft ACPI- 
    IRQ 104                              Microsoft ACPI- 
    IRQ 105                              Microsoft ACPI- 
    IRQ 106                              Microsoft ACPI- 
    IRQ 107                              Microsoft ACPI- 
    IRQ 108                              Microsoft ACPI- 
    IRQ 109                              Microsoft ACPI- 
    IRQ 110                              Microsoft ACPI- 
    IRQ 111                              Microsoft ACPI- 
    IRQ 112                              Microsoft ACPI- 
    IRQ 113                              Microsoft ACPI- 
    IRQ 114                              Microsoft ACPI- 
    IRQ 115                              Microsoft ACPI- 
    IRQ 116                              Microsoft ACPI- 
    IRQ 117                              Microsoft ACPI- 
    IRQ 118                              Microsoft ACPI- 
    IRQ 119                              Microsoft ACPI- 
    IRQ 12                               ELAN PS/2 Port Smart-Pad
    IRQ 120                              Microsoft ACPI- 
    IRQ 121                              Microsoft ACPI- 
    IRQ 122                              Microsoft ACPI- 
    IRQ 123                              Microsoft ACPI- 
    IRQ 124                              Microsoft ACPI- 
    IRQ 125                              Microsoft ACPI- 
    IRQ 126                              Microsoft ACPI- 
    IRQ 127                              Microsoft ACPI- 
    IRQ 128                              Microsoft ACPI- 
    IRQ 129                              Microsoft ACPI- 
    IRQ 130                              Microsoft ACPI- 
    IRQ 131                              Microsoft ACPI- 
    IRQ 132                              Microsoft ACPI- 
    IRQ 133                              Microsoft ACPI- 
    IRQ 134                              Microsoft ACPI- 
    IRQ 135                              Microsoft ACPI- 
    IRQ 136                              Microsoft ACPI- 
    IRQ 137                              Microsoft ACPI- 
    IRQ 138                              Microsoft ACPI- 
    IRQ 139                              Microsoft ACPI- 
    IRQ 140                              Microsoft ACPI- 
    IRQ 141                              Microsoft ACPI- 
    IRQ 142                              Microsoft ACPI- 
    IRQ 143                              Microsoft ACPI- 
    IRQ 144                              Microsoft ACPI- 
    IRQ 145                              Microsoft ACPI- 
    IRQ 146                              Microsoft ACPI- 
    IRQ 147                              Microsoft ACPI- 
    IRQ 148                              Microsoft ACPI- 
    IRQ 149                              Microsoft ACPI- 
    IRQ 150                              Microsoft ACPI- 
    IRQ 151                              Microsoft ACPI- 
    IRQ 152                              Microsoft ACPI- 
    IRQ 153                              Microsoft ACPI- 
    IRQ 154                              Microsoft ACPI- 
    IRQ 155                              Microsoft ACPI- 
    IRQ 156                              Microsoft ACPI- 
    IRQ 157                              Microsoft ACPI- 
    IRQ 158                              Microsoft ACPI- 
    IRQ 159                              Microsoft ACPI- 
    IRQ 16                                        NVIDIA GeForce GT 630M
    IRQ 16                                         - Intel(R) 6 Series/C200 Series Chipset Family USB  1C2D
    IRQ 16                                        Intel(R) Management Engine Interface
    IRQ 16                                          PCI Express 2     Intel(R) 6 Series/C200 Series  1C12
    IRQ 16                                          PCI Express  Xeon E3-1200/  Intel(R) Core(TM)    0101
    IRQ 160                              Microsoft ACPI- 
    IRQ 161                              Microsoft ACPI- 
    IRQ 162                              Microsoft ACPI- 
    IRQ 163                              Microsoft ACPI- 
    IRQ 164                              Microsoft ACPI- 
    IRQ 165                              Microsoft ACPI- 
    IRQ 166                              Microsoft ACPI- 
    IRQ 167                              Microsoft ACPI- 
    IRQ 168                              Microsoft ACPI- 
    IRQ 169                              Microsoft ACPI- 
    IRQ 17                                        Broadcom 802.11n Network Adapter
    IRQ 17                                        Broadcom SD Host Controller
    IRQ 17                                        Broadcom Memory Stick
    IRQ 17                                        Broadcom xD Picture Bus Driver
    IRQ 17                                          PCI Express 1     Intel(R) 6 Series/C200 Series  1C10
    IRQ 170                              Microsoft ACPI- 
    IRQ 171                              Microsoft ACPI- 
    IRQ 172                              Microsoft ACPI- 
    IRQ 173                              Microsoft ACPI- 
    IRQ 174                              Microsoft ACPI- 
    IRQ 175                              Microsoft ACPI- 
    IRQ 176                              Microsoft ACPI- 
    IRQ 177                              Microsoft ACPI- 
    IRQ 178                              Microsoft ACPI- 
    IRQ 179                              Microsoft ACPI- 
    IRQ 180                              Microsoft ACPI- 
    IRQ 181                              Microsoft ACPI- 
    IRQ 182                              Microsoft ACPI- 
    IRQ 183                              Microsoft ACPI- 
    IRQ 184                              Microsoft ACPI- 
    IRQ 185                              Microsoft ACPI- 
    IRQ 186                              Microsoft ACPI- 
    IRQ 187                              Microsoft ACPI- 
    IRQ 188                              Microsoft ACPI- 
    IRQ 189                              Microsoft ACPI- 
    IRQ 190                              Microsoft ACPI- 
    IRQ 191                              Microsoft ACPI- 
    IRQ 22                                         High Definition Audio (Microsoft)
    IRQ 23                                         - Intel(R) 6 Series/C200 Series Chipset Family USB  1C26
    IRQ 256                              Microsoft ACPI- 
    IRQ 257                              Microsoft ACPI- 
    IRQ 258                              Microsoft ACPI- 
    IRQ 259                              Microsoft ACPI- 
    IRQ 260                              Microsoft ACPI- 
    IRQ 261                              Microsoft ACPI- 
    IRQ 262                              Microsoft ACPI- 
    IRQ 263                              Microsoft ACPI- 
    IRQ 264                              Microsoft ACPI- 
    IRQ 265                              Microsoft ACPI- 
    IRQ 266                              Microsoft ACPI- 
    IRQ 267                              Microsoft ACPI- 
    IRQ 268                              Microsoft ACPI- 
    IRQ 269                              Microsoft ACPI- 
    IRQ 270                              Microsoft ACPI- 
    IRQ 271                              Microsoft ACPI- 
    IRQ 272                              Microsoft ACPI- 
    IRQ 273                              Microsoft ACPI- 
    IRQ 274                              Microsoft ACPI- 
    IRQ 275                              Microsoft ACPI- 
    IRQ 276                              Microsoft ACPI- 
    IRQ 277                              Microsoft ACPI- 
    IRQ 278                              Microsoft ACPI- 
    IRQ 279                              Microsoft ACPI- 
    IRQ 280                              Microsoft ACPI- 
    IRQ 281                              Microsoft ACPI- 
    IRQ 282                              Microsoft ACPI- 
    IRQ 283                              Microsoft ACPI- 
    IRQ 284                              Microsoft ACPI- 
    IRQ 285                              Microsoft ACPI- 
    IRQ 286                              Microsoft ACPI- 
    IRQ 287                              Microsoft ACPI- 
    IRQ 288                              Microsoft ACPI- 
    IRQ 289                              Microsoft ACPI- 
    IRQ 290                              Microsoft ACPI- 
    IRQ 291                              Microsoft ACPI- 
    IRQ 292                              Microsoft ACPI- 
    IRQ 293                              Microsoft ACPI- 
    IRQ 294                              Microsoft ACPI- 
    IRQ 295                              Microsoft ACPI- 
    IRQ 296                              Microsoft ACPI- 
    IRQ 297                              Microsoft ACPI- 
    IRQ 298                              Microsoft ACPI- 
    IRQ 299                              Microsoft ACPI- 
    IRQ 300                              Microsoft ACPI- 
    IRQ 301                              Microsoft ACPI- 
    IRQ 302                              Microsoft ACPI- 
    IRQ 303                              Microsoft ACPI- 
    IRQ 304                              Microsoft ACPI- 
    IRQ 305                              Microsoft ACPI- 
    IRQ 306                              Microsoft ACPI- 
    IRQ 307                              Microsoft ACPI- 
    IRQ 308                              Microsoft ACPI- 
    IRQ 309                              Microsoft ACPI- 
    IRQ 310                              Microsoft ACPI- 
    IRQ 311                              Microsoft ACPI- 
    IRQ 312                              Microsoft ACPI- 
    IRQ 313                              Microsoft ACPI- 
    IRQ 314                              Microsoft ACPI- 
    IRQ 315                              Microsoft ACPI- 
    IRQ 316                              Microsoft ACPI- 
    IRQ 317                              Microsoft ACPI- 
    IRQ 318                              Microsoft ACPI- 
    IRQ 319                              Microsoft ACPI- 
    IRQ 320                              Microsoft ACPI- 
    IRQ 321                              Microsoft ACPI- 
    IRQ 322                              Microsoft ACPI- 
    IRQ 323                              Microsoft ACPI- 
    IRQ 324                              Microsoft ACPI- 
    IRQ 325                              Microsoft ACPI- 
    IRQ 326                              Microsoft ACPI- 
    IRQ 327                              Microsoft ACPI- 
    IRQ 328                              Microsoft ACPI- 
    IRQ 329                              Microsoft ACPI- 
    IRQ 330                              Microsoft ACPI- 
    IRQ 331                              Microsoft ACPI- 
    IRQ 332                              Microsoft ACPI- 
    IRQ 333                              Microsoft ACPI- 
    IRQ 334                              Microsoft ACPI- 
    IRQ 335                              Microsoft ACPI- 
    IRQ 336                              Microsoft ACPI- 
    IRQ 337                              Microsoft ACPI- 
    IRQ 338                              Microsoft ACPI- 
    IRQ 339                              Microsoft ACPI- 
    IRQ 340                              Microsoft ACPI- 
    IRQ 341                              Microsoft ACPI- 
    IRQ 342                              Microsoft ACPI- 
    IRQ 343                              Microsoft ACPI- 
    IRQ 344                              Microsoft ACPI- 
    IRQ 345                              Microsoft ACPI- 
    IRQ 346                              Microsoft ACPI- 
    IRQ 347                              Microsoft ACPI- 
    IRQ 348                              Microsoft ACPI- 
    IRQ 349                              Microsoft ACPI- 
    IRQ 350                              Microsoft ACPI- 
    IRQ 351                              Microsoft ACPI- 
    IRQ 352                              Microsoft ACPI- 
    IRQ 353                              Microsoft ACPI- 
    IRQ 354                              Microsoft ACPI- 
    IRQ 355                              Microsoft ACPI- 
    IRQ 356                              Microsoft ACPI- 
    IRQ 357                              Microsoft ACPI- 
    IRQ 358                              Microsoft ACPI- 
    IRQ 359                              Microsoft ACPI- 
    IRQ 360                              Microsoft ACPI- 
    IRQ 361                              Microsoft ACPI- 
    IRQ 362                              Microsoft ACPI- 
    IRQ 363                              Microsoft ACPI- 
    IRQ 364                              Microsoft ACPI- 
    IRQ 365                              Microsoft ACPI- 
    IRQ 366                              Microsoft ACPI- 
    IRQ 367                              Microsoft ACPI- 
    IRQ 368                              Microsoft ACPI- 
    IRQ 369                              Microsoft ACPI- 
    IRQ 370                              Microsoft ACPI- 
    IRQ 371                              Microsoft ACPI- 
    IRQ 372                              Microsoft ACPI- 
    IRQ 373                              Microsoft ACPI- 
    IRQ 374                              Microsoft ACPI- 
    IRQ 375                              Microsoft ACPI- 
    IRQ 376                              Microsoft ACPI- 
    IRQ 377                              Microsoft ACPI- 
    IRQ 378                              Microsoft ACPI- 
    IRQ 379                              Microsoft ACPI- 
    IRQ 380                              Microsoft ACPI- 
    IRQ 381                              Microsoft ACPI- 
    IRQ 382                              Microsoft ACPI- 
    IRQ 383                              Microsoft ACPI- 
    IRQ 384                              Microsoft ACPI- 
    IRQ 385                              Microsoft ACPI- 
    IRQ 386                              Microsoft ACPI- 
    IRQ 387                              Microsoft ACPI- 
    IRQ 388                              Microsoft ACPI- 
    IRQ 389                              Microsoft ACPI- 
    IRQ 390                              Microsoft ACPI- 
    IRQ 391                              Microsoft ACPI- 
    IRQ 392                              Microsoft ACPI- 
    IRQ 393                              Microsoft ACPI- 
    IRQ 394                              Microsoft ACPI- 
    IRQ 395                              Microsoft ACPI- 
    IRQ 396                              Microsoft ACPI- 
    IRQ 397                              Microsoft ACPI- 
    IRQ 398                              Microsoft ACPI- 
    IRQ 399                              Microsoft ACPI- 
    IRQ 400                              Microsoft ACPI- 
    IRQ 401                              Microsoft ACPI- 
    IRQ 402                              Microsoft ACPI- 
    IRQ 403                              Microsoft ACPI- 
    IRQ 404                              Microsoft ACPI- 
    IRQ 405                              Microsoft ACPI- 
    IRQ 406                              Microsoft ACPI- 
    IRQ 407                              Microsoft ACPI- 
    IRQ 408                              Microsoft ACPI- 
    IRQ 409                              Microsoft ACPI- 
    IRQ 410                              Microsoft ACPI- 
    IRQ 411                              Microsoft ACPI- 
    IRQ 412                              Microsoft ACPI- 
    IRQ 413                              Microsoft ACPI- 
    IRQ 414                              Microsoft ACPI- 
    IRQ 415                              Microsoft ACPI- 
    IRQ 416                              Microsoft ACPI- 
    IRQ 417                              Microsoft ACPI- 
    IRQ 418                              Microsoft ACPI- 
    IRQ 419                              Microsoft ACPI- 
    IRQ 420                              Microsoft ACPI- 
    IRQ 421                              Microsoft ACPI- 
    IRQ 422                              Microsoft ACPI- 
    IRQ 423                              Microsoft ACPI- 
    IRQ 424                              Microsoft ACPI- 
    IRQ 425                              Microsoft ACPI- 
    IRQ 426                              Microsoft ACPI- 
    IRQ 427                              Microsoft ACPI- 
    IRQ 428                              Microsoft ACPI- 
    IRQ 429                              Microsoft ACPI- 
    IRQ 430                              Microsoft ACPI- 
    IRQ 431                              Microsoft ACPI- 
    IRQ 432                              Microsoft ACPI- 
    IRQ 433                              Microsoft ACPI- 
    IRQ 434                              Microsoft ACPI- 
    IRQ 435                              Microsoft ACPI- 
    IRQ 436                              Microsoft ACPI- 
    IRQ 437                              Microsoft ACPI- 
    IRQ 438                              Microsoft ACPI- 
    IRQ 439                              Microsoft ACPI- 
    IRQ 440                              Microsoft ACPI- 
    IRQ 441                              Microsoft ACPI- 
    IRQ 442                              Microsoft ACPI- 
    IRQ 443                              Microsoft ACPI- 
    IRQ 444                              Microsoft ACPI- 
    IRQ 445                              Microsoft ACPI- 
    IRQ 446                              Microsoft ACPI- 
    IRQ 447                              Microsoft ACPI- 
    IRQ 448                              Microsoft ACPI- 
    IRQ 449                              Microsoft ACPI- 
    IRQ 450                              Microsoft ACPI- 
    IRQ 451                              Microsoft ACPI- 
    IRQ 452                              Microsoft ACPI- 
    IRQ 453                              Microsoft ACPI- 
    IRQ 454                              Microsoft ACPI- 
    IRQ 455                              Microsoft ACPI- 
    IRQ 456                              Microsoft ACPI- 
    IRQ 457                              Microsoft ACPI- 
    IRQ 458                              Microsoft ACPI- 
    IRQ 459                              Microsoft ACPI- 
    IRQ 460                              Microsoft ACPI- 
    IRQ 461                              Microsoft ACPI- 
    IRQ 462                              Microsoft ACPI- 
    IRQ 463                              Microsoft ACPI- 
    IRQ 464                              Microsoft ACPI- 
    IRQ 465                              Microsoft ACPI- 
    IRQ 466                              Microsoft ACPI- 
    IRQ 467                              Microsoft ACPI- 
    IRQ 468                              Microsoft ACPI- 
    IRQ 469                              Microsoft ACPI- 
    IRQ 470                              Microsoft ACPI- 
    IRQ 471                              Microsoft ACPI- 
    IRQ 472                              Microsoft ACPI- 
    IRQ 473                              Microsoft ACPI- 
    IRQ 474                              Microsoft ACPI- 
    IRQ 475                              Microsoft ACPI- 
    IRQ 476                              Microsoft ACPI- 
    IRQ 477                              Microsoft ACPI- 
    IRQ 478                              Microsoft ACPI- 
    IRQ 479                              Microsoft ACPI- 
    IRQ 480                              Microsoft ACPI- 
    IRQ 481                              Microsoft ACPI- 
    IRQ 482                              Microsoft ACPI- 
    IRQ 483                              Microsoft ACPI- 
    IRQ 484                              Microsoft ACPI- 
    IRQ 485                              Microsoft ACPI- 
    IRQ 486                              Microsoft ACPI- 
    IRQ 487                              Microsoft ACPI- 
    IRQ 488                              Microsoft ACPI- 
    IRQ 489                              Microsoft ACPI- 
    IRQ 490                              Microsoft ACPI- 
    IRQ 491                              Microsoft ACPI- 
    IRQ 492                              Microsoft ACPI- 
    IRQ 493                              Microsoft ACPI- 
    IRQ 494                              Microsoft ACPI- 
    IRQ 495                              Microsoft ACPI- 
    IRQ 496                              Microsoft ACPI- 
    IRQ 497                              Microsoft ACPI- 
    IRQ 498                              Microsoft ACPI- 
    IRQ 499                              Microsoft ACPI- 
    IRQ 500                              Microsoft ACPI- 
    IRQ 501                              Microsoft ACPI- 
    IRQ 502                              Microsoft ACPI- 
    IRQ 503                              Microsoft ACPI- 
    IRQ 504                              Microsoft ACPI- 
    IRQ 505                              Microsoft ACPI- 
    IRQ 506                              Microsoft ACPI- 
    IRQ 507                              Microsoft ACPI- 
    IRQ 508                              Microsoft ACPI- 
    IRQ 509                              Microsoft ACPI- 
    IRQ 510                              Microsoft ACPI- 
    IRQ 511                              Microsoft ACPI- 
    IRQ 65536                              Broadcom NetLink (TM) Gigabit Ethernet
    IRQ 65536                              Broadcom NetLink (TM) Gigabit Ethernet
    IRQ 65536                              Broadcom NetLink (TM) Gigabit Ethernet
    IRQ 65536                              Broadcom NetLink (TM) Gigabit Ethernet
    IRQ 65536                              Broadcom NetLink (TM) Gigabit Ethernet
    IRQ 65536                            Intel(R) HD Graphics 3000
    IRQ 65536                            Intel(R) Mobile Express Chipset SATA AHCI Controller
    IRQ 81                               Microsoft ACPI- 
    IRQ 82                               Microsoft ACPI- 
    IRQ 83                               Microsoft ACPI- 
    IRQ 84                               Microsoft ACPI- 
    IRQ 85                               Microsoft ACPI- 
    IRQ 86                               Microsoft ACPI- 
    IRQ 87                               Microsoft ACPI- 
    IRQ 88                               Microsoft ACPI- 
    IRQ 89                               Microsoft ACPI- 
    IRQ 90                               Microsoft ACPI- 
    IRQ 91                               Microsoft ACPI- 
    IRQ 92                               Microsoft ACPI- 
    IRQ 93                               Microsoft ACPI- 
    IRQ 94                               Microsoft ACPI- 
    IRQ 95                               Microsoft ACPI- 
    IRQ 96                               Microsoft ACPI- 
    IRQ 97                               Microsoft ACPI- 
    IRQ 98                               Microsoft ACPI- 
    IRQ 99                               Microsoft ACPI- 
     000A0000-000BFFFF                      Intel(R) HD Graphics 3000
     000A0000-000BFFFF                      PCI Express Root Complex
     9FA00000-FEAFFFFF                      PCI Express Root Complex
     A0000000-AFFFFFFF             NVIDIA GeForce GT 630M
     A0000000-B1FFFFFF               PCI Express  Xeon E3-1200/  Intel(R) Core(TM)    0101
     B0000000-B1FFFFFF             NVIDIA GeForce GT 630M
     C0000000-CFFFFFFF             Intel(R) HD Graphics 3000
     D0000000-D0FFFFFF             NVIDIA GeForce GT 630M
     D0000000-D10FFFFF               PCI Express  Xeon E3-1200/  Intel(R) Core(TM)    0101
     D1400000-D17FFFFF             Intel(R) HD Graphics 3000
     D1800000-D180FFFF             Broadcom SD Host Controller
     D1800000-D18FFFFF               PCI Express 1     Intel(R) 6 Series/C200 Series  1C10
     D1810000-D181FFFF             Broadcom Memory Stick
     D1820000-D182FFFF             Broadcom xD Picture Bus Driver
     D1830000-D183FFFF               Broadcom NetLink (TM) Gigabit Ethernet
     D1840000-D184FFFF               Broadcom NetLink (TM) Gigabit Ethernet
     D1900000-D1903FFF             Broadcom 802.11n Network Adapter
     D1900000-D19FFFFF               PCI Express 2     Intel(R) 6 Series/C200 Series  1C12
     D1A00000-D1A03FFF              High Definition Audio (Microsoft)
     D1A04000-D1A0400F             Intel(R) Management Engine Interface
     D1A08000-D1A087FF             Intel(R) Mobile Express Chipset SATA AHCI Controller
     D1A09000-D1A093FF              - Intel(R) 6 Series/C200 Series Chipset Family USB  1C26
     D1A0A000-D1A0A3FF              - Intel(R) 6 Series/C200 Series Chipset Family USB  1C2D
     0000-0CF7                                PCI Express Root Complex
     0060-0060                         PS/2
     0062-0062                       Microsoft ACPI-  
     0064-0064                         PS/2
     0066-0066                       Microsoft ACPI-  
     0070-0077                       CMOS  
     03B0-03BB                                Intel(R) HD Graphics 3000
     03C0-03DF                                Intel(R) HD Graphics 3000
     0D00-FFFF                                PCI Express Root Complex
     2000-2FFF                         PCI Express  Xeon E3-1200/  Intel(R) Core(TM)    0101
     2F80-2FFF                       NVIDIA GeForce GT 630M
     3000-303F                       Intel(R) HD Graphics 3000
     3060-307F                       Intel(R) Mobile Express Chipset SATA AHCI Controller
     3090-3097                       Intel(R) Mobile Express Chipset SATA AHCI Controller
     3098-309F                       Intel(R) Mobile Express Chipset SATA AHCI Controller
     30B8-30BB                       Intel(R) Mobile Express Chipset SATA AHCI Controller
     30BC-30BF                       Intel(R) Mobile Express Chipset SATA AHCI Controller
     FFFE-FFFE                       WiMAX Network Adapter


--------[  ]--------------------------------------------------------------------------------------------------------

  [   PS/2 ]

     :
                                        PS/2
                                           Japanese keyboard
                                     Russian
        ANSI                             1251 -  (Windows)
        OEM                              866 -  (DOS)
                                         1
                                         31

  [ ELAN PS/2 Port Smart-Pad ]

     :
                                            ELAN PS/2 Port Smart-Pad
                                         5
                                              
                                         1
                                     760 msec
       X / Y                                       6 / 10
                                 3

     :
                               
      ''                                
                
                                            
                   
                                              
      Sonar                                             


--------[  ]----------------------------------------------------------------------------------------------------

  [ Fax ]

     :
                                             Fax
                                      
                                  
                                            SHRFAX:
                                         Microsoft Shared Fax Driver (v4.00)
                                           Fax
                                         winprint
                                     
                                             
                                               1
                                 0
                                                  

     :
                                            Letter, 8.5 x 11 in
                                              
                                          200 x 200 dpi Mono

  [ Microsoft XPS Document Writer ]

     :
                                             Microsoft XPS Document Writer
                                      
                                  
                                            PORTPROMPT:
                                         Microsoft XPS Document Writer v4 (v6.00)
                                           Microsoft XPS Document Writer
                                         winprint
                                     
                                             
                                               1
                                 0
                                                  

     :
                                            A4, 210 x 297 mm
                                              
                                          600 x 600 dpi Color

  [   OneNote 2013 ( ) ]

     :
                                               OneNote 2013
                                      
                                  
                                            nul:
                                         Send to Microsoft OneNote 15 Driver (v6.00)
                                             OneNote 2013
                                         winprint
                                     
                                             3:00 - 3:00
                                               1
                                 0
                                                  

     :
                                            A4, 210 x 297 mm
                                              
                                          600 x 600 dpi Color


--------[  ]------------------------------------------------------------------------------------------------

    Adobe ARM                          Registry\Common\Run      C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe 
    Advanced SystemCare 7              Registry\User\Run        C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe /Auto
    Dolby Advanced Audio v2            Registry\Common\Run      C:\Dolby PCEE4\pcee4.exe -autostart
    egui                               Registry\Common\Run      C:\Program Files\ESET\ESET Smart Security\egui.exe /hide /waitservice
    ETDCtrl                            Registry\Common\Run      %ProgramFiles%\Elantech\ETDCtrl.exe 
    HotKeysCmds                        Registry\Common\Run      C:\Windows\system32\hkcmd.exe 
    IAStorIcon                         Registry\Common\Run      C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" 60
    IgfxTray                           Registry\Common\Run      C:\Windows\system32\igfxtray.exe 
    LManager                           Registry\Common\Run      C:\Program Files (x86)\Launch Manager\LManager.exe 
    NvBackend                          Registry\Common\Run      C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe 
    Persistence                        Registry\Common\Run      C:\Windows\system32\igfxpers.exe 
    RtHDVBg_Dolby                      Registry\Common\Run      C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe /FORPCEE4
    RtHDVCpl                           Registry\Common\Run      C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
    ShadowPlay                         Registry\Common\Run      C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
    YouCam Service                     Registry\Common\Run      C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe /s


--------[  ]---------------------------------------------------------------------------------------------

  [ ASC7_PerformanceMonitor ]

     :
                                               ASC7_PerformanceMonitor
                                                  
                                           C:\Program Files (x86)\IObit\Advanced SystemCare 7\Monitor.exe
                                     
                                            
                                             
                                         
                                               
                                         21.10.2014 17:25:11
                                         

     :
      At log on                                         At log on of any user

  [ ASC7_SkipUac_  ]

     :
                                               ASC7_SkipUac_ 
                                                  
                                           C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASC.exe
                                     /SkipUac
                                            
                                             
                                         
                                               ACER\ 
                                         19.10.2014 23:32:20
                                         

  [ Opera scheduled Autoupdate 1413571768 ]

     :
                                               Opera scheduled Autoupdate 1413571768
                                                  
                                           C:\Program Files (x86)\Opera\launcher.exe
                                     --scheduledautoupdate
                                            
                                                Opera.
                                        
                                               WORKGROUP\ACER$
                                         21.10.2014 17:27:32
                                         21.10.2014 23:14:38

     :
      Daily                                             At 23:14:38 every day
      At startup                                        At system startup

  [ Optimize Start Menu Cache Files-S-1-5-21-1438717787-2843651206-2158049019-1001 ]

     :
                                               Optimize Start Menu Cache Files-S-1-5-21-1438717787-2843651206-2158049019-1001
                                                  
                                           
                                     
                                            
                                                   ,     "".         .
                                         
                                               Microsoft Corporation
                                         21.10.2014 17:35:25
                                         

     :
      On idle                                           When computer is idle

  [ Uninstaller_SkipUac_Administrator ]

     :
                                               Uninstaller_SkipUac_Administrator
                                                  
                                           C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe
                                     /UninstallExplorer
                                            
                                             
                                         
                                               ACER\ 
                                         
                                         


--------[   ]-------------------------------------------------------------------------------------

    Torrent                                                                               3.4.2.34944    uTorrent                                      BitTorrent Inc.                           
    Adobe Flash Player 15 ActiveX & Plugin 64-bit                                           15.0.0.152    Adobe Flash Player ActiveX                    Adobe Systems Incorporated                
    Adobe Reader XI (11.0.09) - Russian [ ()]                                     11.0.09    {AC76BA86-7AD7-1049-7B44-AB0000000001}        Adobe Systems Incorporated      2014-10-17
    Advanced SystemCare 7                                                                        7.4.0    Advanced SystemCare 7_is1                     IObit                           2014-10-19
    AIDA64 4.70.3200 Final                                                                                AIDA64 4.70.3200 Final                                                                  
    AIMP3                                                                             v3.55.1355, 14.07.2014    AIMP3                                         AIMP DevTeam                    2014-10-17
    Broadcom Card Reader Driver Installer                                                     15.4.7.1    {F0A7DF2F-0BE0-470F-B137-D7A19F977189}        Broadcom Corporation            2014-10-17
    CyberLink YouCam 5                                                                      5.0.2931.0    InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}  CyberLink Corp.                 2014-10-20
    Dolby Advanced Audio v2                                                                 7.2.7000.7    {B9E70C7A-9F85-4A39-A4A3-BFA3C3BF7613}        Dolby Laboratories Inc          2014-10-17
    ESET Smart Security [ ()]                                                   7.0.302.8    {B6BA3BD1-F9F7-4ABA-B5FB-BBA15FF48BC3}        ESET, spol s r. o.              2014-10-17
    ETDWare PS/2-X64 11.6.11.002_WHQL                                                      11.6.11.002    Elantech                                      ELAN Microelectronic Corp.                
    Intel(R) Control Center                                                                 1.2.1.1008    {F8A9085D-4C7A-41a9-8A77-C8998A96C421}        Intel Corporation                         
    Intel(R) Management Engine Components                                                   8.1.0.1252    {65153EA5-8B6E-43B6-857B-C6E4FC25798A}        Intel Corporation                         
    Intel(R) Processor Graphics                                                           9.17.10.2843    {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}        Intel Corporation                         
    Intel(R) Rapid Storage Technology                                                      11.5.0.1207    {3E29EE6C-963A-4aae-86C1-DC237C4A49FC}        Intel Corporation                         
    Intel(R) SDK for OpenCL - CPU Only Runtime Package                                     2.0.0.37149    {FCB3772C-B7D0-4933-B1A9-3707EBACC573}        Intel Corporation                         
    Intel Trusted Connect Service Client                                                   1.24.388.1    {F4404AFD-2EF3-40C1-8C09-29E5F3B6972B}        Intel Corporation               2014-10-17
    IObit Uninstaller                                                                       3.3.9.2622    IObitUninstall                                IObit                           2014-10-19
    Java 7 Update 67 (64-bit)                                                                  7.0.670    {26A24AE4-039D-4CA4-87B4-2F06417067FF}        Oracle                          2014-10-17
    Java 7 Update 67                                                                           7.0.670    {26A24AE4-039D-4CA4-87B4-2F03217067FF}        Oracle                          2014-10-17
    Java 8 Update 25 (64-bit)                                                                  8.0.250    {26A24AE4-039D-4CA4-87B4-2F86418025F0}        Oracle Corporation              2014-10-17
    Java 8 Update 25                                                                           8.0.250    {26A24AE4-039D-4CA4-87B4-2F83218025F0}        Oracle Corporation              2014-10-17
    Java Auto Updater                                                                        2.8.25.18    {4A03706F-666A-4037-7777-5F2748764D10}        Oracle Corporation              2014-10-17
    K-Lite Codec Pack 9.9.5 (64-bit)                                                             9.9.5    KLiteCodecPack64_is1                                                          2014-10-19
    Launch Manager                                                                               5.2.1    LManager                                      Acer Inc.                                 
    Microsoft Access MUI (Russian) 2013 [ ()]                              15.0.4420.1017    {90150000-0015-0419-1000-0000000FF1CE}        Microsoft Corporation           2014-10-19
    Microsoft DCF MUI (Russian) 2013 [ ()]                                 15.0.4420.1017    {90150000-0090-0419-1000-0000000FF1CE}        Microsoft Corporation           2014-10-19
    Microsoft Excel MUI (Russian) 2013 [ ()]                               15.0.4420.1017    {90150000-0016-0419-1000-0000000FF1CE}        Microsoft Corporation           2014-10-19
    Microsoft Groove MUI (Russian) 2013 [ ()]                              15.0.4420.1017    {90150000-00BA-0419-1000-0000000FF1CE}        Microsoft Corporation           2014-10-19
    Microsoft InfoPath MUI (Russian) 2013 [ ()]                            15.0.4420.1017    {90150000-0044-0419-1000-0000000FF1CE}        Microsoft Corporation           2014-10-19
    Microsoft Lync MUI (Russian) 2013 [ ()]                                15.0.4420.1017    {90150000-012B-0419-1000-0000000FF1CE}        Microsoft Corporation           2014-10-19
    Microsoft Office 32-bit Components 2013                                           15.0.4420.1017 - Office 2013 RTM    {90150000-00C1-0000-1000-0000000FF1CE}        Microsoft Corporation           2014-10-19
    Microsoft Office Korrekturhilfen 2013 - Deutsch [ ()]             15.0.4420.1017 - Office 2013 RTM    {90150000-001F-0407-1000-0000000FF1CE}        Microsoft Corporation           2014-10-19
    Microsoft Office OSM MUI (Russian) 2013 [ ()]                        15.0.4420.1017 - Office 2013 RTM    {90150000-00E1-0419-1000-0000000FF1CE}        Microsoft Corporation           2014-10-19
    Microsoft Office OSM UX MUI (Russian) 2013 [ ()]                     15.0.4420.1017 - Office 2013 RTM    {90150000-00E2-0419-1000-0000000FF1CE}        Microsoft Corporation           2014-10-19
    Microsoft Office Professional Plus 2013                                           15.0.4420.1017 - Office 2013 RTM    {90150000-0011-0000-1000-0000000FF1CE}        Microsoft Corporation           2014-10-19
    Microsoft Office Proofing (Russian) 2013 [ ()]                       15.0.4420.1017 - Office 2013 RTM    {90150000-002C-0419-1000-0000000FF1CE}        Microsoft Corporation           2014-10-19
    Microsoft Office Proofing Tools 2013 - English                                    15.0.4420.1017 - Office 2013 RTM    {90150000-001F-0409-1000-0000000FF1CE}        Microsoft Corporation           2014-10-19
    Microsoft Office Shared 32-bit MUI (Russian) 2013 [ ()]              15.0.4420.1017 - Office 2013 RTM    {90150000-00C1-0419-1000-0000000FF1CE}        Microsoft Corporation           2014-10-19
    Microsoft Office Shared MUI (Russian) 2013 [ ()]                     15.0.4420.1017 - Office 2013 RTM    {90150000-006E-0419-1000-0000000FF1CE}        Microsoft Corporation           2014-10-19
    Microsoft Office   2013                                       15.0.4420.1017 - Office 2013 RTM    Office15.PROPLUS                              Microsoft Corporation                     
    Microsoft OneNote MUI (Russian) 2013 [ ()]                             15.0.4420.1017    {90150000-00A1-0419-1000-0000000FF1CE}        Microsoft Corporation           2014-10-19
    Microsoft Outlook MUI (Russian) 2013 [ ()]                             15.0.4420.1017    {90150000-001A-0419-1000-0000000FF1CE}        Microsoft Corporation           2014-10-19
    Microsoft PowerPoint MUI (Russian) 2013 [ ()]                          15.0.4420.1017    {90150000-0018-0419-1000-0000000FF1CE}        Microsoft Corporation           2014-10-19
    Microsoft Publisher MUI (Russian) 2013 [ ()]                           15.0.4420.1017    {90150000-0019-0419-1000-0000000FF1CE}        Microsoft Corporation           2014-10-19
    Microsoft Visual C++ 2005 Redistributable                                                8.0.59193    {837b34e3-7c30-493c-8f6a-2b0f04e2912c}        Microsoft Corporation           2014-10-20
    Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17                             9.0.30729    {8220EEFE-38CD-377E-8595-13398D740ACE}        Microsoft Corporation           2014-10-17
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17                             9.0.30729    {9A25302D-30C0-39D9-BD6F-21E6EC160475}        Microsoft Corporation           2014-10-17
    Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219                             10.0.40219    {1D8E6291-B0D5-35EC-8441-6616F567A0F7}        Microsoft Corporation           2014-10-17
    Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219                             10.0.40219    {F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}        Microsoft Corporation           2014-10-17
    Microsoft Word MUI (Russian) 2013 [ ()]                                15.0.4420.1017    {90150000-001B-0419-1000-0000000FF1CE}        Microsoft Corporation           2014-10-19
    MPC-HC 1.7.7 (64-bit)                                                                        1.7.7    {2ACBF1FA-F5C3-4B19-A774-B22A31F231B9}_is1    MPC-HC Team                     2014-10-19
    NVIDIA GeForce Experience 2.1.2 [ ()]                                           2.1.2    {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience  NVIDIA Corporation              2014-10-17
    NVIDIA GeForce Experience Service [ ()]                                      16.13.42    {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GfExperienceService  NVIDIA Corporation              2014-10-17
    NVIDIA Install Application [ ()]                                      2.1002.162.1274    {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer  NVIDIA Corporation              2014-10-17
    NVIDIA LED Visualizer 1.0 [ ()]                                                   1.0    {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.LEDVisualizer  NVIDIA Corporation              2014-10-17
    NVIDIA Network Service [ ()]                                                      2.0    {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Network.Service  NVIDIA Corporation              2014-10-17
    NVIDIA Optimus Update 16.13.42 [ ()]                                         16.13.42    {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Optimus  NVIDIA Corporation              2014-10-17
    NVIDIA PhysX                                                                             9.14.0702    {B455E95A-B804-439F-B533-336B1635AE97}        NVIDIA Corporation              2014-10-17
    NVIDIA ShadowPlay 16.13.42 [ ()]                                             16.13.42    {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShadowPlay  NVIDIA Corporation              2014-10-17
    NVIDIA Update Core [ ()]                                                     16.13.42    {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Update.Core  NVIDIA Corporation              2014-10-17
    NVIDIA Virtual Audio 1.2.25 [ ()]                                              1.2.25    {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver  NVIDIA Corporation              2014-10-17
    NVIDIA   344.11 [ ()]                                        344.11    {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver  NVIDIA Corporation              2014-10-17
    NVIDIA    PhysX 9.14.0702 [ ()]              9.14.0702    {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX  NVIDIA Corporation              2014-10-17
    Opera Stable 25.0.1614.50                                                             25.0.1614.50    Opera 25.0.1614.50                            Opera Software ASA                        
    Realtek High Definition Audio Driver []                                          6.0.1.6438    {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}        Realtek Semiconductor Corp.     2014-10-17
    SHIELD Streaming [ ()]                                                        3.1.200    {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv  NVIDIA Corporation              2014-10-17
    SHIELD Wireless Controller Driver [ ()]                                      16.13.42    {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShieldWirelessController  NVIDIA Corporation              2014-10-17
    Skype 6.21                                                                               6.21.104    {24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}        Skype Technologies S.A.         2014-10-19
    STDU Viewer version 1.6.350.0                                                            1.6.350.0    STDU Viewer_is1                               STDUtility                      2014-10-17
    Surfing Protection                                                                             1.0    IObit Surfing Protection_is1                  IObit                           2014-10-19
    WiMAX Connection Manager                                                           100.001.032.025    WiMAX Connection Manager                      Huawei Technologies Co.,Ltd               
    WinRAR 5.01 (64-)                                                                 5.0.1.0    WinRAR Archiver                               win.rar GmbH                              
       Microsoft Office 2013    [ ()]    15.0.4420.1017    {90150000-001F-0422-1000-0000000FF1CE}        Microsoft Corporation           2014-10-19
     NVIDIA 16.13.42 [ ()]                                             16.13.42    {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update  NVIDIA Corporation              2014-10-17
      NVIDIA 344.11 [ ()]                                          344.11    {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel  NVIDIA Corporation              2014-10-17
       Microsoft Office 2013   [ ()]    15.0.4420.1017    {90150000-001F-0419-1000-0000000FF1CE}        Microsoft Corporation           2014-10-19


--------[  ]----------------------------------------------------------------------------------------------------

    Microsoft Internet Explorer 9.10.9200.16599                             GNBB8-YVD74-QJHX6-27H4K-8QHDG
    Microsoft Office Professional Plus 2013                                 YC7DK-G2NP3-2QQC3-J6H88-GVGXT
    Microsoft Windows 8 Professional with Media Center                      GNBB8-YVD74-QJHX6-27H4K-8QHDG


--------[   ]-------------------------------------------------------------------------------------------------

    386               Virtual Device Driver                                            
    3G2               3GPP2 Audio/Video                                                video/3gpp2
    3GP               3GPP Audio/Video                                                 video/3gpp
    3GP2              3GPP2 Audio/Video                                                video/3gpp2
    3GPP              3GPP Audio/Video                                                 video/3gpp
    7Z                 WinRAR                                                     
    AAC               ADTS Audio                                                       audio/vnd.dlna.adts
    ACCDA             Microsoft Access Add-in                                          application/msaccess.addin
    ACCDB             Microsoft Access                                       application/msaccess
    ACCDC             Microsoft Access Signed Package                                  application/msaccess.cab
    ACCDE             Microsoft Access ACCDE Database                                  application/msaccess.exec
    ACCDR             Microsoft Access Runtime Application                             application/msaccess.runtime
    ACCDT             Microsoft Access Template                                        application/msaccess.template
    ACCDU             Microsoft Access Add-in Data                                     
    ACCDW             Microsoft Access Web Application                                 application/msaccess.webapplication
    ACCFT             Microsoft Access Template                                        application/msaccess.ftemplate
    ACCOUNTPICTURE-MS  Account Picture File                                             application/windows-accountpicture
    ACE                WinRAR                                                     
    ACL               AutoCorrect List File                                            
    ACROBATSECURITYSETTINGS  Adobe Acrobat Security Settings Document                         application/vnd.adobe.acrobat-security-settings
    ADE               Microsoft Access Project Extension                               application/msaccess
    ADN               Microsoft Access Blank Project Template                          
    ADP               Microsoft Access Project                                         application/msaccess
    ADT               ADTS Audio                                                       audio/vnd.dlna.adts
    ADTS              ADTS Audio                                                       audio/vnd.dlna.adts
    AIF               AIFF Format Sound                                                audio/aiff
    AIFC              AIFF Format Sound                                                audio/aiff
    AIFF              AIFF Format Sound                                                audio/aiff
    ANI               Animated Cursor                                                  
    APE               AIMP3: Monkey's Audio                                            
    API               API File                                                         
    APPLICATION       Application Manifest                                             application/x-ms-application
    APPREF-MS         Application Reference                                            
    ARJ                WinRAR                                                     
    ASA               ASA File                                                         
    ASF               Windows Media Audio/Video file                                   video/x-ms-asf
    ASP               ASP File                                                         
    ASX               Windows Media Audio/Video playlist                               video/x-ms-asf
    AU                AU Format Sound                                                  audio/basic
    AVI               Video Clip                                                       video/avi
    AW                Answer Wizard File                                               
    AZW               STDUViewer Amazon Kindle File                                    
    BAT               Windows Batch File                                               
    BLG               Performance Monitor File                                         
    BMP               Bitmap Image                                                     image/bmp
    BZ                 WinRAR                                                     
    BZ2                WinRAR                                                     
    C2R               C2R File                                                         
    CAB                WinRAR                                                     
    CAMP              WCS Viewing Condition Profile                                    
    CAT               Security Catalog                                                 application/vnd.ms-pki.seccat
    CBR               STDUViewer Comic Book Archive                                    
    CBZ               STDUViewer Comic Book Archive                                    
    CDA               CD Audio Track                                                   
    CDMP              WCS Device Profile                                               
    CDX               CDX File                                                         
    CDXML             CDXML File                                                       
    CER               Security Certificate                                             application/x-x509-ca-cert
    CHK               Recovered File Fragments                                         
    CHM               Compiled HTML Help file                                          
    CMD               Windows Command Script                                           
    COM               MS-DOS Application                                               
    COMPOSITEFONT     Composite Font File                                              
    CONTACT           Contact File                                                     text/x-ms-contact
    CPL               Control Panel Item                                               
    CRL               Certificate Revocation List                                      application/pkix-crl
    CRT               Security Certificate                                             application/x-x509-ca-cert
    CRTX               Microsoft Office Chart                                    
    CSS               Cascading Style Sheet Document                                   text/css
    CSV                Microsoft Excel,  ,    application/vnd.ms-excel
    CUR               Cursor                                                           
    DB                Data Base File                                                   
    DCTX              Open Extended Dictionary                                         
    DCTXC             Open Extended Dictionary                                         
    DCX               STDUViewer DCX File                                              
    DER               Security Certificate                                             application/x-x509-ca-cert
    DESKLINK          Desktop Shortcut                                                 
    DESKTHEMEPACK     Windows Desktop Theme Pack                                       
    DET                 Office                                               
    DIAGCAB           Diagnostic Cabinet                                               
    DIAGCFG           Diagnostic Configuration                                         
    DIAGPKG           Diagnostic Document                                              
    DIB               Bitmap Image                                                     image/bmp
    DIC               Text Document                                                    
    DJV               STDUViewer DjVu File                                             
    DJVU              STDUViewer DjVu File                                             
    DLL               Application Extension                                            application/x-msdownload
    DOC                Microsoft Word 972003                                  application/msword
    DOCHTML            Microsoft Word   HTML                           
    DOCM               Microsoft Word                       application/vnd.ms-word.document.macroEnabled.12
    DOCMHTML          DOCMHTML File                                                    
    DOCX               Microsoft Word                                          application/vnd.openxmlformats-officedocument.wordprocessingml.document
    DOCXML             Microsoft Word   XML                            
    DOT                Microsoft Word 972003                                    application/msword
    DOTHTML            Microsoft Word   HTML                             
    DOTM               Microsoft Word                         application/vnd.ms-word.template.macroEnabled.12
    DOTX               Microsoft Word                                            application/vnd.openxmlformats-officedocument.wordprocessingml.template
    DQY                 ODBC  Microsoft Excel                            
    DRV               Device Driver                                                    
    DSN               Microsoft OLE DB Provider for ODBC Drivers                       
    DVR               Microsoft Recorded TV Show                                       
    DVR-MS            Microsoft Recorded TV Show                                       video/x-ms-dvr
    DWFX              XPS Document                                                     model/vnd.dwfx+xps
    DZM               DZM                                                          
    DZP               DZP                                                          
    DZT               DZT                                                          
    EASMX             XPS Document                                                     model/vnd.easmx+xps
    EDRWX             XPS Document                                                     model/vnd.edrwx+xps
    ELM               Microsoft Office Themes File                                     
    EMF               EMF File                                                         image/x-emf
    EML                                                       
    EPRTX             XPS Document                                                     model/vnd.eprtx+xps
    EPUB              STDUViewer EPUB File                                             
    EVT               EVT File                                                         
    EVTX              EVTX File                                                        
    EXC               Text Document                                                    
    EXE               Application                                                      application/x-msdownload
    FB2.ZIP           STDUViewer FB2 File                                              
    FB2               STDUViewer FB2 File                                              
    FDF                 Adobe Acrobat                                      application/vnd.fdf
    FDM                 Outlook                                        
    FLAC              AIMP3: Free Lossless Audio                                       
    FON               Font file                                                        
    GCSX                 Microsoft Office SmartArt                  
    GIF               GIF Image                                                        image/gif
    GLOX                Microsoft Office SmartArt                          
    GMMP              WCS Gamut Mapping Profile                                        
    GQSX              -  Microsoft Office SmartArt                 
    GRA                Microsoft Graph                                        
    GROUP             Contact Group File                                               text/x-ms-group
    GRP               Microsoft Program Group                                          
    GZ                 WinRAR                                                     application/x-gzip
    HLP               Help File                                                        
    HOL                Outlook                                                
    HTA               HTML Application                                                 application/hta
    HTM               HTML Document                                                    text/html
    HTML              HTML Document                                                    text/html
    HXA               Microsoft Help Attribute Definition File                         application/xml
    HXC               Microsoft Help Collection Definition File                        application/xml
    HXD               Microsoft Help Validator File                                    application/octet-stream
    HXE               Microsoft Help Samples Definition File                           application/xml
    HXF               Microsoft Help Include File                                      application/xml
    HXH               Microsoft Help Merged Hierarchy File                             application/octet-stream
    HXI               Microsoft Help Compiled Index File                               application/octet-stream
    HXK               Microsoft Help Index File                                        application/xml
    HXQ               Microsoft Help Merged Query Index File                           application/octet-stream
    HXR               Microsoft Help Merged Attribute Index File                       application/octet-stream
    HXS               Microsoft Help Compiled Storage File                             application/octet-stream
    HXT               Microsoft Help Table of Contents File                            application/xml
    HXV               Microsoft Help Virtual Topic Definition File                     application/xml
    HXW               Microsoft Help Attribute Definition File                         application/octet-stream
    ICC               ICC Profile                                                      
    ICL               Icon Library                                                     
    ICM               ICC Profile                                                      
    ICO               Icon                                                             image/x-icon
    ICS                iCalendar                                                   text/calendar
    IMESX             IME Search provider definition                                   
    IMG               Disc Image File                                                  
    INF               Setup Information                                                
    INFOPATHXML        Microsoft InfoPath                                         application/ms-infopath.xml
    INI               Configuration Settings                                           
    IQY                -  Microsoft Excel                             text/x-ms-iqy
    ISO                WinRAR                                                     
    JAR               Executable Jar File                                              
    JB2               STDUViewer JBIG2 File                                            
    JBIG2             STDUViewer JBIG2 File                                            
    JFIF              JPEG Image                                                       image/jpeg
    JNLP              JNLP File                                                        application/x-java-jnlp-file
    JNT               Journal Document                                                 
    JOB               Task Scheduler Task Object                                       
    JOD               Microsoft.Jet.OLEDB.4.0                                          
    JPE               JPEG Image                                                       image/jpeg
    JPEG              JPEG Image                                                       image/jpeg
    JPG               JPEG Image                                                       image/jpeg
    JS                JavaScript File                                                  
    JSE               JScript Encoded File                                             
    JTP               Journal Template                                                 
    JTX               XPS Document                                                     application/x-jtx+xps
    JXR               Windows Media Photo                                              image/vnd.ms-photo
    LABEL             Property List                                                    
    LACCDB            Microsoft Access Record-Locking Information                      
    LDB               Microsoft Access Record-Locking Information                      
    LEX               Dictionary File                                                  
    LHA                WinRAR                                                     
    LIBRARY-MS        Library Folder                                                   application/windows-library+xml
    LNK               Shortcut                                                         
    LOG               Text Document                                                    
    LZH                WinRAR                                                     
    M1V               Movie Clip                                                       video/mpeg
    M2T               AVCHD Video                                                      video/vnd.dlna.mpeg-tts
    M2TS              AVCHD Video                                                      video/vnd.dlna.mpeg-tts
    M2V               Movie Clip                                                       video/mpeg
    M3U               M3U file                                                         audio/x-mpegurl
    M4A               MPEG-4 Audio                                                     audio/mp4
    M4V               MP4 Video                                                        video/mp4
    MAD               Microsoft Access Module Shortcut                                 
    MAF               Microsoft Access Form Shortcut                                   
    MAG               Microsoft Access Diagram Shortcut                                
    MAM               Microsoft Access Macro Shortcut                                  
    MAPIMAIL          Mail Service                                                     
    MAQ               Microsoft Access Query Shortcut                                  
    MAR               Microsoft Access Report Shortcut                                 
    MAS               Microsoft Access Stored Procedure Shortcut                       
    MAT               Microsoft Access Table Shortcut                                  
    MAU               MAU File                                                         
    MAV               Microsoft Access View Shortcut                                   
    MAW               Microsoft Access Data Access Page Shortcut                       
    MCL               MCL File                                                         
    MDA               Microsoft Access Add-in                                          application/msaccess
    MDB               Microsoft Access Database                                        application/msaccess
    MDBHTML           Microsoft Access HTML Document                                   
    MDE               Microsoft Access MDE Database                                    application/msaccess
    MDN               Microsoft Access Blank Database Template                         
    MDT               Microsoft Access Add-in Data                                     
    MDW               Microsoft Access Workgroup Information                           
    MFP               Macromedia Flash Paper                                           application/x-shockwave-flash
    MHT               MHTML Document                                                   message/rfc822
    MHTML             MHTML Document                                                   message/rfc822
    MID               MIDI Sequence                                                    audio/mid
    MIDI              MIDI Sequence                                                    audio/mid
    MIG               Migration Store                                                  
    MLC               Language Pack File_                                              
    MOBI              STDUViewer MobiPocket Reader File                                
    MOD               Movie Clip                                                       video/mpeg
    MOV               QuickTime Movie                                                  video/quicktime
    MP2               MP3 Format Sound                                                 audio/mpeg
    MP2V              Movie Clip                                                       video/mpeg
    MP3               MP3 Format Sound                                                 audio/mpeg
    MP4               MP4 Video                                                        video/mp4
    MP4V              MP4 Video                                                        video/mp4
    MPA               Movie Clip                                                       audio/mpeg
    MPC               AIMP3: MusePack Audio                                            
    MPE               Movie Clip                                                       video/mpeg
    MPEG              Movie Clip                                                       video/mpeg
    MPG               Movie Clip                                                       video/mpeg
    MPV2              Movie Clip                                                       video/mpeg
    MSC               Microsoft Common Console Document                                
    MSG                Outlook                                                  
    MSI               Windows Installer Package                                        
    MS-ONE-STUB        Microsoft OneNote                                       
    MSP               Windows Installer Patch                                          
    MSRCINCIDENT      Windows Remote Assistance Invitation                             
    MSSTYLES          Windows Visual Style File                                        
    MSU               Microsoft Update Standalone Package                              
    MTS               AVCHD Video                                                      video/vnd.dlna.mpeg-tts
    MYDOCS            MyDocs Drop Target                                               
    NFO               MSInfo Configuration File                                        
    NK2                 Outlook                                         
    OCX               ActiveX control                                                  
    ODC               Microsoft Office Data Connection                                 text/x-ms-odc
    ODCCUBEFILE       ODCCUBEFILE File                                                 
    ODCDATABASEFILE   ODCDATABASEFILE File                                             
    ODCNEWFILE        ODCNEWFILE File                                                  
    ODCTABLECOLLECTIONFILE  ODCTABLECOLLECTIONFILE File                                      
    ODCTABLEFILE      ODCTABLEFILE File                                                
    ODP                OpenDocument                                         application/vnd.oasis.opendocument.presentation
    ODS                 OpenDocument                                 application/vnd.oasis.opendocument.spreadsheet
    ODT                OpenDocument                                               application/vnd.oasis.opendocument.text
    OEX               OEX File                                                         
    OFS                 Outlook                                             
    OFT                 Outlook                                          
    OLS                  Office                                          application/vnd.ms-publisher
    ONE                Microsoft OneNote                                         application/msonenote
    ONEPKG             Microsoft OneNote,                   application/msonenote
    ONETOC             Microsoft OneNote 2003                                
    ONETOC2            Microsoft OneNote                                     
    OPC               Microsoft Clean-up Wizard File                                   
    OQY                 OLAP  Microsoft Excel                            
    OSDX              OpenSearch Description File                                      application/opensearchdescription+xml
    OST                 Outlook                                              
    OTF               OpenType Font file                                               
    OTM                 Outlook VBA                                         
    OXPS              XPS Document                                                     
    P10               Certificate Request                                              application/pkcs10
    P12               Personal Information Exchange                                    application/x-pkcs12
    P7B               PKCS #7 Certificates                                             application/x-pkcs7-certificates
    P7C               Digital ID File                                                  application/pkcs7-mime
    P7M               PKCS #7 MIME Message                                             application/pkcs7-mime
    P7R               Certificate Request Response                                     application/x-pkcs7-certreqresp
    P7S               PKCS #7 Signature                                                application/pkcs7-signature
    PAB                  Outlook                                    
    PARTIAL           Partial Download                                                 
    PBK               Dial-Up Phonebook                                                
    PCB               PCB File                                                         
    PCX               STDUViewer DCX File                                              
    PDB               STDUViewer PDB File                                              
    PDF               Adobe Acrobat Document                                           application/pdf
    PDFXML            Adobe Acrobat PDFXML Document                                    application/vnd.adobe.pdfxml
    PDX                Acrobat Catalog                                           application/vnd.adobe.pdx
    PERFMONCFG        Performance Monitor Configuration                                
    PFM               Type 1 Font file                                                 
    PFX               Personal Information Exchange                                    application/x-pkcs12
    PIF               Shortcut to MS-DOS Program                                       
    PKO               Public Key Security Object                                       application/vnd.ms-pki.pko
    PNF               Precompiled Setup Information                                    
    PNG               PNG Image                                                        image/png
    POT                Microsoft PowerPoint 972003                              application/vnd.ms-powerpoint
    POTHTML           HTML- Microsoft PowerPoint                                 
    POTM                Microsoft PowerPoint        application/vnd.ms-powerpoint.template.macroEnabled.12
    POTX               Microsoft PowerPoint                                      application/vnd.openxmlformats-officedocument.presentationml.template
    PPA                Microsoft PowerPoint 972003                          application/vnd.ms-powerpoint
    PPAM               Microsoft PowerPoint                                  application/vnd.ms-powerpoint.addin.macroEnabled.12
    PPS                 Microsoft PowerPoint 972003                       application/vnd.ms-powerpoint
    PPSM                Microsoft PowerPoint            application/vnd.ms-powerpoint.slideshow.macroEnabled.12
    PPSX                Microsoft PowerPoint                               application/vnd.openxmlformats-officedocument.presentationml.slideshow
    PPT                Microsoft PowerPoint 972003                         application/vnd.ms-powerpoint
    PPTHTML           HTML- Microsoft PowerPoint                               
    PPTM               Microsoft PowerPoint              application/vnd.ms-powerpoint.presentation.macroEnabled.12
    PPTMHTML          PPTMHTML File                                                    
    PPTX               Microsoft PowerPoint                                 application/vnd.openxmlformats-officedocument.presentationml.presentation
    PPTXML            XML- Microsoft PowerPoint                             
    PRF               PICS Rules File                                                  application/pics-rules
    PRINTEREXPORT     Printer Migration File                                           
    PS1               PS1 File                                                         
    PS1XML            PS1XML File                                                      
    PSC1              PSC1 File                                                        application/PowerShell
    PSD1              PSD1 File                                                        
    PSM1              PSM1 File                                                        
    PSSC              PSSC File                                                        
    PST                 Outlook                                              
    PUB                Microsoft Publisher                                     application/vnd.ms-publisher
    PUBHTML           PUBHTML File                                                     
    PUBMHTML          PUBMHTML File                                                    
    PWZ                Microsoft PowerPoint                                      application/vnd.ms-powerpoint
    QDS               Directory Query                                                  
    R00                WinRAR                                                     
    R01                WinRAR                                                     
    R02                WinRAR                                                     
    R03                WinRAR                                                     
    R04                WinRAR                                                     
    R05                WinRAR                                                     
    R06                WinRAR                                                     
    R07                WinRAR                                                     
    R08                WinRAR                                                     
    R09                WinRAR                                                     
    R10                WinRAR                                                     
    R11                WinRAR                                                     
    R12                WinRAR                                                     
    R13                WinRAR                                                     
    R14                WinRAR                                                     
    R15                WinRAR                                                     
    R16                WinRAR                                                     
    R17                WinRAR                                                     
    R18                WinRAR                                                     
    R19                WinRAR                                                     
    R20                WinRAR                                                     
    R21                WinRAR                                                     
    R22                WinRAR                                                     
    R23                WinRAR                                                     
    R24                WinRAR                                                     
    R25                WinRAR                                                     
    R26                WinRAR                                                     
    R27                WinRAR                                                     
    R28                WinRAR                                                     
    R29                WinRAR                                                     
    RAR                WinRAR                                                     
    RAT               Rating System File                                               application/rat-file
    RDP               Remote Desktop Connection                                        
    REG               Registration Entries                                             
    RELS              XML Document                                                     
    RESMONCFG         Resource Monitor Configuration                                   
    REV                RAR                                         
    RLE               RLE File                                                         
    RLL               Application Extension                                            
    RMI               MIDI Sequence                                                    audio/mid
    RQY                 OLE DB  Microsoft Excel                          text/x-ms-rqy
    RTF                RTF                                                       application/msword
    SCF               File Explorer Command                                            
    SCP               Text Document                                                    
    SCR               Screen saver                                                     
    SCT               Windows Script Component                                         text/scriptlet
    SEARCHCONNECTOR-MS  Search Connector Folder                                          application/windows-search-connector+xml
    SEARCH-MS         Saved Search                                                     
    SECSTORE          SECSTORE File                                                    
    SFCACHE           ReadyBoost Cache File                                            
    SKYPE             Skype Content                                                    application/x-skype
    SLDM               Microsoft PowerPoint                    application/vnd.ms-powerpoint.slide.macroEnabled.12
    SLDX               Microsoft PowerPoint                                       application/vnd.openxmlformats-officedocument.presentationml.slide
    SLK                  Microsoft Excel SLK                        application/vnd.ms-excel
    SND               AU Format Sound                                                  audio/basic
    SPC               PKCS #7 Certificates                                             application/x-pkcs7-certificates
    SPL               Shockwave Flash Object                                           application/futuresplash
    SST               Microsoft Serialized Certificate Store                           application/vnd.ms-pki.certstore
    STL               Certificate Trust List                                           application/vnd.ms-pki.stl
    SVG               SVG Document                                                     image/svg+xml
    SWF               Shockwave Flash Object                                           application/x-shockwave-flash
    SYS               System file                                                      
    TAR                WinRAR                                                     application/x-tar
    TAZ                WinRAR                                                     
    TBZ                WinRAR                                                     
    TBZ2               WinRAR                                                     
    TCR               STDUViewer TCR File                                              
    TGZ                WinRAR                                                     application/x-compressed
    THEME             Windows Theme File                                               
    THEMEPACK         Windows Theme Pack                                               
    THMX               Microsoft Office                                            application/vnd.ms-officetheme
    TIF               TIF File                                                         image/tiff
    TIFF              TIFF File                                                        image/tiff
    TS                MPEG-2 TS Video                                                  video/vnd.dlna.mpeg-tts
    TTC               TrueType Collection Font file                                    
    TTF               TrueType Font file                                               
    TTS               MPEG-2 TS Video                                                  video/vnd.dlna.mpeg-tts
    TXT               Text Document                                                    text/plain
    UDL               Microsoft Data Link                                              
    URL               URL File                                                         
    UU                 WinRAR                                                     
    UUE                WinRAR                                                     
    UXDC              UXDC File                                                        
    VBE               VBScript Encoded File                                            
    VBS               VBScript Script File                                             
    VCF                vCard                                                       text/x-vcard
    VCS                vCalendar                                                   
    VDW               Microsoft Visio Document                                         application/vnd.ms-visio.viewer
    VDX               Microsoft Visio Document                                         application/vnd.ms-visio.viewer
    VHD               Disc Image File                                                  
    VHDX              Disc Image File                                                  
    VSD               Microsoft Visio Document                                         application/vnd.ms-visio.viewer
    VSDM              Microsoft Visio Document                                         application/vnd.ms-visio.viewer
    VSDX              Microsoft Visio Document                                         application/vnd.ms-visio.viewer
    VSS               Microsoft Visio Document                                         application/vnd.ms-visio.viewer
    VSSM              Microsoft Visio Document                                         application/vnd.ms-visio.viewer
    VSSX              Microsoft Visio Document                                         application/vnd.ms-visio.viewer
    VST               Microsoft Visio Document                                         application/vnd.ms-visio.viewer
    VSTM              Microsoft Visio Document                                         application/vnd.ms-visio.viewer
    VSTO              VSTO Deployment Manifest                                         application/x-ms-vsto
    VSTX              Microsoft Visio Document                                         application/vnd.ms-visio.viewer
    VSX               Microsoft Visio Document                                         application/vnd.ms-visio.viewer
    VTX               Microsoft Visio Document                                         application/vnd.ms-visio.viewer
    VXD               Virtual Device Driver                                            
    WAB               Address Book File                                                
    WAV               Wave Sound                                                       audio/wav
    WAX               Windows Media Audio shortcut                                     audio/x-ms-wax
    WBCAT             Windows Backup Catalog File                                      
    WBK                  Microsoft Word                          application/msword
    WCX               Workspace Configuration File                                     
    WDP               Windows Media Photo                                              image/vnd.ms-photo
    WEBPNP            Web Point And Print File                                         
    WEBSITE           Pinned Site Shortcut                                             application/x-mswebsite
    WIZ                Microsoft Word                                            application/msword
    WIZHTML           Microsoft Access HTML Template                                   
    WLL               WLL File                                                         
    WM                Windows Media Audio/Video file                                   video/x-ms-wm
    WMA               Windows Media Audio file                                         audio/x-ms-wma
    WMD               Windows Media Player Download Package                            application/x-ms-wmd
    WMDB              Windows Media Library                                            
    WMF               WMF File                                                         image/x-wmf
    WMS               Windows Media Player Skin File                                   
    WMV               Windows Media Audio/Video file                                   video/x-ms-wmv
    WMX               Windows Media Audio/Video playlist                               video/x-ms-wmx
    WMZ               Windows Media Player Skin Package                                application/x-ms-wmz
    WPL               Windows Media playlist                                           application/vnd.ms-wpl
    WSC               Windows Script Component                                         text/scriptlet
    WSF               Windows Script File                                              
    WSH               Windows Script Host Settings File                                
    WTV               Windows Recorded TV Show                                         video/x-ms-wtv
    WTX               Text Document                                                    
    WVX               Windows Media Audio/Video playlist                               video/x-ms-wvx
    WWF               STDUViewer WWF File                                              
    XAML              Windows Markup File                                              application/xaml+xml
    XBAP              XAML Browser Application                                         application/x-ms-xbap
    XDP                  XML  Adobe Acrobat                         application/vnd.adobe.xdp+xml
    XEVGENXML         XEVGENXML File                                                   
    XFDF                Adobe Acrobat                                      application/vnd.adobe.xfdf
    XHT               XHTML Document                                                   application/xhtml+xml
    XHTML             XHTML Document                                                   application/xhtml+xml
    XLA                Microsoft Excel                                       application/vnd.ms-excel
    XLAM               Microsoft Excel                                       application/vnd.ms-excel.addin.macroEnabled.12
    XLD                 Microsoft Excel 5.0                                application/vnd.ms-excel
    XLK                  Microsoft Excel                             application/vnd.ms-excel
    XLL                Microsoft Excel XLL                                   application/vnd.ms-excel
    XLM                Microsoft Excel 4.0                                       application/vnd.ms-excel
    XLS                Microsoft Excel 97-2003                                     application/vnd.ms-excel
    XLSB                Microsoft Excel                                    application/vnd.ms-excel.sheet.binary.macroEnabled.12
    XLSHTML            Microsoft Excel   HTML                          
    XLSM               Microsoft Excel                          application/vnd.ms-excel.sheet.macroEnabled.12
    XLSMHTML          XLSMHTML File                                                    
    XLSX               Microsoft Excel                                             application/vnd.openxmlformats-officedocument.spreadsheetml.sheet
    XLT                Microsoft Excel                                           application/vnd.ms-excel
    XLTHTML            Microsoft Excel   HTML                            
    XLTM               Microsoft Excel                        application/vnd.ms-excel.template.macroEnabled.12
    XLTX               Microsoft Excel                                           application/vnd.openxmlformats-officedocument.spreadsheetml.template
    XLW                 Microsoft Excel                                  application/vnd.ms-excel
    XLXML              Microsoft Excel   XML                               
    XML               XML Document                                                     text/xml
    XPS               XPS Document                                                     application/vnd.ms-xpsdocument
    XRM-MS            XrML Digital License                                             text/xml
    XSF                  Microsoft InfoPath                        
    XSL               XSL Stylesheet                                                   text/xml
    XSN                 Microsoft InfoPath                                  
    XTP               Microsoft InfoPath Template Part File                            
    XTP2              Microsoft InfoPath Template Part File                            
    XXE                WinRAR                                                     
    Z                  WinRAR                                                     application/x-compress
    ZFSENDTOTARGET    Compressed (zipped) Folder SendTo Target                         
    ZIP                ZIP - WinRAR                                               application/x-zip-compressed


--------[  Windows ]----------------------------------------------------------------------------------------

      :
                                              Microsoft Windows 8 Professional with Media Center
                                       -
      Winlogon Shell                                    explorer.exe
          (UAC)   ( )
                                   

       (DEP, NX, EDB):
                                        
                                        
       ( )                       
       ( )                        


--------[  Windows ]------------------------------------------------------------------------------------------

    (Automatic Update)                                                                Download:Notify, Install:Notify  
       Windows 7.8.9200.16924                                                19.10.2014
      Windows 8      x64 (KB2877213)                       21.10.2014
      Windows 8      x64 (KB2891804)                       21.10.2014
      Windows 8      x64 (KB2998527)                       21.10.2014
        .NET Framework 3.5  64- (x64)  Windows 8  Windows Server 2012 (KB2931357)              21.10.2014
        .NET Framework 3.5  64- (x64)  Windows 8  Windows Server 2012 (KB2966827)              21.10.2014
        Windows 8     64- (x64)  (KB2978742)              21.10.2014
        Windows  Windows 8, 8.1  Windows Server 2012, 2012 R2 ( 64) -  2014 . (KB890830)              21.10.2014


--------[  ]---------------------------------------------------------------------------------------------------

    Eset Smart Security                                  7.0.302.0                                21.10.2014         ?
    Windows Defender                                    4.2.0223.0                                05.07.2013         ?


--------[  ]--------------------------------------------------------------------------------------------------

     Windows                              6.2.9200.16384  
    Eset Smart Security                                  7.0.302.0  ?


--------[   ]--------------------------------------------------------------------------------------

     :
                                    RTZ 2 ()
                            (UTC+03:00) , , - (RTZ 2)
                               Last Sunday of October 2:00:00
                                    First Wednesday of January 0:00:00

    :
       (.)                                      
       (.)                                      Russian
       (ISO 639)                                    ru

    /:
       (.)                                    
       (.)                                    Russia
       (ISO 3166)                                 RU
                                               7

     :
        (.)                          
        (.)                          Russian Ruble
         (.)                   .
         (ISO 4217)                RUB
                                      123456789,00 .
                         -123456789,00 .

    :
                                           H:mm:ss
                                       dd.MM.yyyy
                                        d MMMM yyyy '.'
                                       123456789,00
                          -123456789,00
                                            first; second; third
                                               0123456789

     :
                                       / 
                                           / 
                                              / 
                                           / 
                                            / 
                                            / 
                                        / 

    :
                                             / 
                                            / 
                                              / 
                                             / 
                                                / 
                                               / 
                                               / 
                                            / 
                                           / 
                                            / 
                                             / 
                                            / 

    :
                                            Gregorian (localized)
                                 A4
                                        

    :
      LCID 0419h ()                              ()


--------[  ]---------------------------------------------------------------------------------------------------

    ALLUSERSPROFILE           C:\ProgramData
    APPDATA                   C:\Users\ᠭ 誥\AppData\Roaming
    CommonProgramFiles(x86)   C:\Program Files (x86)\Common Files
    CommonProgramFiles        C:\Program Files (x86)\Common Files
    CommonProgramW6432        C:\Program Files\Common Files
    COMPUTERNAME              ACER
    ComSpec                   C:\Windows\system32\cmd.exe
    ESET_OPTIONS                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                             
    FP_NO_HOST_CHECK          NO
    HOMEDRIVE                 C:
    HOMEPATH                  \Users\ᠭ 誥
    LOCALAPPDATA              C:\Users\ᠭ 誥\AppData\Local
    LOGONSERVER               \\MicrosoftAccount
    NUMBER_OF_PROCESSORS      4
    OS                        Windows_NT
    Path                      C:\ProgramData\Oracle\Java\javapath;C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\Intel\OpenCL SDK\2.0\bin\x86;C:\Program Files (x86)\Intel\OpenCL SDK\2.0\bin\x64
    PATHEXT                   .COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
    PROCESSOR_ARCHITECTURE    x86
    PROCESSOR_ARCHITEW6432    AMD64
    PROCESSOR_IDENTIFIER      Intel64 Family 6 Model 42 Stepping 7, GenuineIntel
    PROCESSOR_LEVEL           6
    PROCESSOR_REVISION        2a07
    ProgramData               C:\ProgramData
    ProgramFiles(x86)         C:\Program Files (x86)
    ProgramFiles              C:\Program Files (x86)
    ProgramW6432              C:\Program Files
    PSModulePath              C:\Windows\system32\WindowsPowerShell\v1.0\Modules\
    PUBLIC                    C:\Users\Public
    SystemDrive               C:
    SystemRoot                C:\Windows
    TEMP                      C:\Users\E4C8~1\AppData\Local\Temp
    TMP                       C:\Users\E4C8~1\AppData\Local\Temp
    USERDOMAIN_ROAMINGPROFILE  ACER
    USERDOMAIN                ACER
    USERNAME                  ᠭ 誥
    USERPROFILE               C:\Users\ᠭ 誥
    windir                    C:\Windows


--------[   ]-------------------------------------------------------------------------------------------

    Flash Player                                Flash Player
    Java                                      Java Control Panel


--------[  ]-----------------------------------------------------------------------------------------------------

    C:       356          9      ?  ?
    D:      6756          1      ?  ?


--------[   ]---------------------------------------------------------------------------------------------

  [ system.ini ]

    ; for 16-bit app support
    [386Enh]
    woafont=dosapp.fon
    EGA80WOA.FON=EGA80WOA.FON
    EGA40WOA.FON=EGA40WOA.FON
    CGA80WOA.FON=CGA80WOA.FON
    CGA40WOA.FON=CGA40WOA.FON
    
    [drivers]
    wave=mmdrv.dll
    timer=timer.drv
    
    [mci]

  [ win.ini ]

    ; for 16-bit app support
    [fonts]
    [extensions]
    [mci extensions]
    [files]
    [Mail]
    MAPI=1
    CMCDLLNAME32=mapi32.dll
    CMC=1
    MAPIX=1
    MAPIXVER=1.0.0.1
    OLEMessaging=1

  [ hosts ]

    

  [ lmhosts.sam ]

    
    
    
    


--------[   ]---------------------------------------------------------------------------------------------

    Administrative Tools         C:\Users\ \AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
    AppData                      C:\Users\ \AppData\Roaming
    Cache                        C:\Users\ \AppData\Local\Microsoft\Windows\Temporary Internet Files
    CD Burning                   C:\Users\ \AppData\Local\Microsoft\Windows\Burn\Burn
    Common Administrative Tools  C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
    Common AppData               C:\ProgramData
    Common Desktop               C:\Users\Public\Desktop
    Common Documents             C:\Users\Public\Documents
    Common Favorites             C:\Users\ \Favorites
    Common Files (x86)           C:\Program Files (x86)\Common Files
    Common Files                 C:\Program Files (x86)\Common Files
    Common Music                 C:\Users\Public\Music
    Common Pictures              C:\Users\Public\Pictures
    Common Programs              C:\ProgramData\Microsoft\Windows\Start Menu\Programs
    Common Start Menu            C:\ProgramData\Microsoft\Windows\Start Menu
    Common Startup               C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
    Common Templates             C:\ProgramData\Microsoft\Windows\Templates
    Common Video                 C:\Users\Public\Videos
    Cookies                      C:\Users\ \AppData\Roaming\Microsoft\Windows\Cookies
    Desktop                      C:\Users\ \Desktop
    Device                       C:\Windows\inf
    Favorites                    C:\Users\ \Favorites
    Fonts                        C:\Windows\Fonts
    History                      C:\Users\ \AppData\Local\Microsoft\Windows\History
    Local AppData                C:\Users\ \AppData\Local
    My Documents                 C:\Users\ \Documents
    My Music                     C:\Users\ \Music
    My Pictures                  C:\Users\ \Pictures
    My Video                     C:\Users\ \Videos
    NetHood                      C:\Users\ \AppData\Roaming\Microsoft\Windows\Network Shortcuts
    PrintHood                    C:\Users\ \AppData\Roaming\Microsoft\Windows\Printer Shortcuts
    Profile                      C:\Users\ 
    Program Files (x86)          C:\Program Files (x86)
    Program Files                C:\Program Files (x86)
    Programs                     C:\Users\ \AppData\Roaming\Microsoft\Windows\Start Menu\Programs
    Recent                       C:\Users\ \AppData\Roaming\Microsoft\Windows\Recent
    Resources                    C:\Windows\resources
    SendTo                       C:\Users\ \AppData\Roaming\Microsoft\Windows\SendTo
    Start Menu                   C:\Users\ \AppData\Roaming\Microsoft\Windows\Start Menu
    Startup                      C:\Users\ \AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
    System (x86)                 C:\Windows\SysWOW64
    System                       C:\Windows\system32
    Temp                         C:\Users\E4C8~1\AppData\Local\Temp\
    Templates                    C:\Users\ \AppData\Roaming\Microsoft\Windows\Templates
    Windows                      C:\Windows


--------[   ]-------------------------------------------------------------------------------------------

                         2014-10-17 21:18:15                                  Windows Search Service Profile Notification  2: 
                       2014-10-17 21:18:15                           Microsoft-Windows-User Profiles Service  1534: 
               1          2014-10-17 21:18:15                                  Windows Search Service          1008:  Windows Search        (:   ).    
                       2014-10-17 21:22:45                           Microsoft-Windows-User Profiles Service  1530: 
                         2014-10-17 21:36:04                                  RasClient                       20227: CoID={5CAD6167-5D49-4B7D-9C79-F1BA80F955B0}:  acer\     Wimax,   .    0.  
                       2014-10-17 21:42:30                           Microsoft-Windows-User Profiles Service  1530: 
                         2014-10-17 21:45:34                                  Perflib                         
                         2014-10-17 21:45:37                                  Perflib                         
                 100        2014-10-17 21:45:58                                  Application Error               1000:   : egui.exe, : 7.0.302.0,  : 0x5231910a    : KERNELBASE.dll, : 6.2.9200.16384,  : 0x5010ab2d   : 0xc0000005   : 0x00000000000067b5    : 0x9e0     : 0x01cfea31e49bdbf5    : C:\Program Files\ESET\ESET Smart Security\egui.exe    : C:\Windows\system32\KERNELBASE.dll   : 730e419a-5625-11e4-be73-64273772fa17     :    ,    :   
                       2014-10-17 21:46:40                           Microsoft-Windows-User Profiles Service  1530: 
                       2014-10-17 21:57:26                           Microsoft-Windows-User Profiles Service  1530: 
                       2014-10-17 22:35:14                           Microsoft-Windows-User Profiles Service  1530: 
                 2414       2014-10-17 22:57:39                 Microsoft-Windows-Immersive-Shell  2486:  windows.immersivecontrolpanel_cw5n1h2txyewy!microsoft.windows.immersivecontrolpanel     .  
                       2014-10-17 22:58:47                           Microsoft-Windows-User Profiles Service  1530: 
                         2014-10-17 23:20:18                                  SideBySide                      33:       "D:\Games\Grand Theft Auto IV\GTAIV.exe".      "Microsoft.VC80.ATL,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.762"".   sxstrace.exe   .  
                         2014-10-17 23:47:39                                  SideBySide                      33:       "D:\Games\Grand Theft Auto IV\GTAIV.exe".      "Microsoft.VC80.ATL,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.762"".   sxstrace.exe   .  
                         2014-10-17 23:50:18                                  SideBySide                      33:       "D:\Games\Grand Theft Auto IV\GTAIV.exe".      "Microsoft.VC80.ATL,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.762"".   sxstrace.exe   .  
                         2014-10-17 23:50:35                                  SideBySide                      33:       "D:\Games\Grand Theft Auto IV\gta4Browser.exe".      "Microsoft.VC80.ATL,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.762"".   sxstrace.exe   .  
                         2014-10-17 23:50:42                                  SideBySide                      33:       "D:\Games\Grand Theft Auto IV\GTAIV.exe".      "Microsoft.VC80.ATL,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.762"".   sxstrace.exe   .  
                         2014-10-17 23:50:50                                  SideBySide                      33:       "D:\Games\Grand Theft Auto IV\GTAIV.exe".      "Microsoft.VC80.ATL,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.762"".   sxstrace.exe   .  
                       2014-10-18 00:12:58                           Microsoft-Windows-User Profiles Service  1530: 
                       2014-10-18 04:35:49                           Microsoft-Windows-User Profiles Service  1530: 
               7          2014-10-18 06:59:02                                  ESENT                           910: svchost (1344)        60 ,    .       .      2      (120    ).       : 0;     : 7678;      : 0.      : 3840.  
                         2014-10-18 07:04:21                                  RasClient                       20227: CoID={E2C5A2ED-06DC-48B5-B8EE-CF8238E23F14}:  SYSTEM    Wimax,   .    651.  
                       2014-10-18 07:31:00                           Microsoft-Windows-User Profiles Service  1530: 
                       2014-10-18 13:40:09                           Microsoft-Windows-User Profiles Service  1530: 
                       2014-10-18 17:29:54                 Microsoft-Windows-ApplicationExperienceInfrastructure  1:   (Nero - Burning Rom,  Ahead Software)   :  Nero - Burning Rom     Windows.       Ahead Software.  
                 2414       2014-10-18 17:41:19                 Microsoft-Windows-Immersive-Shell  2486:  microsoft.windowsphotos_8wekyb3d8bbwe!Microsoft.WindowsLive.ModernPhotos     .  
                 101        2014-10-18 17:41:25                                  Application Hang                1002: 
                       2014-10-18 17:49:57                           Microsoft-Windows-User Profiles Service  1530: 
                       2014-10-18 18:21:29                           Microsoft-Windows-User Profiles Service  1530: 
                       2014-10-19 11:30:37                 Microsoft-Windows-System-Restore  8303: 
                 2414       2014-10-19 11:55:32                 Microsoft-Windows-Immersive-Shell  2486:  Microsoft.ZuneVideo_8wekyb3d8bbwe!Microsoft.ZuneVideo     .  
                       2014-10-19 12:00:15                           Microsoft-Windows-User Profiles Service  1530: 
                 2414       2014-10-19 12:07:21                 Microsoft-Windows-Immersive-Shell  2486:  Microsoft.ZuneVideo_8wekyb3d8bbwe!Microsoft.ZuneVideo     .  
                 100        2014-10-19 12:22:16                                  Application Error               1000:   : Explorer.EXE, : 6.2.9200.16384,  : 0x50107dbc    : ntdll.dll, : 6.2.9200.16579,  : 0x51637f77   : 0xc0000005   : 0x000000000001af08    : 0xcb8     : 0x01cfeb72e953b1d1    : C:\Windows\Explorer.EXE    : C:\Windows\SYSTEM32\ntdll.dll   : 08c501f9-5769-11e4-be78-dc0ea18fbcff     :    ,    :   
                       2014-10-19 14:10:56                           Microsoft-Windows-User Profiles Service  1530: 
                       2014-10-19 16:06:42                           Microsoft-Windows-User Profiles Service  1530: 
                 2414       2014-10-19 17:15:56                 Microsoft-Windows-Immersive-Shell  2486:  Microsoft.Camera_8wekyb3d8bbwe!Microsoft.Camera     .  
                       2014-10-19 17:21:05                           Microsoft-Windows-User Profiles Service  1530: 
                 2414       2014-10-20 00:45:27                 Microsoft-Windows-Immersive-Shell  2486:  microsoft.windowsphotos_8wekyb3d8bbwe!Microsoft.WindowsLive.ModernPhotos     .  
                       2014-10-20 07:26:51                                  Wlclntfy                        6005: 
                       2014-10-20 07:27:14                                  Wlclntfy                        6006: 
                         2014-10-20 07:27:57                                  .NET Runtime                    1026: : IAStorDataMgrSvc.exe  : v4.0.30319 .    -  .   : System.TypeInitializationException :     IAStorViewModel.DataViewModels.CacheViewModel..ctor(PSI.NvcData)     IAStorViewModel.DataViewModels.ControllerViewModel.InitializeController()     IAStorViewModel.DataViewModels.ControllerViewModel..ctor(PSI.ControllerData)     IAStorDataMgr.EventRelay.<Start>b__0(System.Object)     System.Threading.QueueUserWorkItemCallback.WaitCallback_Context(System.Object)     System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)     System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)     System.Threading.QueueUserWorkItemCallback.System.Threading.IThreadPoolWorkItem.ExecuteWorkItem()     System.Threading.ThreadPoolWorkQueue.Dispatch()     System.Threading._ThreadPoolWaitCallback.PerformWaitCallback()   
                 100        2014-10-20 07:27:59                                  Application Error               1000:   : IAStorDataMgrSvc.exe, : 11.5.0.1207,  : 0x4ffb4350    : KERNELBASE.dll, : 6.2.9200.16384,  : 0x5010ac2f   : 0xe0434352   : 0x00014b32    : 0xb9c     : 0x01cfec15c4b760ad    : C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe    : C:\Windows\SYSTEM32\KERNELBASE.dll   : 16df06e7-5809-11e4-be7b-64273772fa17     :    ,    :   
                       2014-10-20 07:29:56                                  Wlclntfy                        6004: 
                 100        2014-10-20 17:24:53                                  Application Error               1000:   : Explorer.EXE, : 6.2.9200.16384,  : 0x50107dbc    : ntdll.dll, : 6.2.9200.16579,  : 0x51637f77   : 0xc0000374   : 0x00000000000ebd59    : 0xc50     : 0x01cfec1658500dfd    : C:\Windows\Explorer.EXE    : C:\Windows\SYSTEM32\ntdll.dll   : 799cbc43-585c-11e4-be7c-6416f0a1c295     :    ,    :   
                 100        2014-10-20 17:27:34                                  Application Error               1000:   : explorer.exe, : 6.2.9200.16384,  : 0x50107dbc    : msxml6.dll, : 6.30.9200.16447,  : 0x5091de10   : 0xc0000005   : 0x00000000000db752    : 0x42c     : 0x01cfec6941f44b86    : C:\Windows\explorer.exe    : C:\Windows\System32\msxml6.dll   : d952b646-585c-11e4-be7c-6416f0a1c295     :    ,    :   
                 2400       2014-10-20 17:39:26                 Microsoft-Windows-Immersive-Shell  2484:   winstore_1.0.0.0_neutral_neutral_cw5n1h2txyewy ,        .  
                 101        2014-10-20 17:39:29                                  Application Hang                1002: 
                         2014-10-20 17:41:31                                  .NET Runtime                    1026: : wwahost.exe  : v4.0.30319 .    -  .   : System.UnauthorizedAccessException :     System.Runtime.CompilerServices.AsyncMethodBuilderCore.<ThrowAsync>b__1(System.Object)     System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)     System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)     System.Threading.QueueUserWorkItemCallback.System.Threading.IThreadPoolWorkItem.ExecuteWorkItem()     System.Threading.ThreadPoolWorkQueue.Dispatch()   
                 100        2014-10-20 17:41:31                                  Application Error               1000:   : wwahost.exe, : 6.2.9200.16384,  : 0x50107c6e    : KERNELBASE.dll, : 6.2.9200.16384,  : 0x5010ab2d   : 0xe0434352   : 0x00000000000189cc    : 0x888     : 0x01cfec6b20a52c77    : C:\Windows\system32\wwahost.exe    : C:\Windows\system32\KERNELBASE.dll   : cc68ebba-585e-11e4-be7c-6416f0a1c295     : Microsoft.BingWeather_1.2.0.135_x64__8wekyb3d8bbwe   ,    : App  
                 3          2014-10-20 18:04:32                                  ESENT                           454: wwahost (388) ModernDatalayerESE:      .   -545.  
                       2014-10-20 21:20:57                           Microsoft-Windows-User Profiles Service  1530: 
                       2014-10-20 21:23:10                           Microsoft-Windows-User Profiles Service  1530: 
                       2014-10-20 21:25:53                           Microsoft-Windows-User Profiles Service  1530: 
                 100        2014-10-20 21:39:11                                  Application Error               1000:   : Explorer.EXE, : 6.2.9200.16384,  : 0x50107dbc    : unknown, : 0.0.0.0,  : 0x00000000   : 0xc0000005   : 0x0000000007e60fd8    : 0x1bc     : 0x01cfec8b0c576bc0    : C:\Windows\Explorer.EXE    : unknown   : 0026ca35-5880-11e4-be7d-6416f0a1c295     :    ,    :   
                 100        2014-10-20 21:53:41                                  Application Error               1000:   : explorer.exe, : 6.2.9200.16384,  : 0x50107dbc    : igd10umd64.dll, : 9.17.10.2843,  : 0x5033bf56   : 0xc0000094   : 0x000000000043a833    : 0x13c8     : 0x01cfec8cc56a52b6    : C:\Windows\explorer.exe    : C:\Windows\system32\igd10umd64.dll   : 063099b1-5882-11e4-be7d-6416f0a1c295     :    ,    :   
               7          2014-10-21 11:01:02                                  ESENT                           910: svchost (1320)        60 ,    .       .      2      (120    ).       : 1;     : 3840;      : 0.      : 3841.  
                       2014-10-21 13:08:30                           Microsoft-Windows-User Profiles Service  1530: 
                 101        2014-10-21 15:06:13                                  Application Hang                1002: 
      Audit Success   12288      2014-10-17 21:15:08                                  Microsoft-Windows-Security-Auditing  4608:   Windows.           LSASS.EXE    .  
      Audit Success   12544      2014-10-17 21:15:08                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   0     :  -     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x4    :        :     : -     : -    :  -       :    :  -     : -    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   13568      2014-10-17 21:15:09                                  Microsoft-Windows-Security-Auditing  4902:      .     : 0   : 0x3a475  
      Audit Success   12544      2014-10-17 21:15:11                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  WIN-208UNMP080M$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x208    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-17 21:15:11                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  WIN-208UNMP080M$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x208    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 21:15:11                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-17 21:15:11                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-17 21:15:12                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  WIN-208UNMP080M$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  DWM-1     :  Window Manager   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x1d0    :  C:\Windows\System32\winlogon.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-17 21:15:12                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  WIN-208UNMP080M$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0x40a3d   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x1d0    :  C:\Windows\System32\winlogon.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-17 21:15:12                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  WIN-208UNMP080M$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0x40a4e   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x1d0    :  C:\Windows\System32\winlogon.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 21:15:12                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0x40a3d    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-17 21:15:12                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0x40a4e    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege  
      Audit Success   12544      2014-10-17 21:15:20                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  WIN-208UNMP080M$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x208    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-17 21:15:20                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  WIN-208UNMP080M$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x208    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-17 21:15:20                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  WIN-208UNMP080M$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x208    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 21:15:20                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-17 21:15:20                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-17 21:15:20                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12292      2014-10-17 21:15:22                                  Microsoft-Windows-Security-Auditing  5033:   Windows  .  
      Audit Success   12544      2014-10-17 21:15:22                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  WIN-208UNMP080M$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x208    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 21:15:22                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-17 21:15:24                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  WIN-208UNMP080M$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x208    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 21:15:24                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12292      2014-10-17 21:15:25                                  Microsoft-Windows-Security-Auditing  5024:   Windows  .  
      Audit Success   12544      2014-10-17 21:15:27                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   3     :  %%1833     :    :  S-1-5-7     :        :  NT AUTHORITY    :  0x473c8   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x0    :  -      :     :      : -    :  -       :    :  NtLmSsp      : NTLM    : -     ( NTLM): NTLM V1    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-17 21:15:53                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  WIN-208UNMP080M$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x208    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 21:15:53                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-17 21:16:37                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  WIN-208UNMP080M$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-500     :       :  WIN-208UNMP080M     :      SAM: -    :  -     : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  0x211     UAC:  0x211      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   103        2014-10-17 21:16:43                                  Microsoft-Windows-Eventlog      1100: 
      Audit Success   12288      2014-10-17 21:17:14                                  Microsoft-Windows-Security-Auditing  4608:   Windows.           LSASS.EXE    .  
      Audit Success   12544      2014-10-17 21:17:14                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   0     :  -     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x4    :        :     : -     : -    :  -       :    :  -     : -    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   13568      2014-10-17 21:17:16                                  Microsoft-Windows-Security-Auditing  4902:      .     : 0   : 0x7db8  
      Audit Success   12544      2014-10-17 21:17:17                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x218    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-17 21:17:17                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x218    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 21:17:17                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-17 21:17:17                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-17 21:17:18                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  DWM-1     :  Window Manager   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x1e0    :  C:\Windows\System32\winlogon.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-17 21:17:18                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0xcd06   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x1e0    :  C:\Windows\System32\winlogon.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-17 21:17:18                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0xcd17   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x1e0    :  C:\Windows\System32\winlogon.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 21:17:18                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0xcd06    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-17 21:17:18                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0xcd17    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege  
      Audit Success   12544      2014-10-17 21:17:27                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x218    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-17 21:17:27                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x218    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-17 21:17:27                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x218    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 21:17:27                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-17 21:17:27                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-17 21:17:27                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-17 21:17:35                                  Microsoft-Windows-Security-Auditing  4781:    :    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-32-544     :  Builtin      :       :      :   :  -  
      Audit Success   13824      2014-10-17 21:17:35                                  Microsoft-Windows-Security-Auditing  4781:    :    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-32-545     :  Builtin      :       :      :   :  -  
      Audit Success   13824      2014-10-17 21:17:35                                  Microsoft-Windows-Security-Auditing  4781:    :    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-32-546     :  Builtin      :       :      :   :  -  
      Audit Success   13824      2014-10-17 21:17:35                                  Microsoft-Windows-Security-Auditing  4781:    :    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-32-551     :  Builtin      :        :       :   :  -  
      Audit Success   13824      2014-10-17 21:17:35                                  Microsoft-Windows-Security-Auditing  4781:    :    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-32-552     :  Builtin      :       :      :   :  -  
      Audit Success   13824      2014-10-17 21:17:35                                  Microsoft-Windows-Security-Auditing  4781:    :    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-32-555     :  Builtin      :          :         :   :  -  
      Audit Success   13824      2014-10-17 21:17:35                                  Microsoft-Windows-Security-Auditing  4781:    :    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-32-556     :  Builtin      :         :        :   :  -  
      Audit Success   13824      2014-10-17 21:17:35                                  Microsoft-Windows-Security-Auditing  4781:    :    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-32-547     :  Builtin      :        :       :   :  -  
      Audit Success   13824      2014-10-17 21:17:35                                  Microsoft-Windows-Security-Auditing  4781:    :    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-32-558     :  Builtin      :         :        :   :  -  
      Audit Success   13824      2014-10-17 21:17:35                                  Microsoft-Windows-Security-Auditing  4781:    :    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-32-559     :  Builtin      :         :        :   :  -  
      Audit Success   13824      2014-10-17 21:17:35                                  Microsoft-Windows-Security-Auditing  4781:    :    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-32-562     :  Builtin      :  DCOM      :  DCOM     :   :  -  
      Audit Success   13824      2014-10-17 21:17:35                                  Microsoft-Windows-Security-Auditing  4781:    :    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-32-568     :  Builtin      : IIS_IUSRS      : IIS_IUSRS     :   :  -  
      Audit Success   13824      2014-10-17 21:17:35                                  Microsoft-Windows-Security-Auditing  4781:    :    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-32-569     :  Builtin      :        :       :   :  -  
      Audit Success   13824      2014-10-17 21:17:35                                  Microsoft-Windows-Security-Auditing  4781:    :    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-32-573     :  Builtin      :         :        :   :  -  
      Audit Success   13824      2014-10-17 21:17:35                                  Microsoft-Windows-Security-Auditing  4781:    :    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-32-578     :  Builtin      :  Hyper-V      :  Hyper-V     :   :  -  
      Audit Success   13824      2014-10-17 21:17:35                                  Microsoft-Windows-Security-Auditing  4781:    :    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-32-579     :  Builtin      :            :           :   :  -  
      Audit Success   13824      2014-10-17 21:17:35                                  Microsoft-Windows-Security-Auditing  4781:    :    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-32-580     :  Builtin      :         :        :   :  -  
      Audit Success   13824      2014-10-17 21:17:35                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-500     :       :  WIN-89VRPACJA5H     :      SAM:     :  %%1793     : -    :  %%1793    :  %%1793     :  %%1793     :  %%1793     : %%1793     : 26.07.2012 11:27:03       :  %%1794     : 513    : -     UAC:  0x211     UAC:  0x211      : -    : %%1793    SID:  -    :  %%1797     :   :  -  
      Audit Success   13824      2014-10-17 21:17:35                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-500     :       :  WIN-89VRPACJA5H     :      SAM:     :  %%1793     : -    :  %%1793    :  %%1793     :  %%1793     :  %%1793     : %%1793     : 26.07.2012 11:27:03       :  %%1794     : 513    : -     UAC:  0x211     UAC:  0x211      : -    : %%1793    SID:  -    :  %%1797     :   :  -  
      Audit Success   13824      2014-10-17 21:17:35                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-501     :       :  WIN-89VRPACJA5H     :      SAM:     :  %%1793     : -    :  %%1793    :  %%1793     :  %%1793     :  %%1793     : %%1793     : %%1794       :  %%1794     : 513    : -     UAC:  0x215     UAC:  0x215      : -    : %%1793    SID:  -    :  %%1797     :   :  -  
      Audit Success   13824      2014-10-17 21:17:35                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-501     :       :  WIN-89VRPACJA5H     :      SAM:     :  %%1793     : -    :  %%1793    :  %%1793     :  %%1793     :  %%1793     : %%1793     : %%1794       :  %%1794     : 513    : -     UAC:  0x215     UAC:  0x215      : -    : %%1793    SID:  -    :  %%1797     :   :  -  
      Audit Success   13824      2014-10-17 21:17:35                                  Microsoft-Windows-Security-Auditing  4781:    :    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-513     :  WIN-89VRPACJA5H      :       :      :   :  -  
      Audit Success   13826      2014-10-17 21:17:35                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-544    :      :  Builtin     :      SAM: -    SID:  -     :   :  -  
      Audit Success   13826      2014-10-17 21:17:35                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-544    :      :  Builtin     :      SAM:     SID:  -     :   :  -  
      Audit Success   13826      2014-10-17 21:17:35                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-545    :      :  Builtin     :      SAM: -    SID:  -     :   :  -  
      Audit Success   13826      2014-10-17 21:17:35                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-545    :      :  Builtin     :      SAM:     SID:  -     :   :  -  
      Audit Success   13826      2014-10-17 21:17:35                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-546    :      :  Builtin     :      SAM: -    SID:  -     :   :  -  
      Audit Success   13826      2014-10-17 21:17:35                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-546    :      :  Builtin     :      SAM:     SID:  -     :   :  -  
      Audit Success   13826      2014-10-17 21:17:35                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-551    :       :  Builtin     :      SAM: -    SID:  -     :   :  -  
      Audit Success   13826      2014-10-17 21:17:35                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-551    :       :  Builtin     :      SAM:      SID:  -     :   :  -  
      Audit Success   13826      2014-10-17 21:17:35                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-552    :      :  Builtin     :      SAM: -    SID:  -     :   :  -  
      Audit Success   13826      2014-10-17 21:17:35                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-552    :      :  Builtin     :      SAM:     SID:  -     :   :  -  
      Audit Success   13826      2014-10-17 21:17:35                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-555    :         :  Builtin     :      SAM: -    SID:  -     :   :  -  
      Audit Success   13826      2014-10-17 21:17:35                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-555    :         :  Builtin     :      SAM:        SID:  -     :   :  -  
      Audit Success   13826      2014-10-17 21:17:35                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-556    :        :  Builtin     :      SAM: -    SID:  -     :   :  -  
      Audit Success   13826      2014-10-17 21:17:35                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-556    :        :  Builtin     :      SAM:       SID:  -     :   :  -  
      Audit Success   13826      2014-10-17 21:17:35                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-547    :       :  Builtin     :      SAM: -    SID:  -     :   :  -  
      Audit Success   13826      2014-10-17 21:17:35                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-547    :       :  Builtin     :      SAM:      SID:  -     :   :  -  
      Audit Success   13826      2014-10-17 21:17:35                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-558    :        :  Builtin     :      SAM: -    SID:  -     :   :  -  
      Audit Success   13826      2014-10-17 21:17:35                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-558    :        :  Builtin     :      SAM:       SID:  -     :   :  -  
      Audit Success   13826      2014-10-17 21:17:35                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-559    :        :  Builtin     :      SAM: -    SID:  -     :   :  -  
      Audit Success   13826      2014-10-17 21:17:35                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-559    :        :  Builtin     :      SAM:       SID:  -     :   :  -  
      Audit Success   13826      2014-10-17 21:17:35                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-562    :   DCOM    :  Builtin     :      SAM: -    SID:  -     :   :  -  
      Audit Success   13826      2014-10-17 21:17:35                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-562    :   DCOM    :  Builtin     :      SAM:  DCOM    SID:  -     :   :  -  
      Audit Success   13826      2014-10-17 21:17:35                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-568    :  IIS_IUSRS    :  Builtin     :      SAM: -    SID:  -     :   :  -  
      Audit Success   13826      2014-10-17 21:17:35                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-568    :  IIS_IUSRS    :  Builtin     :      SAM: IIS_IUSRS    SID:  -     :   :  -  
      Audit Success   13826      2014-10-17 21:17:35                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-569    :       :  Builtin     :      SAM: -    SID:  -     :   :  -  
      Audit Success   13826      2014-10-17 21:17:35                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-569    :       :  Builtin     :      SAM:      SID:  -     :   :  -  
      Audit Success   13826      2014-10-17 21:17:35                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-573    :        :  Builtin     :      SAM: -    SID:  -     :   :  -  
      Audit Success   13826      2014-10-17 21:17:35                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-573    :        :  Builtin     :      SAM:       SID:  -     :   :  -  
      Audit Success   13826      2014-10-17 21:17:35                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-578    :   Hyper-V    :  Builtin     :      SAM: -    SID:  -     :   :  -  
      Audit Success   13826      2014-10-17 21:17:35                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-578    :   Hyper-V    :  Builtin     :      SAM:  Hyper-V    SID:  -     :   :  -  
      Audit Success   13826      2014-10-17 21:17:35                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-579    :           :  Builtin     :      SAM: -    SID:  -     :   :  -  
      Audit Success   13826      2014-10-17 21:17:35                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-579    :           :  Builtin     :      SAM:          SID:  -     :   :  -  
      Audit Success   13826      2014-10-17 21:17:35                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-580    :        :  Builtin     :      SAM: -    SID:  -     :   :  -  
      Audit Success   13826      2014-10-17 21:17:35                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-580    :        :  Builtin     :      SAM:       SID:  -     :   :  -  
      Audit Success   13826      2014-10-17 21:17:35                                  Microsoft-Windows-Security-Auditing  4737:      .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-21-1438717787-2843651206-2158049019-513    :      :  WIN-89VRPACJA5H     :      SAM: -    SID:  -     :   :  -  
      Audit Success   13826      2014-10-17 21:17:35                                  Microsoft-Windows-Security-Auditing  4737:      .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-21-1438717787-2843651206-2158049019-513    :      :  WIN-89VRPACJA5H     :      SAM:     SID:  -     :   :  -  
      Audit Success   12544      2014-10-17 21:18:09                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x218    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 21:18:09                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12292      2014-10-17 21:18:10                                  Microsoft-Windows-Security-Auditing  5033:   Windows  .  
      Audit Success   12292      2014-10-17 21:18:11                                  Microsoft-Windows-Security-Auditing  5024:   Windows  .  
      Audit Success   12544      2014-10-17 21:18:12                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x218    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 21:18:12                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-17 21:18:14                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   3     :  %%1833     :    :  S-1-5-7     :        :  NT AUTHORITY    :  0x197f7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x0    :  -      :     :      : -    :  -       :    :  NtLmSsp      : NTLM    : -     ( NTLM): NTLM V1    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-17 21:18:14                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x218    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 21:18:14                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-17 21:18:17                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x218    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 21:18:17                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-17 21:19:45                                  Microsoft-Windows-Security-Auditing  4720:    .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :      SAM:      :  %%1793     : -    :  %%1793    :  %%1793     :  %%1793     :  %%1793     : %%1793     : %%1794       :  %%1794     : 513    : -     UAC:  0x0     UAC:  0x15      :     %%2080    %%2082    %%2084    : %%1793    SID:  -    :  %%1797     :   Privileges  -  
      Audit Success   13824      2014-10-17 21:19:45                                  Microsoft-Windows-Security-Auditing  4722:    .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer  
      Audit Success   13824      2014-10-17 21:19:45                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM:      :  %%1793     : -    :  %%1793    :  %%1793     :  %%1793     :  %%1793     : %%1793     : %%1794       :  %%1794     : 513    : -     UAC:  0x15     UAC:  0x14      :     %%2048    : %%1793    SID:  -    :  %%1797     :   :  -  
      Audit Success   13824      2014-10-17 21:19:45                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM:      :  %%1793     : -    :  %%1793    :  %%1793     :  %%1793     :  %%1793     : %%1793     : 17.10.2014 21:19:45       :  %%1794     : 513    : -     UAC:  0x14     UAC:  0x14      : -    : -    SID:  -    :  %%1797     :   :  -  
      Audit Success   13824      2014-10-17 21:19:45                                  Microsoft-Windows-Security-Auditing  4724:      .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer  
      Audit Success   13824      2014-10-17 21:19:45                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :  -     : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   13824      2014-10-17 21:19:45                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM:      :  %%1793     : -    :  %%1793    :  %%1793     :  %%1793     :  %%1793     : %%1793     : 17.10.2014 21:19:45       :  %%1794     : 513    : -     UAC:  0x14     UAC:  0x214      :     %%2089    : -    SID:  -    :  %%1797     :   :  -  
      Audit Success   13824      2014-10-17 21:19:45                                  Microsoft-Windows-Security-Auditing  4724:      .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer  
      Audit Success   13826      2014-10-17 21:19:45                                  Microsoft-Windows-Security-Auditing  4728:       .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  -    :    :  S-1-5-21-1438717787-2843651206-2158049019-513    :      :  acer     :   :  -  
      Audit Success   13826      2014-10-17 21:19:45                                  Microsoft-Windows-Security-Auditing  4732:       .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  -    :    :  S-1-5-32-545    :      :  Builtin     :   :  -  
      Audit Success   13826      2014-10-17 21:19:45                                  Microsoft-Windows-Security-Auditing  4732:       .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  -    :    :  S-1-5-32-544    :      :  Builtin     :   :  -  
      Audit Success   13826      2014-10-17 21:19:45                                  Microsoft-Windows-Security-Auditing  4733:       .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  -    :    :  S-1-5-32-545    :      :  Builtin     :   :  -  
      Audit Success   12544      2014-10-17 21:19:49                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :        :  acer   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x1e0    :  C:\Windows\System32\winlogon.exe      :    : 127.0.0.1   :   0      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-17 21:19:49                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x2d590   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x1e0    :  C:\Windows\System32\winlogon.exe      :     : WIN-89VRPACJA5H     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-17 21:19:49                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  WIN-89VRPACJA5H$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x2d5c3   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x1e0    :  C:\Windows\System32\winlogon.exe      :     : WIN-89VRPACJA5H     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 21:19:49                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x2d590    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-17 21:20:36                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x2d5c3     :      : WIN-89VRPACJA5H      :       : acer  
      Audit Success   13824      2014-10-17 21:20:36                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x2d5c3     :      : WIN-89VRPACJA5H      :       : acer  
      Audit Success   13824      2014-10-17 21:20:36                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x2d5c3     :      : WIN-89VRPACJA5H      :       : acer  
      Audit Success   13824      2014-10-17 21:20:36                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x2d5c3     :      : WIN-89VRPACJA5H      :       : acer  
      Audit Success   12545      2014-10-17 21:22:45                                  Microsoft-Windows-Security-Auditing  4647: ,  :    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x2d5c3      ,   .  ,  ,  .        .  
      Audit Success   103        2014-10-17 21:22:46                                  Microsoft-Windows-Eventlog      1100: 
      Audit Success   12288      2014-10-17 21:23:18                                  Microsoft-Windows-Security-Auditing  4608:   Windows.           LSASS.EXE    .  
      Audit Success   12544      2014-10-17 21:23:18                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   0     :  -     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x4    :        :     : -     : -    :  -       :    :  -     : -    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-17 21:23:19                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x214    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 21:23:19                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13568      2014-10-17 21:23:19                                  Microsoft-Windows-Security-Auditing  4902:      .     : 0   : 0x7b88  
      Audit Success   12544      2014-10-17 21:23:20                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x214    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-17 21:23:20                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x214    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-17 21:23:20                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  DWM-1     :  Window Manager   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x1f4    :  C:\Windows\System32\winlogon.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-17 21:23:20                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0xccda   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x1f4    :  C:\Windows\System32\winlogon.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-17 21:23:20                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0xccea   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x1f4    :  C:\Windows\System32\winlogon.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 21:23:20                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-17 21:23:20                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-17 21:23:20                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0xccda    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-17 21:23:20                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0xccea    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege  
      Audit Success   12544      2014-10-17 21:23:21                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x214    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 21:23:21                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-17 21:23:22                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x214    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 21:23:22                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-17 21:23:30                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x214    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 21:23:30                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12292      2014-10-17 21:23:32                                  Microsoft-Windows-Security-Auditing  5033:   Windows  .  
      Audit Success   12292      2014-10-17 21:23:34                                  Microsoft-Windows-Security-Auditing  5024:   Windows  .  
      Audit Success   12544      2014-10-17 21:23:34                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x214    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 21:23:34                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-17 21:23:36                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   3     :  %%1833     :    :  S-1-5-7     :        :  NT AUTHORITY    :  0x15e8f   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x0    :  -      :     :      : -    :  -       :    :  NtLmSsp      : NTLM    : -     ( NTLM): NTLM V1    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-17 21:23:41                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :        :  acer   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x1f4    :  C:\Windows\System32\winlogon.exe      :    : 127.0.0.1   :   0      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-17 21:23:41                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x18fa2   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x1f4    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-17 21:23:41                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x18fd1   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x1f4    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 21:23:41                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x18fa2    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-17 21:23:46                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x18fd1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:23:46                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x18fd1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:23:46                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x18fd1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:23:46                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x18fd1     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-17 21:23:47                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x214    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 21:23:47                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-17 21:26:55                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x18fd1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:26:55                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x18fd1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:26:55                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x18fd1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:26:55                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x18fd1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:26:56                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x18fd1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:26:56                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x18fd1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:26:59                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x18fd1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:26:59                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x18fd1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:27:05                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x18fd1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:27:05                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x18fd1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:28:47                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x18fd1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:28:47                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x18fd1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:28:50                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x18fd1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:28:50                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x18fd1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:28:52                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x18fd1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:28:52                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x18fd1     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-17 21:29:53                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x214    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 21:29:53                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-17 21:30:23                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x214    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-17 21:30:23                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x214    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 21:30:23                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-17 21:30:23                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13568      2014-10-17 21:30:38                                  Microsoft-Windows-Security-Auditing  4904:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP      :  0x3e7    :    : 0x9b4    : C:\Windows\System32\VSSVC.exe     :    : VSSAudit     : 0x8df8b  
      Audit Success   13568      2014-10-17 21:30:38                                  Microsoft-Windows-Security-Auditing  4905:       .    Subject    :  S-1-5-18     :  ACER$     :  WORKGROUP      :  0x3e7    :    : 0x9b4    : C:\Windows\System32\VSSVC.exe     :    : VSSAudit     : 0x8df8b  
      Audit Success   12292      2014-10-17 21:33:12                                  Microsoft-Windows-Security-Auditing  6406: ESET Smart Security    Windows      BootTimeRuleCategory, FirewallRuleCategory.  
      Audit Success   13824      2014-10-17 21:36:51                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x18fd1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:36:51                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x18fd1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:36:54                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x18fd1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:36:54                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x18fd1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:36:56                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x18fd1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:36:56                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x18fd1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:36:58                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x18fd1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:36:58                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x18fd1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:39:47                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x18fd1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:39:47                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x18fd1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:39:54                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x18fd1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:39:54                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x18fd1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:40:12                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x18fd1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:40:12                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x18fd1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:40:21                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x18fd1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:40:21                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x18fd1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:40:23                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x18fd1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:40:23                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x18fd1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:42:17                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x18fd1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:42:17                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x18fd1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:42:17                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x18fd1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:42:17                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x18fd1     :      : ACER      :       : acer  
      Audit Success   12545      2014-10-17 21:42:30                                  Microsoft-Windows-Security-Auditing  4647: ,  :    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x18fd1      ,   .  ,  ,  .        .  
      Audit Success   12544      2014-10-17 21:42:31                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x214    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 21:42:31                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   103        2014-10-17 21:42:33                                  Microsoft-Windows-Eventlog      1100: 
      Audit Success   12288      2014-10-17 21:43:01                                  Microsoft-Windows-Security-Auditing  4608:   Windows.           LSASS.EXE    .  
      Audit Success   12544      2014-10-17 21:43:01                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   0     :  -     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x4    :        :     : -     : -    :  -       :    :  -     : -    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   13568      2014-10-17 21:43:02                                  Microsoft-Windows-Security-Auditing  4902:      .     : 0   : 0x8293  
      Audit Success   12544      2014-10-17 21:43:08                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x25c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 21:43:08                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-17 21:43:09                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x25c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-17 21:43:09                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x25c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-17 21:43:09                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x25c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-17 21:43:09                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x25c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-17 21:43:09                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  DWM-1     :  Window Manager   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x23c    :  C:\Windows\System32\winlogon.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-17 21:43:09                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0xe992   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x23c    :  C:\Windows\System32\winlogon.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-17 21:43:09                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0xe9b9   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x23c    :  C:\Windows\System32\winlogon.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 21:43:09                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-17 21:43:09                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-17 21:43:09                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-17 21:43:09                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-17 21:43:09                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0xe992    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-17 21:43:09                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0xe9b9    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege  
      Audit Success   12292      2014-10-17 21:43:10                                  Microsoft-Windows-Security-Auditing  5033:   Windows  .  
      Audit Success   12544      2014-10-17 21:43:10                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x25c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 21:43:10                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12292      2014-10-17 21:43:12                                  Microsoft-Windows-Security-Auditing  5024:   Windows  .  
      Audit Success   12544      2014-10-17 21:43:15                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   3     :  %%1833     :    :  S-1-5-7     :        :  NT AUTHORITY    :  0x166de   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x0    :  -      :     :      : -    :  -       :    :  NtLmSsp      : NTLM    : -     ( NTLM): NTLM V1    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12292      2014-10-17 21:43:22                                  Microsoft-Windows-Security-Auditing  6406: ESET Smart Security    Windows      BootTimeRuleCategory, FirewallRuleCategory.  
      Audit Success   12544      2014-10-17 21:43:26                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :        :  acer   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x23c    :  C:\Windows\System32\winlogon.exe      :    : 127.0.0.1   :   0      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-17 21:43:26                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x1f8ab   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x23c    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-17 21:43:26                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x1f8d0   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x23c    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 21:43:26                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x1f8ab    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-17 21:43:31                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x25c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 21:43:31                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-17 21:43:31                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x1f8d0     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:43:31                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x1f8d0     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:43:31                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x1f8d0     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:43:31                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x1f8d0     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:43:48                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x1f8d0     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:43:48                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x1f8d0     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:43:48                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x1f8d0     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:43:48                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x1f8d0     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-17 21:45:37                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x25c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 21:45:37                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-17 21:45:57                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x25c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 21:45:57                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12545      2014-10-17 21:46:40                                  Microsoft-Windows-Security-Auditing  4647: ,  :    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x1f8d0      ,   .  ,  ,  .        .  
      Audit Success   103        2014-10-17 21:46:41                                  Microsoft-Windows-Eventlog      1100: 
      Audit Success   12288      2014-10-17 21:47:17                                  Microsoft-Windows-Security-Auditing  4608:   Windows.           LSASS.EXE    .  
      Audit Success   12544      2014-10-17 21:47:17                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   0     :  -     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x4    :        :     : -     : -    :  -       :    :  -     : -    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   13568      2014-10-17 21:47:18                                  Microsoft-Windows-Security-Auditing  4902:      .     : 0   : 0x8b14  
      Audit Success   12544      2014-10-17 21:47:20                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x25c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-17 21:47:20                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x25c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-17 21:47:20                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x25c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 21:47:20                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-17 21:47:20                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-17 21:47:20                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-17 21:47:21                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  DWM-1     :  Window Manager   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x224    :  C:\Windows\System32\winlogon.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-17 21:47:21                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0xe1e0   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x224    :  C:\Windows\System32\winlogon.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-17 21:47:21                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0xe1f0   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x224    :  C:\Windows\System32\winlogon.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-17 21:47:21                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x25c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 21:47:21                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0xe1e0    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-17 21:47:21                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0xe1f0    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege  
      Audit Success   12548      2014-10-17 21:47:21                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-17 21:47:23                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x25c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 21:47:23                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-17 21:47:28                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x25c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 21:47:28                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12292      2014-10-17 21:47:29                                  Microsoft-Windows-Security-Auditing  5033:   Windows  .  
      Audit Success   12292      2014-10-17 21:47:32                                  Microsoft-Windows-Security-Auditing  5024:   Windows  .  
      Audit Success   12544      2014-10-17 21:47:36                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   3     :  %%1833     :    :  S-1-5-7     :        :  NT AUTHORITY    :  0x17047   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x0    :  -      :     :      : -    :  -       :    :  NtLmSsp      : NTLM    : -     ( NTLM): NTLM V1    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-17 21:47:40                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :        :  acer   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x224    :  C:\Windows\System32\winlogon.exe      :    : 127.0.0.1   :   0      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-17 21:47:40                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x17ccc   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x224    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-17 21:47:40                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x17cf1   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x224    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 21:47:40                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x17ccc    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12292      2014-10-17 21:47:42                                  Microsoft-Windows-Security-Auditing  6406: ESET Smart Security    Windows      BootTimeRuleCategory, FirewallRuleCategory.  
      Audit Success   13824      2014-10-17 21:48:05                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x17cf1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:48:05                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x17cf1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:48:05                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x17cf1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:48:05                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x17cf1     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-17 21:48:06                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x25c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 21:48:06                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-17 21:49:03                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x17cf1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:49:03                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x17cf1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:49:03                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x17cf1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:49:03                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x17cf1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:49:15                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x17cf1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:49:15                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x17cf1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:49:47                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x17cf1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:49:47                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x17cf1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:49:50                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x17cf1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:49:50                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x17cf1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:53:07                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x17cf1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:53:07                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x17cf1     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-17 21:55:25                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x25c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 21:55:25                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-17 21:55:50                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x25c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 21:55:50                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-17 21:55:51                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x25c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 21:55:51                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-17 21:56:56                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x25c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 21:56:56                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-17 21:57:02                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x25c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 21:57:02                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-17 21:57:15                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x17cf1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:57:15                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x17cf1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:57:15                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x17cf1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:57:15                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x17cf1     :      : ACER      :       : acer  
      Audit Success   12545      2014-10-17 21:57:25                                  Microsoft-Windows-Security-Auditing  4647: ,  :    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x17cf1      ,   .  ,  ,  .        .  
      Audit Success   103        2014-10-17 21:57:31                                  Microsoft-Windows-Eventlog      1100: 
      Audit Success   12288      2014-10-17 21:58:02                                  Microsoft-Windows-Security-Auditing  4608:   Windows.           LSASS.EXE    .  
      Audit Success   12544      2014-10-17 21:58:02                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   0     :  -     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x4    :        :     : -     : -    :  -       :    :  -     : -    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   13568      2014-10-17 21:58:03                                  Microsoft-Windows-Security-Auditing  4902:      .     : 0   : 0x8157  
      Audit Success   12544      2014-10-17 21:58:10                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x268    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-17 21:58:10                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x268    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-17 21:58:10                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x268    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-17 21:58:10                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x268    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-17 21:58:10                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  DWM-1     :  Window Manager   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x244    :  C:\Windows\System32\winlogon.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-17 21:58:10                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0xba74   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x244    :  C:\Windows\System32\winlogon.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-17 21:58:10                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0xba95   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x244    :  C:\Windows\System32\winlogon.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 21:58:10                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-17 21:58:10                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-17 21:58:10                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-17 21:58:10                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-17 21:58:10                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0xba74    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-17 21:58:10                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0xba95    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege  
      Audit Success   12544      2014-10-17 21:58:11                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x268    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 21:58:11                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-17 21:58:15                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x268    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 21:58:15                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12292      2014-10-17 21:58:16                                  Microsoft-Windows-Security-Auditing  5033:   Windows  .  
      Audit Success   12292      2014-10-17 21:58:18                                  Microsoft-Windows-Security-Auditing  5024:   Windows  .  
      Audit Success   12544      2014-10-17 21:58:25                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   3     :  %%1833     :    :  S-1-5-7     :        :  NT AUTHORITY    :  0x1b235   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x0    :  -      :     :      : -    :  -       :    :  NtLmSsp      : NTLM    : -     ( NTLM): NTLM V1    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12292      2014-10-17 21:58:30                                  Microsoft-Windows-Security-Auditing  6406: ESET Smart Security    Windows      BootTimeRuleCategory, FirewallRuleCategory.  
      Audit Success   12544      2014-10-17 21:58:31                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :        :  acer   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x244    :  C:\Windows\System32\winlogon.exe      :    : 127.0.0.1   :   0      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-17 21:58:31                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x1f689   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x244    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-17 21:58:31                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x1f6d8   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x244    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 21:58:31                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x1f689    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-17 21:58:42                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x1f6d8     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:58:42                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x1f6d8     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:58:42                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x1f6d8     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 21:58:42                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x1f6d8     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-17 21:58:44                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x268    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 21:58:44                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-17 22:01:29                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x1f6d8     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 22:01:29                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x1f6d8     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 22:01:29                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x1f6d8     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 22:01:29                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x1f6d8     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 22:01:32                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x1f6d8     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 22:01:32                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x1f6d8     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-17 22:01:37                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x268    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-17 22:01:37                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x268    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 22:01:37                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-17 22:01:37                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13568      2014-10-17 22:01:41                                  Microsoft-Windows-Security-Auditing  4904:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP      :  0x3e7    :    : 0xda0    : C:\Windows\System32\VSSVC.exe     :    : VSSAudit     : 0x7ce48  
      Audit Success   13568      2014-10-17 22:01:41                                  Microsoft-Windows-Security-Auditing  4905:       .    Subject    :  S-1-5-18     :  ACER$     :  WORKGROUP      :  0x3e7    :    : 0xda0    : C:\Windows\System32\VSSVC.exe     :    : VSSAudit     : 0x7ce48  
      Audit Success   13824      2014-10-17 22:06:10                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x1f6d8     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 22:06:10                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x1f6d8     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-17 22:10:42                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x268    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 22:10:42                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-17 22:10:48                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x268    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 22:10:48                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-17 22:10:59                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x268    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-17 22:10:59                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x268    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 22:10:59                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-17 22:10:59                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-17 22:15:10                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x1f6d8     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 22:15:10                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x1f6d8     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 22:25:08                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x1f6d8     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 22:25:08                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x1f6d8     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 22:25:08                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x1f6d8     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 22:25:08                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x1f6d8     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 22:26:10                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x1f6d8     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 22:27:53                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x1f6d8     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 22:28:43                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x1f6d8     :      : ACER      :       : acer  
      Audit Success   13568      2014-10-17 22:31:16                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\_0000000000000000.cdf-ms    : 0x2f28      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:16                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_x86__676bbe2c7241b694.cdf-ms    : 0x230      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:16                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_x86_reference_assemblies_41115a5fd4566dab.cdf-ms    : 0xed0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:16                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_x86_reference_assemblies_microsoft_ad470207ad610db1.cdf-ms    : 0x750      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:16                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_x86_reference_assemblies_microsoft_framework_b81ea2cfde84fb19.cdf-ms    : 0x2844      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:16                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_x86_reference_assemblies_microsoft_framework_v3.0_1dfad1527dc1078c.cdf-ms    : 0xec0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:16                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_x86_reference_assemblies_microsoft_framework_v3.0_ru_cbb2cea89569641b.cdf-ms    : 0x2844      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:16                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_x86_reference_assemblies_microsoft_framework_v3.0_subsetlist_fe5eff8713e368f0.cdf-ms    : 0x2840      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:16                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_x86_reference_assemblies_microsoft_framework_v3.5_1dfadad07dc0f94f.cdf-ms    : 0x2844      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:16                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_x86_reference_assemblies_microsoft_framework_v3.5_redistlist_af4b5c850431ef86.cdf-ms    : 0xd3c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:16                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_x86_reference_assemblies_microsoft_framework_v3.5_ru_cbb2d826956955de.cdf-ms    : 0x14cc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:16                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_x86_reference_assemblies_microsoft_framework_v3.5_subsetlist_aaf62cd71100a933.cdf-ms    : 0xec0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:16                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_x86_msbuild_microsoft_windows_workflow_foundation_v3.5_2a4717de8ec5d881.cdf-ms    : 0x230      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:16                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$.cdf-ms    : 0xed0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:16                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_3296b36dbe4c7fa3.cdf-ms    : 0xec0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:16                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework64_083d4e330e766c5d.cdf-ms    : 0x230      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:16                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework64_v3.0_d97e7188b51e6116.cdf-ms    : 0xec0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:16                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework64_v3.0_wpf_f80a7f17f38f3771.cdf-ms    : 0x230      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:16                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework64_v3.0_wpf_xamlviewer_2a5223adddc9e767.cdf-ms    : 0x1e70      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:16                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework64_v3.0_wpf_ru_3f04950d9b9aab4c.cdf-ms    : 0x1e6c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:16                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework64_v3.0_wpf_ru-ru_19ab931b774defe2.cdf-ms    : 0x1324      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:16                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework64_v3.0_windows_communication_foundation_7de82ac14fafbb1e.cdf-ms    : 0x1eb0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:17                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework64_v3.0_windows_communication_foundation_ru_af9220e666efa731.cdf-ms    : 0x6c8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:17                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework64_v3.0_windows_communication_foundation_ru-ru_8a6a171c2f279b81.cdf-ms    : 0x1328      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:17                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework64_v3.5_d97e7b06b51e52d9.cdf-ms    : 0x1eac      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:17                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework64_v3.5_1049_5fdb1563511a0d07.cdf-ms    : 0xf78      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:17                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework64_v3.5_1033_5fdb1455511a0dfa.cdf-ms    : 0x654      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:17                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework64_v3.5_ru_d84b0da8a32e6522.cdf-ms    : 0x2270      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:17                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework64_v3.5_sql_en_487cf4618d7f22bc.cdf-ms    : 0x2290      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:17                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework64_v2.0.50727_443de60f3f6e0828.cdf-ms    : 0x2288      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:17                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework64_v2.0.50727_1049_b3c88eb313ae6c54.cdf-ms    : 0x2290      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:17                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework64_v2.0.50727_1033_b3c88eb113ae6c57.cdf-ms    : 0xd78      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:17                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework64_v2.0.50727_redistlist_8ebec5e3be6c804f.cdf-ms    : 0x1f7c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:17                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework64_v2.0.50727_mui_0409_ffa7e0a2ff8e4b5a.cdf-ms    : 0x1f80      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:17                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework64_v2.0.50727_mui_0419_ffa7e0a4ff8e4b51.cdf-ms    : 0xc4c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:17                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework64_v2.0.50727_ru_37601495d41259a7.cdf-ms    : 0x1e30      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:17                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework64_v2.0.50727_config_9c095e05b3055fa6.cdf-ms    : 0x1bd8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:17                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework_83386eac0379231b.cdf-ms    : 0xc4c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:17                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework_v3.0_wpf_b56a2354fbfa0c31.cdf-ms    : 0x2f28      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:17                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework_v3.0_wpf_xamlviewer_97ff09273e68a809.cdf-ms    : 0xc4c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:17                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework_v3.0_wpf_ru_389aa323979d535e.cdf-ms    : 0x2720      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:17                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework_v3.0_wpf_ru-ru_3abd41056abbbebc.cdf-ms    : 0x2290      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:17                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework_v3.0_windows_communication_foundation_e07323de19ff1b52.cdf-ms    : 0x2720      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:17                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework_v3.5_5588a8293fdc4499.cdf-ms    : 0xc4c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:17                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework_v3.5_1049_b573e20273d26163.cdf-ms    : 0x271c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:17                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework_v3.5_1033_b573e20073d26166.cdf-ms    : 0x1eb0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:17                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework_v3.5_windows_presentation_foundation_042767677633abb5.cdf-ms    : 0x2a04      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:18                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework_v3.5_ru_3cd036d69aae9650.cdf-ms    : 0x2a00      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:18                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework_v3.5_sql_en_30e6a6afa3284c6e.cdf-ms    : 0xfa4      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:18                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework_v2.0.50727_e9368840261e60ee.cdf-ms    : 0x2720      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:18                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework_v2.0.50727_1049_7994ec1e0abd5342.cdf-ms    : 0x2a8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:18                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework_v2.0.50727_subsetlist_2a1589056b6db300.cdf-ms    : 0x1338      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:18                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework_v2.0.50727_gac_ru_9a153303c04b43ca.cdf-ms    : 0x364      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:18                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework_v2.0.50727_1033_7994eb100abd5435.cdf-ms    : 0x378      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:18                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework_v2.0.50727_redistlist_2e6ab8b35e9ef953.cdf-ms    : 0x364      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:18                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework_v2.0.50727_mui_0409_fbbb44c0c63bd26c.cdf-ms    : 0x3dc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:18                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework_v2.0.50727_mui_0419_fbbb46a6c63bcf93.cdf-ms    : 0x8cc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:18                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework_v2.0.50727_ru_9d42e46d3d1bb62b.cdf-ms    : 0x1350      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:18                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework_v2.0.50727_config_9a0d48f3c07d2a12.cdf-ms    : 0x2a00      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:18                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework_v1.0.3705_b19cf3207984c497.cdf-ms    : 0x8cc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:18                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_syswow64_21ffbdd2a2dd92e0.cdf-ms    : 0x1310      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:18                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_syswow64_xpsviewer_ru-ru_aeef64bf80f1009a.cdf-ms    : 0x1338      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:18                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_syswow64_mui_0409_29ea5b12e6ab1a66.cdf-ms    : 0x1d64      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:18                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_syswow64_mui_0419_29ea5b14e6ab1a5d.cdf-ms    : 0x1d60      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:18                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_syswow64_ru-ru_b70b8052528b002f.cdf-ms    : 0x1310      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:18                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_inf_3f581daba4c8c835.cdf-ms    : 0x1d64      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:18                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_inf_smsvchost_3.0.0.0_0419_2d6da1915cb5fdbc.cdf-ms    : 0x1dc8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:19                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_inf_smsvchost_3.0.0.0_0000_2d6d90735cb61780.cdf-ms    : 0x26fc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:19                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_inf_servicemodeloperation_3.0.0.0_0419_9b92ccb8d51f570f.cdf-ms    : 0x117c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:19                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_inf_servicemodeloperation_3.0.0.0_0000_9b92bb9ad51f70d3.cdf-ms    : 0x1178      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:19                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_inf_.net_clr_data_0864fda87da3c851.cdf-ms    : 0x1310      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:19                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_inf_.net_clr_data_0419_9334f23ff02764ad.cdf-ms    : 0x117c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:19                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_inf_.net_clr_data_0000_9334e121f0277e71.cdf-ms    : 0xd90      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:19                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_inf_.net_clr_networking_d061836896f4f29d.cdf-ms    : 0xb9c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:19                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_inf_.net_clr_networking_0419_417ab28090926501.cdf-ms    : 0x27fc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:19                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_inf_.net_clr_networking_0000_417aaafa90927065.cdf-ms    : 0x27f8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:19                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_inf_windows_workflow_foundation_3.0.0.0_0419_c87be939a75f6d17.cdf-ms    : 0x27fc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:19                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_inf_windows_workflow_foundation_3.0.0.0_0000_c87be1b3a75f787b.cdf-ms    : 0xcbc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:19                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_inf_.net_data_provider_for_oracle_07838adde9419766.cdf-ms    : 0xaf8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:19                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_inf_.net_data_provider_for_oracle_0419_1ac885a6f00b112c.cdf-ms    : 0x27fc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:19                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_inf_.net_data_provider_for_oracle_0000_1ac87488f00b2af0.cdf-ms    : 0xb9c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:19                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_inf_.net_data_provider_for_sqlserver_7cfd5f3e72497ce1.cdf-ms    : 0xd90      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:19                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_inf_.net_data_provider_for_sqlserver_0419_22ef188b81b08c6f.cdf-ms    : 0xaf8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:20                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_inf_.net_data_provider_for_sqlserver_0000_22ef191981b08b2b.cdf-ms    : 0x670      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:20                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_inf_msdtc_bridge_3.0.0.0_0419_5d6037ff7f35c3a2.cdf-ms    : 0x1f94      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:20                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_inf_msdtc_bridge_3.0.0.0_0000_5d60388d7f35c25e.cdf-ms    : 0x670      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:20                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_inf_servicemodelservice_3.0.0.0_0419_2fd4df7a98bb9c05.cdf-ms    : 0x1f94      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:20                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_inf_servicemodelservice_3.0.0.0_0000_2fd4d7f498bba769.cdf-ms    : 0x670      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:20                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_inf_servicemodelendpoint_3.0.0.0_0419_1441b5556e0ddf4b.cdf-ms    : 0x27fc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:20                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_inf_servicemodelendpoint_3.0.0.0_0000_1441b5e36e0dde07.cdf-ms    : 0x257c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:20                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_inf_.netframework_266880c2626e99c6.cdf-ms    : 0x26fc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:20                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_inf_.netframework_0419_fd6b708149271930.cdf-ms    : 0xcbc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:20                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_inf_.netframework_0000_fd6b5f63492732f4.cdf-ms    : 0x257c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:20                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_system32_21f9a9c4a2f8b514.cdf-ms    : 0x2578      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:20                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_system32_mui_0409_ecc96e0e9498d62e.cdf-ms    : 0xcbc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:20                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_system32_mui_0419_ecc96e109498d625.cdf-ms    : 0x129c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:20                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_system32_ru-ru_5b50e7f65fce4fdb.cdf-ms    : 0x1298      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:20                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_fonts_40104ba9a1d20dac.cdf-ms    : 0x27fc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:21                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_ffd0cbfc813cc4f1.cdf-ms    : 0x1f94      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:21                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_reference_assemblies_f89c5a39d351281a.cdf-ms    : 0x5e0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:21                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_reference_assemblies_microsoft_a4ba21b6f468ca9e.cdf-ms    : 0xac4      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:21                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_reference_assemblies_microsoft_framework_61efdd9e2d0263ca.cdf-ms    : 0x5e0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:21                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_reference_assemblies_microsoft_framework_v3.0_44577d982216c291.cdf-ms    : 0x129c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:21                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_reference_assemblies_microsoft_framework_v3.0_ru_4221198569c46fac.cdf-ms    : 0x5e0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:21                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_reference_assemblies_microsoft_framework_v3.5_44577da22216c264.cdf-ms    : 0xac4      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:21                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_reference_assemblies_microsoft_framework_v3.5_redistlist_bd550cc45cc12a27.cdf-ms    : 0x670      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:21                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_reference_assemblies_microsoft_framework_v3.5_ru_4221198f69c46f7f.cdf-ms    : 0x1298      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:21                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_msbuild_microsoft_windows_workflow_foundation_v3.5_06f0ac2a38886194.cdf-ms    : 0x670      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-17 22:31:21                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\MSBuild\Microsoft\Windows Workflow Foundation\v3.5\Workflow.Targets    : 0xcbc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:21                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\MSBuild\Microsoft\Windows Workflow Foundation\v3.5\Workflow.VisualBasic.Targets    : 0x27fc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:21                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.5\System.Data.Services.Client.dll    : 0x1298      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:21                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.5\Microsoft.Build.Conversion.v3.5.dll    : 0x670      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:21                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.5\System.Web.Abstractions.dll    : 0x27fc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:21                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.5\System.Web.Entity.dll    : 0xcbc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:21                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.5\System.Web.Entity.Design.dll    : 0x1298      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:21                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.5\System.WorkflowServices.dll    : 0x129c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:22                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.5\System.ServiceModel.Web.dll    : 0x670      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:22                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.5\System.Xml.Linq.dll    : 0x5e0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:22                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.5\System.Data.Linq.dll    : 0xac4      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:22                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.5\System.Web.Extensions.Design.dll    : 0x9a0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:22                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.5\System.Windows.Presentation.dll    : 0x680      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:22                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.5\System.Data.Entity.dll    : 0x26fc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:22                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.5\System.Data.Entity.Design.dll    : 0x12d8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:22                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.5\System.Core.dll    : 0xe3c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:22                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.5\Microsoft.Build.Utilities.v3.5.dll    : 0x9a0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:22                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.5\System.Data.Services.dll    : 0x680      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:22                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.5\System.Web.DynamicData.Design.dll    : 0x12d8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:22                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.5\System.Web.DynamicData.dll    : 0xe3c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:22                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.5\System.Data.DataSetExtensions.dll    : 0x9a0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:22                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.5\System.Data.Services.Design.dll    : 0x26fc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:22                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.5\System.Management.Instrumentation.dll    : 0x1298      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:23                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.5\System.Web.Extensions.dll    : 0xe3c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:23                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.5\System.AddIn.Contract.dll    : 0x12d8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:23                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.5\System.Net.dll    : 0x670      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:23                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.5\System.AddIn.dll    : 0x2a8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:23                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.5\Microsoft.VisualC.STLCLR.dll    : 0xcbc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:23                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.5\Microsoft.Build.Engine.dll    : 0xe3c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:23                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.5\System.DirectoryServices.AccountManagement.dll    : 0x680      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:23                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.5\System.Web.Routing.dll    : 0x1298      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:23                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.5\Microsoft.Build.Framework.dll    : 0x670      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:23                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.5\System.ComponentModel.DataAnnotations.dll    : 0xe3c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:23                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.5\ru\System.Data.Entity.Resources.dll    : 0x129c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:23                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.5\ru\System.Web.Entity.Design.Resources.dll    : 0x2a8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:23                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.5\ru\System.Windows.Presentation.resources.dll    : 0x9a0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:23                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.5\ru\System.Management.Instrumentation.Resources.dll    : 0xe3c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:23                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.5\ru\Microsoft.Build.Conversion.v3.5.resources.dll    : 0x680      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:23                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.5\ru\System.Data.Entity.Design.Resources.dll    : 0x2a8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:23                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.5\ru\System.Data.Services.Design.resources.dll    : 0xac4      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:23                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.5\ru\Microsoft.Build.Engine.resources.dll    : 0x129c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:23                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.5\ru\System.Xml.Linq.Resources.dll    : 0x1298      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:23                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.5\ru\System.Web.Entity.Resources.dll    : 0x9a0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:23                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.5\ru\System.Data.DataSetExtensions.Resources.dll    : 0xe3c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:23                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.5\ru\Microsoft.Build.Utilities.v3.5.resources.dll    : 0x129c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:23                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.5\ru\System.Data.Linq.Resources.dll    : 0x1298      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:23                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.5\ru\System.Net.Resources.dll    : 0x9a0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:23                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.5\ru\System.Data.Services.resources.dll    : 0xe3c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:23                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.5\ru\System.Data.Services.Client.resources.dll    : 0x257c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:24                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.5\RedistList\FrameworkList.xml    : 0xaf8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:24                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.0\System.IO.Log.dll    : 0x680      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:24                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.0\UIAutomationClientsideProviders.dll    : 0xac4      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:24                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.0\WindowsBase.dll    : 0x26fc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:24                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.0\PresentationFramework.Classic.dll    : 0xd90      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:24                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.0\System.Printing.dll    : 0xa44      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:24                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.0\System.Workflow.ComponentModel.dll    : 0xaf8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:24                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.0\System.IdentityModel.dll    : 0x26fc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:24                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.0\PresentationFramework.Luna.dll    : 0xaf8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:24                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.0\System.Speech.dll    : 0xac4      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:24                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.0\UIAutomationClient.dll    : 0xd90      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:24                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.0\ReachFramework.dll    : 0xa44      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:24                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.0\WindowsFormsIntegration.dll    : 0xaf8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:24                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.0\PresentationFramework.Aero.dll    : 0xac4      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:24                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.0\UIAutomationProvider.dll    : 0xd90      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:24                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.0\System.Workflow.Activities.dll    : 0xb9c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:24                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.0\PresentationCore.dll    : 0x129c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:24                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.0\System.Runtime.Serialization.dll    : 0x257c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:24                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.0\System.Workflow.Runtime.dll    : 0xa44      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:24                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.0\PresentationFramework.Royale.dll    : 0xd90      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:24                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.0\UIAutomationTypes.dll    : 0x2a8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:24                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.0\PresentationBuildTasks.dll    : 0xb9c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:24                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.0\PresentationFramework.dll    : 0x257c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:24                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.0\System.ServiceModel.dll    : 0x129c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:24                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.0\ru\PresentationBuildTasks.resources.dll    : 0x26fc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:25                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.0\ru\System.Printing.resources.dll    : 0x129c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:25                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.0\ru\WindowsFormsIntegration.resources.dll    : 0x2a8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:25                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.0\ru\UIAutomationClient.resources.dll    : 0xd90      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:25                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.0\ru\System.RunTime.Serialization.Resources.dll    : 0xa44      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:25                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.0\ru\System.IdentityModel.Resources.dll    : 0x680      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:25                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.0\ru\UIAutomationClientsideProviders.resources.dll    : 0x1298      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:25                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.0\ru\System.Speech.resources.dll    : 0xb9c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:25                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.0\ru\PresentationCore.resources.dll    : 0xd90      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:25                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.0\ru\System.ServiceModel.Resources.dll    : 0x680      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:25                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.0\ru\ReachFramework.resources.dll    : 0x2720      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:25                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.0\ru\WindowsBase.resources.dll    : 0x1f94      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:25                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.0\ru\UIAutomationTypes.resources.dll    : 0x26fc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:25                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.0\ru\UIAutomationProvider.resources.dll    : 0x2720      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:25                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.0\ru\PresentationFramework.resources.dll    : 0x1f94      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:25                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.0\ru\System.IO.Log.Resources.dll    : 0x2a8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:25                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\PresentationCFFRasterizerNative_v0300.dll    : 0xb9c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:25                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\PresentationNative_v0300.dll    : 0x1298      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:25                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\TsWpfWrp.exe    : 0x920      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:25                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\ru-RU\PresentationHost.exe.mui    : 0xb70      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:25                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\MUI\0419\mscorees.dll    : 0xd90      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:26                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Inf\ServiceModelEndpoint 3.0.0.0\0000\_ServiceModelEndpointPerfCounters_D.ini    : 0x680      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:26                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Inf\ServiceModelEndpoint 3.0.0.0\0419\_ServiceModelEndpointPerfCounters_D.ini    : 0x1e88      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:26                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Inf\ServiceModelService 3.0.0.0\0000\_ServiceModelServicePerfCounters_D.ini    : 0x2dc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:26                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Inf\ServiceModelService 3.0.0.0\0419\_ServiceModelServicePerfCounters_D.ini    : 0x1e88      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:26                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Inf\MSDTC Bridge 3.0.0.0\0000\_TransactionBridgePerfCounters_D.ini    : 0x920      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:26                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Inf\MSDTC Bridge 3.0.0.0\0419\_TransactionBridgePerfCounters_D.ini    : 0xd90      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:26                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Inf\Windows Workflow Foundation 3.0.0.0\0000\PerfCounters_D.ini    : 0x2dc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:26                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Inf\Windows Workflow Foundation 3.0.0.0\0419\PerfCounters_D.ini    : 0x26fc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:27                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Inf\ServiceModelOperation 3.0.0.0\0000\_ServiceModelOperationPerfCounters_D.ini    : 0x26fc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:27                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Inf\ServiceModelOperation 3.0.0.0\0419\_ServiceModelOperationPerfCounters_D.ini    : 0xed0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:27                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Inf\SMSvcHost 3.0.0.0\0000\_SMSvcHostPerfCounters_D.ini    : 0xed0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:27                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Inf\SMSvcHost 3.0.0.0\0419\_SMSvcHostPerfCounters_D.ini    : 0x1298      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:27                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll    : 0xed0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:27                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\PresentationNative_v0300.dll    : 0x1298      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:27                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\TsWpfWrp.exe    : 0xd90      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:27                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\ru-RU\PresentationHost.exe.mui    : 0x257c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:27                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\MUI\0419\mscorees.dll    : 0xd90      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:27                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\XPSViewer\ru-RU\XPSViewer.exe.mui    : 0xd90      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:27                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\sbs_microsoft.vsa.vb.codedomprocessor.dll    : 0x1df4      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:27                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\NETFXSBS10.exe    : 0x257c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:27                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\sbs_iehost.dll    : 0x1df4      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:27                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\sbs_VsaVb7rt.dll    : 0x1df0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:28                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.WinFX.targets    : 0xb44      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:28                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscortim.dll    : 0x88c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:28                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorwks.dll    : 0xb44      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:28                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscordacwks.dll    : 0x1ef8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:28                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\System.Windows.Forms.dll    : 0x1df0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:28                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\dw20.exe    : 0x28a0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:28                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\System.Deployment.dll    : 0x1df4      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:28                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\CORPerfMonExt.dll    : 0x257c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:28                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\prcp.nlp    : 0x25f8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:28                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\IEExecRemote.dll    : 0x1ef4      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:28                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.Common.targets    : 0x25f8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:28                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\InstallUtil.exe    : 0x1ef4      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:28                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\PerfCounter.dll    : 0x740      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:28                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\System.Messaging.dll    : 0x9dc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:28                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\CasPol.exe    : 0x908      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:28                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\Microsoft_VsaVb.dll    : 0x3f0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:28                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscoree.tlb    : 0xacc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:29                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.VisualC.Dll    : 0xe18      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:29                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\EventLogMessages.dll    : 0xacc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:29                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\System.Management.dll    : 0xe18      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:29                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.VisualBasic.Compatibility.Data.dll    : 0x14ec      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:29                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\aspnet_filter.dll    : 0xfac      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:29                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.Build.Engine.dll    : 0xe18      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:29                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\ksc.nlp    : 0x1264      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:29                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\aspnet_state_perf.ini    : 0xe18      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:29                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\aspnet_regsql.exe    : 0x12a0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:29                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorld.dll    : 0x139c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:29                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\fusion.dll    : 0x1320      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:29                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\aspnet_isapi.dll    : 0xe18      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:29                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\normnfd.nlp    : 0x1460      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:29                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\RegSvcs.exe    : 0xe18      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:29                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\normalization.dll    : 0x11c4      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:29                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\CLR.mof    : 0x10b8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:29                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\MSBuild.exe    : 0x109c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:29                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\ShFusRes.dll    : 0x10b8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:29                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\aspnet_regiis.exe    : 0x1d5c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:29                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\bopomofo.nlp    : 0x1d58      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:30                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\sorttbls.nlp    : 0x144c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:30                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscordbi.dll    : 0x14c0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:30                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.Common.Tasks    : 0x144c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:30                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\big5.nlp    : 0x1448      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:30                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.Vsa.dll    : 0xdb0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:30                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\System.Runtime.Serialization.Formatters.Soap.dll    : 0x1448      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:30                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\normnfc.nlp    : 0x2148      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:30                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\aspnet_state_perf.h    : 0x214c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:30                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.Vsa.tlb    : 0x20f4      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:30                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\ilasm.exe    : 0xeb4      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:30                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.Build.Utilities.dll    : 0x1bbc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:30                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\System.Data.OracleClient.dll    : 0x27f4      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:30                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\ngen.exe    : 0x27f0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:30                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\alink.dll    : 0x2184      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:30                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\aspnet_rc.dll    : 0xeb4      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:30                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\sysglobl.dll    : 0xdb0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:30                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsn.dll    : 0x218c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:30                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\IIEHost.dll    : 0x2190      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:30                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\ISymWrapper.dll    : 0x2188      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:30                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\aspnet_perf2.ini    : 0x219c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:30                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.VisualBasic.targets    : 0x21a4      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:30                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\diasymreader.dll    : 0x2194      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:30                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\System.Data.dll    : 0x21a8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:31                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\peverify.dll    : 0x21ac      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:31                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\normnfkc.nlp    : 0x21a8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:31                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\System.EnterpriseServices.dll    : 0x2198      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:31                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\System.Web.Services.dll    : 0x21a8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:31                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\SOS.dll    : 0x21a0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:31                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\System.EnterpriseServices.tlb    : 0x21b4      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:31                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\System.DirectoryServices.dll    : 0x21b8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:31                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\vbc.exe    : 0x21bc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:31                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.Build.Framework.dll    : 0x21c0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:31                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\dfdll.dll    : 0x21cc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:31                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.VisualBasic.Vsa.dll    : 0x21c4      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:31                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\System.Transactions.dll    : 0x21c8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:31                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\System.Runtime.Remoting.dll    : 0x21d8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:31                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorie.dll    : 0x21dc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:31                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\aspnet_wp.exe    : 0x21cc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:31                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\System.EnterpriseServices.Wrapper.dll    : 0x27f4      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:31                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.VisualBasic.dll    : 0x21d0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:31                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\aspnet_perf.h    : 0x21d4      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:31                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\System.Security.dll    : 0x21d0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:31                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\normnfkd.nlp    : 0x2180      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:31                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\aspnet_perf.ini    : 0x21b4      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:32                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\MmcAspExt.dll    : 0x21e0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:32                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\System.Data.SqlXml.dll    : 0x21d4      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:32                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\System.XML.dll    : 0x21d0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:32                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsec.dll    : 0x1d24      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:32                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorrc.dll    : 0x21e0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:32                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\System.tlb    : 0x1d24      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:32                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\normidna.nlp    : 0xb10      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:32                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\IEHost.dll    : 0xd58      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:32                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\System.dll    : 0x14bc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:32                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\InstallUtilLib.dll    : 0xdac      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:32                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\webengine.dll    : 0x13ec      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:32                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\sbscmp20_mscorlib.dll    : 0xd58      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:32                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorpe.dll    : 0x2218      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:32                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\System.DirectoryServices.Protocols.dll    : 0xdac      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:32                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\cscomp.dll    : 0x13ec      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:32                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\cscompmgd.dll    : 0xdac      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:32                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\System.Web.tlb    : 0x1c64      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:32                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\VsaVb7rt.dll    : 0x2234      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:32                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\aspnet_compiler.exe    : 0x2214      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:33                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe    : 0x2234      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:33                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\RegAsm.exe    : 0x1c64      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:33                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.CSharp.targets    : 0x1cd0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:33                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\System.Web.dll    : 0x1eb4      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:33                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe    : 0x1ccc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:33                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\TLBREF.DLL    : 0x1c64      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:33                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.Vsa.Vb.CodeDOMProcessor.dll    : 0x1ccc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:33                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscordbc.dll    : 0x1ccc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:33                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\System.Configuration.Install.dll    : 0xdb0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:33                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\AppLaunch.exe    : 0x21c8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:34                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.VisualBasic.Compatibility.dll    : 0x2198      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:34                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\AspNetMMCExt.dll    : 0x21c8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:34                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\IEExec.exe    : 0x2234      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:34                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.Vsa.Vb.CodeDOMProcessor.tlb    : 0x2198      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:34                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\xjis.nlp    : 0x2208      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:34                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.JScript.dll    : 0x1f54      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:34                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\vsavb7.olb    : 0x1f50      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:34                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\System.EnterpriseServices.Thunk.dll    : 0x1658      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:34                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorlib.tlb    : 0x1684      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:34                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.JScript.tlb    : 0x1688      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:34                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\System.configuration.dll    : 0x1680      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:34                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\dv_aspnetmmc.chm    : 0x1658      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:34                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\System.Drawing.tlb    : 0x1680      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:34                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\Culture.dll    : 0x658      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:34                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\WMINet_Utils.dll    : 0xf08      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:34                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\XPThemes.manifest    : 0x768      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:34                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\System.Drawing.dll    : 0x1464      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:34                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.Build.Tasks.dll    : 0x1c5c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:34                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\adonetdiag.mof    : 0x1464      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:35                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\AdoNetDiag.dll    : 0x768      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:35                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\jsc.exe    : 0x1ce4      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:35                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\Aspnet_perf.dll    : 0x1c58      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:35                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\System.ServiceProcess.dll    : 0x1ce4      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:35                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\aspnet_regbrowsers.exe    : 0xa18      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:35                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\shfusion.chm    : 0x1a08      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:35                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\System.Windows.Forms.tlb    : 0x1a04      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:35                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\sortkey.nlp    : 0xce0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:35                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\dfsvc.exe    : 0x7f8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:35                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvc.dll    : 0x1168      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:35                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\System.Web.RegularExpressions.dll    : 0x7f8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:35                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\cvtres.exe    : 0x2a0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:35                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\System.Drawing.Design.dll    : 0x206c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:35                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\System.Web.Mobile.dll    : 0x2a0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:35                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\Accessibility.dll    : 0x1f0c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:35                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\System.Design.dll    : 0xc94      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:35                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorlib.dll    : 0x2a0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:35                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\prc.nlp    : 0x206c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:35                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\shfusion.dll    : 0x2068      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:35                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorjit.dll    : 0x1f04      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:35                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\CustomMarshalers.dll    : 0xc94      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:36                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\csc.exe    : 0x2cc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:36                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\CLR.mof.uninstall    : 0x1ebc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:36                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\CONFIG\web.config.default    : 0x2634      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:36                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\CONFIG\machine.config.default    : 0xa18      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:36                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\CONFIG\web_minimaltrust.config.default    : 0x17ac      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:36                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\CONFIG\web_mediumtrust.config.default    : 0x17a4      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:36                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\CONFIG\web_lowtrust.config.default    : 0x179c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:36                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\CONFIG\web_hightrust.config.default    : 0x17b8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:45                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\ru\aspnetmmcext.resources.dll    : 0x1b90      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:45                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\ru\system.resources.dll    : 0x179c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:45                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\ru\JSC.resources.dll    : 0x1f04      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:46                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\ru\Microsoft.VisualBasic.resources.dll    : 0x17a0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:46                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\ru\sysglobl.resources.dll    : 0x1ebc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:46                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\ru\System.Web.Services.resources.dll    : 0x1b90      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:46                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\ru\System.Configuration.resources.dll    : 0x179c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:46                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\ru\ShFusRes.dll    : 0x17a0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:46                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\ru\mscorlib.resources.dll    : 0x1ebc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:46                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\ru\System.Design.resources.dll    : 0x1b90      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:46                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\ru\System.ServiceProcess.resources.dll    : 0x179c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:46                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\ru\System.Drawing.Design.resources.dll    : 0x2068      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:46                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\ru\System.xml.resources.dll    : 0x1688      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:46                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\ru\System.DirectoryServices.resources.dll    : 0x2228      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:46                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\ru\MSBuild.resources.dll    : 0x2068      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:46                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\ru\aspnet_rc.dll    : 0x1cd0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:46                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\ru\System.Runtime.Serialization.Formatters.Soap.resources.dll    : 0x2214      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:46                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\ru\System.Configuration.Install.resources.dll    : 0x1b90      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:46                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\ru\System.Web.resources.dll    : 0x1794      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:46                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\ru\aspnet_compiler.resources.dll    : 0x1cd0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:46                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\ru\aspnet_regbrowsers.resources.dll    : 0x179c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:46                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\ru\aspnet_regsql.resources.dll    : 0x2214      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:46                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\ru\mscorrc.dll    : 0x1b90      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:46                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\ru\Regasm.Resources.dll    : 0x1cd0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:46                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\ru\System.Management.resources.dll    : 0x1688      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:46                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\ru\Microsoft.Build.Engine.resources.dll    : 0x1f04      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:46                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\ru\System.EnterpriseServices.resources.dll    : 0x1b90      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:46                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\ru\System.Data.OracleClient.resources.dll    : 0x1cd0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:46                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\ru\caspol.resources.dll    : 0x1c68      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:46                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\ru\System.Deployment.resources.dll    : 0x1688      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:47                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\ru\InstallUtil.resources.dll    : 0x1f04      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:47                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\ru\System.Security.resources.dll    : 0x1cd0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:47                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\ru\System.Data.resources.dll    : 0x1c68      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:47                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\ru\system.data.sqlxml.resources.dll    : 0x1688      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:47                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\ru\System.DirectoryServices.Protocols.resources.dll    : 0x1f04      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:47                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\ru\System.Messaging.resources.dll    : 0x1cd0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:47                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\ru\Microsoft.Build.Utilities.Resources.dll    : 0x1c68      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:47                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\ru\System.Windows.Forms.resources.dll    : 0x17a0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:47                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\ru\System.Runtime.Remoting.resources.dll    : 0x1688      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:47                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\ru\System.Transactions.resources.dll    : 0x2068      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:47                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\ru\System.Drawing.resources.dll    : 0x1f04      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:47                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\ru\Microsoft.Build.Tasks.resources.dll    : 0x1c68      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:47                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\ru\Microsoft.JScript.resources.dll    : 0x1f04      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:47                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\ru\System.Web.Mobile.resources.dll    : 0x2068      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:47                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\MUI\0419\mscorsecr.dll    : 0x2068      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:47                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\MUI\0409\mscorsecr.dll    : 0x1f04      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:47                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\RedistList\FrameworkList.xml    : 0x1c68      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:47                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\1033\CvtResUI.dll    : 0x1688      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:47                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\1033\alinkui.dll    : 0x1c68      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:47                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\1033\cscompui.dll    : 0x2068      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:47                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\1033\Vsavb7rtUI.dll    : 0x1f04      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:47                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\1033\vbc7ui.dll    : 0x2214      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:47                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\GAC\RU\Microsoft.VisualBasic.Compatibility.resources.dll    : 0x2214      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:47                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\GAC\RU\Microsoft.VisualBasic.Compatibility.Data.resources.dll    : 0x1688      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:47                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\SubsetList\Client.xml    : 0x1c68      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:48                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\1049\CvtResUI.dll    : 0x2214      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:48                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\1049\alinkui.dll    : 0x1688      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:48                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\1049\cscompui.dll    : 0x1f04      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:48                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\1049\Vsavb7rtUI.dll    : 0x1c68      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:48                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\1049\vbc7ui.dll    : 0x2214      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:48                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.5\Microsoft.WinFx.targets    : 0x1794      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:48                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.5\EdmGen.exe    : 0x2214      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:48                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.5\AddInUtil.exe.config    : 0x1f04      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:48                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.5\vbc.rsp    : 0xa18      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:48                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.5\Microsoft.Common.targets    : 0x1c68      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:48                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.5\vbc.exe.config    : 0x2214      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:48                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.5\csc.exe.config    : 0x1f04      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:48                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.5\MSBuild.exe    : 0xa18      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:48                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.5\AddInProcess32.exe.config    : 0x1c68      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:48                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.5\msbuild.exe.config    : 0x2214      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:48                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.5\Microsoft.Common.Tasks    : 0x1c68      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:48                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.5\AddInUtil.exe    : 0xa18      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:48                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.5\WFServicesReg.exe    : 0x1f04      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:48                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.5\Sentinel.v3.5Client.dll    : 0x2214      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:49                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.5\SqlServer.targets    : 0x1c68      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:49                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.5\Microsoft.VisualC.STLCLR.dll    : 0xa18      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:49                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.5\AddInProcess.exe.config    : 0x1f04      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:49                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.5\Microsoft.VisualBasic.targets    : 0x2214      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:49                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.5\vbc.exe    : 0x1c68      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:49                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.5\DataSvcUtil.exe    : 0x17a0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:49                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.5\Microsoft.Build.xsd    : 0x1794      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:49                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.5\csc.rsp    : 0x1b90      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:49                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.5\AddInProcess32.exe    : 0xa18      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:49                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.5\AddInProcess.exe    : 0x1f04      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:49                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.5\Microsoft.Data.Entity.Build.Tasks.dll    : 0x1794      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:49                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.5\Microsoft.Build.Tasks.v3.5.dll    : 0x1b90      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:49                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.5\Microsoft.CSharp.targets    : 0xa18      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:49                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.5\default.win32manifest    : 0x1f04      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:49                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.5\MSBuild.rsp    : 0x1794      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:49                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.5\csc.exe    : 0x1f04      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:50                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.5\SQL\EN\SqlPersistenceProviderLogic.sql    : 0x1794      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:50                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.5\SQL\EN\DropSqlPersistenceProviderSchema.sql    : 0x1b90      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:50                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.5\SQL\EN\SqlPersistenceProviderSchema.sql    : 0xa18      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:50                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.5\SQL\EN\DropSqlPersistenceProviderLogic.sql    : 0x1f04      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:50                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.5\ru\DataSvcUtil.resources.dll    : 0x1f04      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:50                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.5\ru\Microsoft.Data.Entity.Build.Tasks.Resources.dll    : 0x1688      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:50                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.5\ru\Microsoft.Build.Tasks.v3.5.resources.dll    : 0x1b90      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:50                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.5\ru\MSBuild.resources.dll    : 0x14bc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:50                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.5\ru\EdmGen.Resources.dll    : 0x1794      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:50                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.5\1033\cscompui.dll    : 0x1794      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:50                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.5\1033\vbc7ui.dll    : 0x1f04      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:50                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.5\1049\cscompui.dll    : 0x1b90      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:50                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.5\1049\vbc7ui.dll    : 0x1f04      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:50                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\_SMSvcHostPerfCounters.reg    : 0x1f04      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:50                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ComSvcConfig.exe    : 0x14bc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:50                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\_ServiceModelOperationPerfCounters.reg    : 0x179c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:50                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\Microsoft.Transactions.Bridge.Dtc.dll    : 0x14bc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:51                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\_ServiceModelEndpointPerfCounters.reg    : 0x2214      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:51                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\System.ServiceModel.Install.dll    : 0x1c30      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:51                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceModelEvents.dll    : 0x1f04      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:51                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceModelReg.exe    : 0x1b90      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:51                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMConfigInstaller.exe    : 0x1794      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:51                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\System.Runtime.Serialization.dll    : 0x14bc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:51                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe    : 0x1f04      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:51                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\Microsoft.Transactions.Bridge.dll    : 0x14bc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:51                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\WsatConfig.exe    : 0x1b90      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:51                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\System.ServiceModel.WasHosting.dll    : 0x1794      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:51                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceMonikerSupport.dll    : 0x1f04      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:51                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\_ServiceModelServicePerfCounters.reg    : 0x1794      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:51                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\_TransactionBridgePerfCounters.reg    : 0x1b90      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:51                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMdiagnostics.dll    : 0x2214      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:51                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\System.ServiceModel.dll    : 0x1b90      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:51                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceModelInstallRC.dll    : 0x1688      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:51                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.0\WPF\wpfgfx_v0300.dll    : 0x1688      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:51                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.0\WPF\PenIMC.dll    : 0x14bc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:51                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe.config    : 0x1b90      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:51                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.0\WPF\PresentationUI.dll    : 0x1f04      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:51                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.0\WPF\PresentationCFFRasterizer.dll    : 0x1688      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:51                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.0\WPF\PresentationHostDLL.dll    : 0x14bc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:52                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.0\WPF\ru-RU\PresentationHostDLL.dll.mui    : 0x1f04      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:52                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.0\WPF\ru\PresentationUI.resources.dll    : 0x1688      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:52                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.0\WPF\XamlViewer\XamlViewer_v0300.exe.manifest    : 0x1c30      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:52                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.0\WPF\XamlViewer\XamlViewer_v0300.xbap    : 0x1688      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:52                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.0\WPF\XamlViewer\XamlViewer_v0300.exe    : 0xa18      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:52                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\Microsoft.WinFX.targets    : 0x1c30      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:52                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscortim.dll    : 0x14bc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:52                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\dw20.exe    : 0x1c30      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:52                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorwks.dll    : 0x1f04      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:52                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscordacwks.dll    : 0x1688      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:52                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\System.Windows.Forms.dll    : 0x14bc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:52                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\CORPerfMonExt.dll    : 0x2214      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:52                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\System.Deployment.dll    : 0x1c30      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:52                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\IEExecRemote.dll    : 0x1f04      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:52                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\prcp.nlp    : 0x1794      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:52                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\System.Messaging.dll    : 0x1b90      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:52                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\Microsoft.Common.targets    : 0x14bc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:53                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\InstallUtil.exe    : 0x1f04      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:53                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\PerfCounter.dll    : 0x1794      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:53                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorpjt.dll    : 0x1b90      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:53                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\CasPol.exe    : 0x14bc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:53                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscoree.tlb    : 0x1f04      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:53                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\Microsoft.VisualC.Dll    : 0x1794      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:53                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\System.Management.dll    : 0x1f04      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:53                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\Microsoft.Build.Engine.dll    : 0x1794      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:53                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\EventLogMessages.dll    : 0x14bc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:53                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\aspnet_filter.dll    : 0x1b90      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:53                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\ksc.nlp    : 0x1f04      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:53                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\aspnet_state_perf.ini    : 0x1b90      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:53                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\aspnet_isapi.dll    : 0x14bc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:53                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\aspnet_regsql.exe    : 0x1794      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:53                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorld.dll    : 0x1c30      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:53                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\fusion.dll    : 0x17a0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:53                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\normnfd.nlp    : 0x1f04      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:53                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\CLR.mof    : 0x17a0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:53                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\RegSvcs.exe    : 0x1f04      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:54                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\normalization.dll    : 0x1b90      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:54                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\MSBuild.exe    : 0x1c30      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:54                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\ShFusRes.dll    : 0x17a0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:54                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\aspnet_regiis.exe    : 0x1f04      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:54                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\bopomofo.nlp    : 0x1b90      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:54                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\sorttbls.nlp    : 0x1c30      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:54                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscordbi.dll    : 0x2214      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:54                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\Microsoft.Common.Tasks    : 0x1b90      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:54                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\big5.nlp    : 0x179c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:54                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\Microsoft.Vsa.dll    : 0x1cd0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:54                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\normnfc.nlp    : 0x179c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:54                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\System.Runtime.Serialization.Formatters.Soap.dll    : 0x1f04      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:54                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\aspnet_state_perf.h    : 0x1c30      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:54                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\ngen.exe    : 0x1cd0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:54                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\Microsoft.Vsa.tlb    : 0x179c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:54                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\ilasm.exe    : 0x1f04      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:54                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\System.Data.OracleClient.dll    : 0x1c30      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:54                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\Microsoft.Build.Utilities.dll    : 0x1cd0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:54                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\alink.dll    : 0x179c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:54                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\aspnet_rc.dll    : 0x1cd0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:54                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\sysglobl.dll    : 0x1c30      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:54                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsn.dll    : 0x17a0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:54                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\IIEHost.dll    : 0x179c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:54                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\ISymWrapper.dll    : 0x1cd0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:54                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\aspnet_perf2.ini    : 0x1c30      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:54                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\Microsoft.VisualBasic.targets    : 0x17a0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:54                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\diasymreader.dll    : 0x179c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:54                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\System.Data.dll    : 0x179c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:54                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\System.EnterpriseServices.dll    : 0x1794      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:54                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\peverify.dll    : 0x1f0c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:54                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\normnfkc.nlp    : 0x1794      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:54                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\SOS.dll    : 0x1cd0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:55                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\System.Web.Services.dll    : 0x1794      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:55                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\System.DirectoryServices.dll    : 0x1f0c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:55                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\System.EnterpriseServices.tlb    : 0x1688      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:55                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\vbc.exe    : 0x1cd0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:55                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorie.dll    : 0x1794      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:55                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\System.Transactions.dll    : 0x13b4      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:55                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\Microsoft.Build.Framework.dll    : 0x1f0c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:55                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\System.Runtime.Remoting.dll    : 0x1688      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:55                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\dfdll.dll    : 0x1794      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:55                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\System.EnterpriseServices.Wrapper.dll    : 0x13b4      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:55                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\aspnet_wp.exe    : 0x1f0c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:55                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\Microsoft.VisualBasic.dll    : 0x14bc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:55                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\System.Security.dll    : 0x1688      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:55                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\aspnet_perf.h    : 0x1f04      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:55                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\normnfkd.nlp    : 0x1cd0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:55                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\aspnet_perf.ini    : 0x2214      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:55                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\MmcAspExt.dll    : 0x1794      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:55                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\System.Data.SqlXml.dll    : 0x1688      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:55                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\System.XML.dll    : 0x1cd0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:55                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsec.dll    : 0x2214      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:55                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorrc.dll    : 0x1f0c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:55                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\System.tlb    : 0x14bc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:55                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\normidna.nlp    : 0x179c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:55                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\IEHost.dll    : 0x14bc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:55                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\System.dll    : 0xa18      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:55                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\InstallUtilLib.dll    : 0x21d0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:55                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\Ldr64.exe    : 0x1f04      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:55                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\webengine.dll    : 0x21d0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:55                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\System.DirectoryServices.Protocols.dll    : 0xa18      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:56                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorpe.dll    : 0x14bc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:56                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\cscomp.dll    : 0x1f04      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:56                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\aspnet_state.exe    : 0x14bc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:56                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\cscompmgd.dll    : 0xa18      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:56                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\System.Web.tlb    : 0x21d0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:56                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\aspnet_compiler.exe    : 0x1794      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:56                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\System.Web.dll    : 0x21d0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:56                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\RegAsm.exe    : 0x27f0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:56                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\Microsoft.CSharp.targets    : 0x14bc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:56                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe    : 0x1794      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:56                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscordbc.dll    : 0x21d0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:56                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\TLBREF.DLL    : 0x1794      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:56                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\System.Configuration.Install.dll    : 0x21d0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:56                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\AppLaunch.exe    : 0x1b90      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:56                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\IEExec.exe    : 0x13b4      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:56                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\AspNetMMCExt.dll    : 0x1b90      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:56                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\xjis.nlp    : 0x21d0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:56                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\Microsoft.JScript.dll    : 0x27f0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:56                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\System.EnterpriseServices.Thunk.dll    : 0x13b4      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:56                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\System.Drawing.tlb    : 0x1b90      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:57                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\Microsoft.JScript.tlb    : 0x21d0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:57                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorlib.tlb    : 0x27f0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:57                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\System.configuration.dll    : 0x13b4      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:57                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\dv_aspnetmmc.chm    : 0x1b90      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:57                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\Culture.dll    : 0x13b4      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:57                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\WMINet_Utils.dll    : 0x21d0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:57                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\XPThemes.manifest    : 0x179c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:57                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\System.Drawing.dll    : 0x21d0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:57                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\Microsoft.Build.Tasks.dll    : 0x1b90      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:57                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\jsc.exe    : 0x1f04      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:57                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\adonetdiag.mof    : 0x27f0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:57                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\AdoNetDiag.dll    : 0x179c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:57                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\aspnet_regbrowsers.exe    : 0x21d0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:57                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\Aspnet_perf.dll    : 0x1f04      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:57                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\System.ServiceProcess.dll    : 0x27f0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:57                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\shfusion.chm    : 0x1f04      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:57                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\System.Windows.Forms.tlb    : 0x21d0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:57                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\sortkey.nlp    : 0x179c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:57                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\System.Web.RegularExpressions.dll    : 0x27f0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:57                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\dfsvc.exe    : 0x1f04      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:58                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvc.dll    : 0x21d0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:58                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\System.Drawing.Design.dll    : 0x1f04      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:58                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\System.Web.Mobile.dll    : 0x27f0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:58                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\cvtres.exe    : 0x179c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:58                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\Accessibility.dll    : 0x21d0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:58                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorlib.dll    : 0x179c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:58                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\prc.nlp    : 0x27f0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:58                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\System.Design.dll    : 0x13b4      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:58                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\shfusion.dll    : 0x1b90      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:58                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorjit.dll    : 0x1f04      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:58                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\CLR.mof.uninstall    : 0x21d0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:58                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\CustomMarshalers.dll    : 0x13b4      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:58                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\csc.exe    : 0x1b90      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:58                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\CONFIG\web.config.default    : 0x21d0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:58                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\CONFIG\machine.config.default    : 0x1f04      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:58                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\CONFIG\web_minimaltrust.config.default    : 0x21d0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:58                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\CONFIG\web_lowtrust.config.default    : 0x1f04      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:58                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\CONFIG\web_mediumtrust.config.default    : 0x21d0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:31:59                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\CONFIG\web_hightrust.config.default    : 0x14bc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:07                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\ru\aspnetmmcext.resources.dll    : 0x1790      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:07                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\ru\system.Resources.dll    : 0x2214      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:07                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\ru\JSC.Resources.dll    : 0x17a0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:07                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\ru\Microsoft.VisualBasic.Resources.dll    : 0x2068      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:07                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\ru\sysglobl.resources.dll    : 0x1ebc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:07                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\ru\System.Web.Services.Resources.dll    : 0x1790      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:07                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\ru\System.Configuration.resources.dll    : 0x17a0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:07                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\ru\ShFusRes.dll    : 0x2228      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:07                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\ru\mscorlib.resources.dll    : 0xc28      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:08                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\ru\System.Design.Resources.dll    : 0x21d0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:08                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\ru\System.ServiceProcess.Resources.dll    : 0x2214      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:08                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\ru\System.Drawing.Design.Resources.dll    : 0x2068      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:08                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\ru\System.xml.Resources.dll    : 0x1ebc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:08                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\ru\System.DirectoryServices.Resources.dll    : 0x21d0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:08                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\ru\MSBuild.resources.dll    : 0x2214      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:08                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\ru\aspnet_rc.dll    : 0x2068      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:08                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\ru\System.Runtime.Serialization.Formatters.Soap.Resources.dll    : 0x1ebc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:08                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\ru\System.Configuration.Install.resources.dll    : 0x21d0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:08                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\ru\System.Web.Resources.dll    : 0x2214      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:08                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\ru\aspnet_compiler.resources.dll    : 0x2068      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:08                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\ru\aspnet_regbrowsers.resources.dll    : 0x1ebc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:08                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\ru\aspnet_regsql.resources.dll    : 0x21d0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:08                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\ru\mscorrc.dll    : 0x17a0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:08                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\ru\Regasm.resources.dll    : 0x2214      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:08                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\ru\System.Management.Resources.dll    : 0x2068      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:08                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\ru\Microsoft.Build.Engine.resources.dll    : 0x21d0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:08                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\ru\System.EnterpriseServices.Resources.dll    : 0x17a0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:08                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\ru\System.Data.OracleClient.resources.dll    : 0x2214      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:08                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\ru\caspol.resources.dll    : 0x2068      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:08                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\ru\System.Deployment.resources.dll    : 0x21d0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:08                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\ru\InstallUtil.resources.dll    : 0x17a0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:08                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\ru\System.Security.Resources.dll    : 0x2214      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:08                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\ru\System.Data.Resources.dll    : 0x2068      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:08                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\ru\system.data.sqlxml.resources.dll    : 0x21d0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:08                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\ru\System.DirectoryServices.Protocols.resources.dll    : 0x17a0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:08                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\ru\System.Messaging.Resources.dll    : 0x2214      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:08                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\ru\Microsoft.Build.Utilities.Resources.dll    : 0x2068      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:08                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\ru\System.Windows.Forms.Resources.dll    : 0x21d0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:09                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\ru\System.Runtime.Remoting.Resources.dll    : 0x17a0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:09                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\ru\System.Transactions.resources.dll    : 0x2214      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:09                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\ru\System.Drawing.Resources.dll    : 0x2068      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:09                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\ru\Microsoft.Build.Tasks.resources.dll    : 0x21d0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:09                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\ru\Microsoft.JScript.Resources.dll    : 0x2068      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:09                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\ru\System.Web.Mobile.Resources.dll    : 0x2214      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:09                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\MUI\0419\mscorsecr.dll    : 0x2214      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:09                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\MUI\0409\mscorsecr.dll    : 0x1688      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:09                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\RedistList\FrameworkList.xml    : 0x2068      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:09                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\1033\CvtResUI.dll    : 0x21d0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:09                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\1033\alinkui.dll    : 0x2068      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:09                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\1033\cscompui.dll    : 0x2214      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:09                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\1033\vbc7ui.dll    : 0x1688      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:09                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\1049\CvtResUI.dll    : 0x2068      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:09                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\1049\alinkui.dll    : 0x21d0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:09                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\1049\cscompui.dll    : 0x2214      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:09                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\1049\vbc7ui.dll    : 0x27f0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:09                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.5\EdmGen.exe    : 0x21d0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:09                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.5\Microsoft.WinFx.targets    : 0x27f0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:09                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.5\AddInUtil.exe.config    : 0x2214      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:09                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.5\vbc.rsp    : 0x1688      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:09                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.5\Microsoft.Common.targets    : 0x21d0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:09                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.5\vbc.exe.config    : 0x27f0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:09                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.5\csc.exe.config    : 0x2214      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:09                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.5\MSBuild.exe    : 0x1688      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:10                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.5\AddInProcess32.exe.config    : 0x21d0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:10                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.5\msbuild.exe.config    : 0x27f0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:10                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.5\Microsoft.Common.Tasks    : 0x21d0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:10                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.5\AddInUtil.exe    : 0x1688      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:10                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.5\Sentinel.v3.5Client.dll    : 0x2214      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:10                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.5\WFServicesReg.exe    : 0x1ebc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:10                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.5\Microsoft.VisualC.STLCLR.dll    : 0x27f0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:10                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.5\AddInProcess.exe.config    : 0x2068      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:10                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.5\Microsoft.VisualBasic.targets    : 0x21d0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:10                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.5\vbc.exe    : 0x2214      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:10                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.5\DataSvcUtil.exe    : 0x27f0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:10                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.5\Microsoft.Build.xsd    : 0x2068      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:10                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.5\csc.rsp    : 0x21d0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:10                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.5\AddInProcess32.exe    : 0x2214      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:10                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.5\AddInProcess.exe    : 0x1688      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:11                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.5\Microsoft.Data.Entity.Build.Tasks.dll    : 0x27f0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:11                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.5\Microsoft.Build.Tasks.v3.5.dll    : 0x2068      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:11                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.5\Microsoft.CSharp.targets    : 0x2214      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:11                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.5\default.win32manifest    : 0x1688      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:11                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.5\MSBuild.rsp    : 0x1ebc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:11                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.5\csc.exe    : 0x1688      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:11                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.5\SQL\EN\SqlPersistenceProviderLogic.sql    : 0x2068      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:11                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.5\SQL\EN\DropSqlPersistenceProviderSchema.sql    : 0x27f0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:11                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.5\SQL\EN\SqlPersistenceProviderSchema.sql    : 0x17b8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:11                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.5\SQL\EN\DropSqlPersistenceProviderLogic.sql    : 0x1688      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:11                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.5\ru\DataSvcUtil.resources.dll    : 0x1688      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:11                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.5\ru\Microsoft.Data.Entity.Build.Tasks.Resources.dll    : 0x2068      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:11                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.5\ru\Microsoft.Build.Tasks.v3.5.resources.dll    : 0x17b8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:11                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.5\ru\MSBuild.resources.dll    : 0x27f0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:11                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.5\ru\EdmGen.Resources.dll    : 0x1688      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:11                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.5\1033\cscompui.dll    : 0x17b8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:11                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.5\1033\vbc7ui.dll    : 0x1688      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:11                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.5\1049\cscompui.dll    : 0x2068      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:12                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.5\1049\vbc7ui.dll    : 0x1688      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:12                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\_SMSvcHostPerfCounters.reg    : 0x1688      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:12                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\_ServiceModelOperationPerfCounters.reg    : 0x17b8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:12                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\ComSvcConfig.exe    : 0x17ac      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:12                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\Microsoft.Transactions.Bridge.Dtc.dll    : 0x17b8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:12                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\System.ServiceModel.Install.dll    : 0x13b8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:12                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\_ServiceModelEndpointPerfCounters.reg    : 0x2068      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:12                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMConfigInstaller.exe    : 0x17a4      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:12                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\ServiceModelReg.exe    : 0x17ac      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:12                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\ServiceModelEvents.dll    : 0x13b8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:12                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\Microsoft.Transactions.Bridge.dll    : 0x2068      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:12                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\System.Runtime.Serialization.dll    : 0x17a4      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:12                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe    : 0x2068      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:12                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\WsatConfig.exe    : 0x13b8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:12                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\System.ServiceModel.WasHosting.dll    : 0x17ac      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:12                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\ServiceMonikerSupport.dll    : 0x27f0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:12                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\_ServiceModelServicePerfCounters.reg    : 0x17ac      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:12                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\_TransactionBridgePerfCounters.reg    : 0x2068      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:13                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\ServiceModelInstallRC.dll    : 0x17a4      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:13                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\System.ServiceModel.dll    : 0x17ac      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:13                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMdiagnostics.dll    : 0x27f0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:13                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\ru-RU\ServiceModelInstallRC.dll.mui    : 0x17a4      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:13                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\ru-RU\ServiceModelEvents.dll.mui    : 0x27f0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:13                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\ru\WsatConfig.resources.dll    : 0x2068      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:13                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\ru\Microsoft.Transactions.Bridge.Dtc.Resources.dll    : 0x27f0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:13                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\ru\System.ServiceModel.Install.Resources.dll    : 0x17a4      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:13                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\ru\SMSvcHost.resources.dll    : 0x17ac      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:13                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\ru\ComSvcConfig.resources.dll    : 0x2068      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:13                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\ru\Microsoft.Transactions.Bridge.Resources.dll    : 0x17b8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:13                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\ru\SMDiagnostics.resources.dll    : 0x27f0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:13                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\ru\ServiceModelReg.resources.dll    : 0x17a4      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:13                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\wpfgfx_v0300.dll    : 0x17b8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:13                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationUI.dll    : 0x2068      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:13                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PenIMC.dll    : 0x27f0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:13                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe.config    : 0x17a4      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:13                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationCFFRasterizer.dll    : 0x17b8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:13                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationHostDLL.dll    : 0x2068      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:13                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe    : 0x27f0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:13                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\ru-RU\PresentationHostDLL.dll.mui    : 0x17b8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:13                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\ru\PresentationUI.resources.dll    : 0x2068      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:13                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\XamlViewer\XamlViewer_v0300.exe.manifest    : 0x17a4      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:13                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\XamlViewer\XamlViewer_v0300.xbap    : 0x2068      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:13                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\XamlViewer\XamlViewer_v0300.exe    : 0x27f0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:13                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\MSBuild\Microsoft\Windows Workflow Foundation\v3.5\Workflow.Targets    : 0x17ac      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:13                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\MSBuild\Microsoft\Windows Workflow Foundation\v3.5\Workflow.VisualBasic.Targets    : 0x27f0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:13                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.5\System.Web.Entity.Design.dll    : 0x17ac      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:13                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.5\System.WorkflowServices.dll    : 0x27f0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:14                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.5\System.ServiceModel.Web.dll    : 0x17b8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:14                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.5\System.Data.Services.Client.dll    : 0x17a4      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:14                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.5\Microsoft.Build.Conversion.v3.5.dll    : 0x17ac      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:14                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.5\System.Web.Abstractions.dll    : 0x1688      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:14                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.5\System.Web.Entity.dll    : 0x27f0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:14                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.5\System.Windows.Presentation.dll    : 0x17b8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:14                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.5\System.Xml.Linq.dll    : 0x17ac      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:14                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.5\System.Web.Extensions.Design.dll    : 0x1688      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:14                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.5\System.Data.Linq.dll    : 0x17a0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:14                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.5\System.Data.Entity.dll    : 0x27f0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:14                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.5\System.Data.Entity.Design.dll    : 0x17b8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:14                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.5\System.Core.dll    : 0x1688      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:14                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.5\System.Data.DataSetExtensions.dll    : 0x17a0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:14                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.5\System.Data.Services.Design.dll    : 0x27f0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:14                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.5\System.Management.Instrumentation.dll    : 0x17b8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:14                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.5\Microsoft.Build.Utilities.v3.5.dll    : 0x27f0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:14                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.5\System.Data.Services.dll    : 0x17b8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:14                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.5\System.Web.DynamicData.dll    : 0x21d0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:15                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.5\System.Web.DynamicData.Design.dll    : 0xfb8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:15                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.5\System.AddIn.Contract.dll    : 0x17b4      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:15                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.5\System.Web.Extensions.dll    : 0x27f0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:15                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.5\Microsoft.Build.Engine.dll    : 0xc28      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:15                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.5\System.DirectoryServices.AccountManagement.dll    : 0x17b8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:15                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.5\System.Net.dll    : 0x1798      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:15                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.5\System.AddIn.dll    : 0x13bc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:15                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.5\Microsoft.VisualC.STLCLR.dll    : 0x21d0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:15                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.5\System.ComponentModel.DataAnnotations.dll    : 0x17b8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:15                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.5\System.Web.Routing.dll    : 0x1790      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:15                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.5\Microsoft.Build.Framework.dll    : 0x1798      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:15                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.5\SubsetList\Client.xml    : 0xc28      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:15                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.5\ru\System.Data.Entity.Resources.dll    : 0x1790      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:15                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.5\ru\System.Web.Entity.Design.Resources.dll    : 0xc28      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:15                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.5\ru\System.Windows.Presentation.resources.dll    : 0xfb8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:15                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.5\ru\System.Management.Instrumentation.Resources.dll    : 0x13bc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:15                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.5\ru\Microsoft.Build.Conversion.v3.5.resources.dll    : 0x1798      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:15                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.5\ru\System.Data.Entity.Design.Resources.dll    : 0x1790      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:15                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.5\ru\System.Data.Services.Design.resources.dll    : 0x17a4      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:15                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.5\ru\Microsoft.Build.Engine.resources.dll    : 0x17b8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:15                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.5\ru\System.Xml.Linq.Resources.dll    : 0xfb8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:15                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.5\ru\System.Web.Entity.Resources.dll    : 0x17b4      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:15                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.5\ru\System.Data.DataSetExtensions.Resources.dll    : 0x13bc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:16                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.5\ru\Microsoft.Build.Utilities.v3.5.resources.dll    : 0x17b8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:16                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.5\ru\System.Data.Linq.Resources.dll    : 0xc28      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:16                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.5\ru\System.Net.Resources.dll    : 0x1798      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:16                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.5\ru\System.Data.Services.resources.dll    : 0x1790      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:16                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.5\ru\System.Data.Services.Client.resources.dll    : 0x13bc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:16                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.5\RedistList\FrameworkList.xml    : 0x1798      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:16                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\PresentationFramework.Classic.dll    : 0x1790      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:16                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\System.Printing.dll    : 0x1798      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:16                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\System.Workflow.ComponentModel.dll    : 0xc28      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:16                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\UIAutomationClientsideProviders.dll    : 0x13bc      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:16                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\WindowsBase.dll    : 0x17a4      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:16                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\System.IO.Log.dll    : 0x21d0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:16                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\System.IdentityModel.dll    : 0xc28      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:16                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\PresentationFramework.Luna.dll    : 0x21d0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:16                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\UIAutomationProvider.dll    : 0x179c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:16                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\System.Workflow.Activities.dll    : 0x17b8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:16                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\PresentationCore.dll    : 0x1790      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:16                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\UIAutomationClient.dll    : 0x21d0      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:17                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\System.Speech.dll    : 0x179c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:17                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\ReachFramework.dll    : 0x2068      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:17                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\WindowsFormsIntegration.dll    : 0x17b8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:17                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\PresentationFramework.Aero.dll    : 0x1790      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:17                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\System.Runtime.Serialization.dll    : 0x179c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:17                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\System.Workflow.Runtime.dll    : 0x2068      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:17                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\PresentationFramework.Royale.dll    : 0x17b8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:17                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\UIAutomationTypes.dll    : 0x1790      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:17                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\PresentationBuildTasks.dll    : 0x179c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:17                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\System.ServiceModel.dll    : 0x2068      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:17                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\PresentationFramework.dll    : 0x17b8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:17                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\SubsetList\Client.xml    : 0x179c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:17                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\ru\PresentationBuildTasks.resources.dll    : 0x2068      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:17                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\ru\System.Printing.resources.dll    : 0x179c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:17                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\ru\WindowsFormsIntegration.resources.dll    : 0x1790      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:17                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\ru\UIAutomationClient.resources.dll    : 0x17b8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:17                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\ru\UIAutomationClientsideProviders.resources.dll    : 0x2068      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:17                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\ru\System.Speech.resources.dll    : 0x179c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:18                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\ru\PresentationCore.resources.dll    : 0x1790      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:18                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\ru\ReachFramework.resources.dll    : 0x17b8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:18                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\ru\WindowsBase.resources.dll    : 0x1eb8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:18                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\ru\UIAutomationTypes.resources.dll    : 0x2068      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:18                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\ru\UIAutomationProvider.resources.dll    : 0x179c      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-17 22:32:18                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\ru\PresentationFramework.resources.dll    : 0x17b8      :    : 0x624    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   12544      2014-10-17 22:33:21                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x268    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 22:33:21                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-17 22:33:22                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x268    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 22:33:22                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-17 22:33:30                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x1f6d8     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 22:33:30                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x1f6d8     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 22:33:30                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x1f6d8     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 22:33:30                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x1f6d8     :      : ACER      :       : acer  
      Audit Success   12545      2014-10-17 22:35:14                                  Microsoft-Windows-Security-Auditing  4647: ,  :    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x1f6d8      ,   .  ,  ,  .        .  
      Audit Success   103        2014-10-17 22:35:18                                  Microsoft-Windows-Eventlog      1100: 
      Audit Success   12288      2014-10-17 22:35:51                                  Microsoft-Windows-Security-Auditing  4608:   Windows.           LSASS.EXE    .  
      Audit Success   12544      2014-10-17 22:35:51                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   0     :  -     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x4    :        :     : -     : -    :  -       :    :  -     : -    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   13568      2014-10-17 22:35:51                                  Microsoft-Windows-Security-Auditing  4902:      .     : 0   : 0x89ca  
      Audit Success   12544      2014-10-17 22:35:59                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x290    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-17 22:35:59                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x290    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-17 22:35:59                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x290    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-17 22:35:59                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x290    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-17 22:35:59                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  DWM-1     :  Window Manager   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x260    :  C:\Windows\System32\winlogon.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-17 22:35:59                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0xc328   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x260    :  C:\Windows\System32\winlogon.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-17 22:35:59                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0xc33e   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x260    :  C:\Windows\System32\winlogon.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 22:35:59                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-17 22:35:59                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-17 22:35:59                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-17 22:35:59                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-17 22:35:59                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0xc328    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-17 22:35:59                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0xc33e    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege  
      Audit Success   12544      2014-10-17 22:36:00                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x290    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 22:36:00                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12292      2014-10-17 22:36:06                                  Microsoft-Windows-Security-Auditing  5033:   Windows  .  
      Audit Success   12544      2014-10-17 22:36:06                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x290    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 22:36:06                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12292      2014-10-17 22:36:10                                  Microsoft-Windows-Security-Auditing  5024:   Windows  .  
      Audit Success   12544      2014-10-17 22:36:18                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   3     :  %%1833     :    :  S-1-5-7     :        :  NT AUTHORITY    :  0x1e08a   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x0    :  -      :     :      : -    :  -       :    :  NtLmSsp      : NTLM    : -     ( NTLM): NTLM V1    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12292      2014-10-17 22:36:20                                  Microsoft-Windows-Security-Auditing  6406: ESET Smart Security    Windows      BootTimeRuleCategory, FirewallRuleCategory.  
      Audit Success   12544      2014-10-17 22:36:21                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :        :  acer   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x260    :  C:\Windows\System32\winlogon.exe      :    : 127.0.0.1   :   0      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-17 22:36:21                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x21212   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x260    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-17 22:36:21                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x212a1   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x260    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 22:36:21                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x21212    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-17 22:36:35                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x212a1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 22:36:35                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x212a1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 22:36:35                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x212a1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 22:36:35                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x212a1     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-17 22:36:37                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x290    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 22:36:37                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-17 22:39:36                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x212a1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 22:39:36                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x212a1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 22:39:36                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x212a1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 22:39:36                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x212a1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 22:39:38                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x212a1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 22:39:38                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x212a1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 22:40:26                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x212a1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 22:40:26                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x212a1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 22:40:31                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x212a1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 22:40:31                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x212a1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 22:40:37                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x212a1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 22:40:37                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x212a1     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-17 22:42:00                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x290    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 22:42:00                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-17 22:42:26                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x212a1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 22:42:26                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x212a1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 22:42:54                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x212a1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 22:42:54                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x212a1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 22:42:58                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x212a1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 22:42:58                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x212a1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 22:43:19                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x212a1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 22:43:19                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x212a1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 22:43:28                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x212a1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 22:43:28                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x212a1     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-17 22:46:47                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x290    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 22:46:47                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-17 22:47:49                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x212a1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 22:47:49                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x212a1     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-17 22:49:05                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x290    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 22:49:05                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-17 22:49:06                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x290    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-17 22:49:06                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x290    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 22:49:06                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-17 22:49:06                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-17 22:52:50                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x290    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 22:52:50                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-17 22:56:58                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x212a1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 22:56:58                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x212a1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 22:56:58                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x212a1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 22:56:58                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x212a1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 22:57:57                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x212a1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 22:57:57                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x212a1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 22:57:57                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x212a1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 22:57:57                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x212a1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 22:58:15                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x212a1     :      : ACER      :       : acer  
      Audit Success   12545      2014-10-17 22:58:47                                  Microsoft-Windows-Security-Auditing  4647: ,  :    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x212a1      ,   .  ,  ,  .        .  
      Audit Success   103        2014-10-17 22:58:50                                  Microsoft-Windows-Eventlog      1100: 
      Audit Success   12288      2014-10-17 22:59:22                                  Microsoft-Windows-Security-Auditing  4608:   Windows.           LSASS.EXE    .  
      Audit Success   12544      2014-10-17 22:59:22                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   0     :  -     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x4    :        :     : -     : -    :  -       :    :  -     : -    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   13568      2014-10-17 22:59:22                                  Microsoft-Windows-Security-Auditing  4902:      .     : 0   : 0x8928  
      Audit Success   12544      2014-10-17 22:59:32                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-17 22:59:32                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-17 22:59:32                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-17 22:59:32                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-17 22:59:32                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-17 22:59:32                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  DWM-1     :  Window Manager   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x274    :  C:\Windows\System32\winlogon.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-17 22:59:32                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0xc8cb   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x274    :  C:\Windows\System32\winlogon.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-17 22:59:32                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0xc8fe   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x274    :  C:\Windows\System32\winlogon.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 22:59:32                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-17 22:59:32                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-17 22:59:32                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-17 22:59:32                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-17 22:59:32                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-17 22:59:32                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0xc8cb    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-17 22:59:32                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0xc8fe    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege  
      Audit Success   12292      2014-10-17 22:59:34                                  Microsoft-Windows-Security-Auditing  5033:   Windows  .  
      Audit Success   12544      2014-10-17 22:59:34                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 22:59:34                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12292      2014-10-17 22:59:35                                  Microsoft-Windows-Security-Auditing  5024:   Windows  .  
      Audit Success   12292      2014-10-17 22:59:45                                  Microsoft-Windows-Security-Auditing  6406: ESET Smart Security    Windows      BootTimeRuleCategory, FirewallRuleCategory.  
      Audit Success   12544      2014-10-17 22:59:51                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   3     :  %%1833     :    :  S-1-5-7     :        :  NT AUTHORITY    :  0x2328b   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x0    :  -      :     :      : -    :  -       :    :  NtLmSsp      : NTLM    : -     ( NTLM): NTLM V1    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-17 22:59:58                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :        :  acer   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x274    :  C:\Windows\System32\winlogon.exe      :    : 127.0.0.1   :   0      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-17 22:59:58                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288b6   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x274    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-17 22:59:58                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x274    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 22:59:58                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288b6    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-17 23:00:04                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 23:00:04                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-17 23:00:04                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:00:04                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:00:04                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:00:04                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-17 23:01:27                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 23:01:27                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-17 23:02:42                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:02:42                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:02:42                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:02:42                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:02:45                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:02:45                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:02:49                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:02:49                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:02:50                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:02:50                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:03:19                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:03:19                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:06:31                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:06:31                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:06:32                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:06:32                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:06:34                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:06:34                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:06:36                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:06:36                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:06:38                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:06:38                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:06:54                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:06:54                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:06:57                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:06:57                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:06:59                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:06:59                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:07:03                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:07:03                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:07:05                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:07:05                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:07:07                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:07:07                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:07:12                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:07:12                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:07:15                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:07:15                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:07:18                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:07:18                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:07:21                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:07:21                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:07:28                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:07:28                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:07:31                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:07:31                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:07:33                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:07:33                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:07:34                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:07:34                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:07:39                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:07:39                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:07:41                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:07:41                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:07:43                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:07:43                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:07:53                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:07:53                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:08:03                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:08:03                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:13:17                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:13:17                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:13:18                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:13:18                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-17 23:13:46                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 23:13:46                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-17 23:13:57                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-17 23:13:57                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 23:13:57                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-17 23:13:57                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-17 23:14:16                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 23:14:16                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-17 23:14:39                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 23:14:39                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-17 23:20:18                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:20:18                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:20:20                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:20:20                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:23:38                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-17 23:23:56                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :   2     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x3387ef   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x7ec    :  C:\Windows\ImmersiveControlPanel\SystemSettings.exe      :     : ACER     : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-17 23:23:56                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :   2     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x33880b   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x7ec    :  C:\Windows\ImmersiveControlPanel\SystemSettings.exe      :     : ACER     : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12545      2014-10-17 23:23:56                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x33880b     :   2          .           " ".      ,       .  
      Audit Success   12545      2014-10-17 23:23:56                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x3387ef     :   2          .           " ".      ,       .  
      Audit Success   12548      2014-10-17 23:23:56                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x3387ef    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-17 23:24:45                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:25:10                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:26:18                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-17 23:26:30                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :        :  acer   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x29c    :  C:\Windows\System32\lsass.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-17 23:26:30                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x36ad03   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x29c    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :  Advapi       : MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-17 23:26:30                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x36ad1e   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x29c    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :  Advapi       : MICROSOFT_AUTHENTICATION_PACKAGE_V1_0    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 23:26:30                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x36ad03    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-17 23:26:30                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :  -     : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   13824      2014-10-17 23:26:30                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :  %%1793     : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   13824      2014-10-17 23:28:27                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :  -     : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   12544      2014-10-17 23:28:46                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  antbin1995@mail.ru     :  MicrosoftAccount   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x29c    :  C:\Windows\System32\lsass.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-17 23:28:46                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x36ad5e   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x29c    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-17 23:28:46                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x39320d   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x29c    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 23:28:46                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x36ad5e    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-17 23:28:46                                  Microsoft-Windows-Security-Auditing  4724:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer  
      Audit Success   13824      2014-10-17 23:28:46                                  Microsoft-Windows-Security-Auditing  4724:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer  
      Audit Success   13824      2014-10-17 23:28:46                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :        : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   12545      2014-10-17 23:30:00                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x36ad1e     :   2          .           " ".      ,       .  
      Audit Success   12545      2014-10-17 23:30:00                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x36ad03     :   2          .           " ".      ,       .  
      Audit Success   13824      2014-10-17 23:32:15                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:32:15                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:32:15                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:32:21                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:33:07                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:33:07                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:33:07                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:33:07                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:33:46                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :  -     : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   13824      2014-10-17 23:33:46                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:33:46                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:35:54                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:35:54                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:36:47                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:36:47                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:37:00                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:37:00                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:37:39                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:37:39                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:37:50                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:37:50                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:38:17                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:38:17                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:38:39                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:38:39                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:39:47                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:39:47                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:39:47                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:39:47                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-17 23:39:57                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  antbin1995@mail.ru     :  MicrosoftAccount   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x274    :  C:\Windows\System32\winlogon.exe      :    : 127.0.0.1   :   0      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-17 23:39:57                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x4da617   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x274    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-17 23:39:57                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x4da6e9   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x274    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-17 23:39:57                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  antbin1995@mail.ru     :  MicrosoftAccount   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x29c    :  C:\Windows\System32\lsass.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-17 23:39:57                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x4da6dc   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x29c    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :  Negotiat     : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-17 23:39:57                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x4da78d   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x29c    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :  Negotiat     : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12545      2014-10-17 23:39:57                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x4da6e9     :   7          .           " ".      ,       .  
      Audit Success   12545      2014-10-17 23:39:57                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x4da617     :   7          .           " ".      ,       .  
      Audit Success   12545      2014-10-17 23:39:57                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x4da78d     :   7          .           " ".      ,       .  
      Audit Success   12545      2014-10-17 23:39:57                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x4da6dc     :   7          .           " ".      ,       .  
      Audit Success   12548      2014-10-17 23:39:57                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x4da617    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-17 23:39:57                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x4da6dc    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-17 23:39:57                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :        : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   13824      2014-10-17 23:39:57                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :        : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   12544      2014-10-17 23:42:36                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 23:42:36                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-17 23:43:51                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 23:43:51                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-17 23:47:29                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:47:29                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:47:35                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:47:35                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:47:36                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:47:36                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:47:39                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:47:39                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-17 23:48:16                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 23:48:16                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-17 23:51:09                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:51:09                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-17 23:52:13                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-17 23:52:13                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-17 23:59:33                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-17 23:59:33                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 00:03:54                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 00:03:54                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 00:11:02                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 00:11:02                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-18 00:12:53                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  DWM-2     :  Window Manager   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0xe60    :  C:\Windows\System32\winlogon.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-18 00:12:53                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-90-2     :  DWM-2     :  Window Manager    :  0x941c49   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0xe60    :  C:\Windows\System32\winlogon.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-18 00:12:53                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-90-2     :  DWM-2     :  Window Manager    :  0x941c59   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0xe60    :  C:\Windows\System32\winlogon.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-18 00:12:53                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-90-2     :  DWM-2     :  Window Manager    :  0x941c49    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-18 00:12:53                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-90-2     :  DWM-2     :  Window Manager    :  0x941c59    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege  
      Audit Success   12545      2014-10-18 00:12:58                                  Microsoft-Windows-Security-Auditing  4647: ,  :    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer    :  0x288e1      ,   .  ,  ,  .        .  
      Audit Success   12545      2014-10-18 00:13:00                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0xc8fe     :   2          .           " ".      ,       .  
      Audit Success   12545      2014-10-18 00:13:00                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0xc8cb     :   2          .           " ".      ,       .  
      Audit Success   12544      2014-10-18 04:34:26                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  antbin1995@mail.ru     :  MicrosoftAccount   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0xe60    :  C:\Windows\System32\winlogon.exe      :    : 127.0.0.1   :   0      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-18 04:34:26                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   11     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x95a529   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0xe60    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-18 04:34:26                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   11     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x95a5c3   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0xe60    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-18 04:34:26                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  antbin1995@mail.ru     :  MicrosoftAccount   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x29c    :  C:\Windows\System32\lsass.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-18 04:34:26                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x95a5a4   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x29c    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :  Negotiat     : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-18 04:34:26                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x95a672   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x29c    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :  Negotiat     : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12545      2014-10-18 04:34:26                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x95a672     :   7          .           " ".      ,       .  
      Audit Success   12545      2014-10-18 04:34:26                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x95a5a4     :   7          .           " ".      ,       .  
      Audit Success   12548      2014-10-18 04:34:26                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x95a529    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-18 04:34:26                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x95a5a4    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-18 04:34:26                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :        : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   13824      2014-10-18 04:34:26                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :        : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   13824      2014-10-18 04:34:34                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x95a5c3     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 04:34:34                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x95a5c3     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 04:34:34                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x95a5c3     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 04:34:34                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x95a5c3     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-18 04:35:48                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  DWM-3     :  Window Manager   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x1310    :  C:\Windows\System32\winlogon.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-18 04:35:48                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-90-3     :  DWM-3     :  Window Manager    :  0x98d918   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x1310    :  C:\Windows\System32\winlogon.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-18 04:35:48                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-90-3     :  DWM-3     :  Window Manager    :  0x98d928   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x1310    :  C:\Windows\System32\winlogon.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-18 04:35:48                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-90-3     :  DWM-3     :  Window Manager    :  0x98d918    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-18 04:35:48                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-90-3     :  DWM-3     :  Window Manager    :  0x98d928    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege  
      Audit Success   12545      2014-10-18 04:35:49                                  Microsoft-Windows-Security-Auditing  4647: ,  :    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x95a5c3      ,   .  ,  ,  .        .  
      Audit Success   12545      2014-10-18 04:35:50                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-90-2     :  DWM-2     :  Window Manager    :  0x941c59     :   2          .           " ".      ,       .  
      Audit Success   12545      2014-10-18 04:35:50                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-90-2     :  DWM-2     :  Window Manager    :  0x941c49     :   2          .           " ".      ,       .  
      Audit Success   12544      2014-10-18 06:58:25                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  antbin1995@mail.ru     :  MicrosoftAccount   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x1310    :  C:\Windows\System32\winlogon.exe      :    : 127.0.0.1   :   0      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-18 06:58:25                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   11     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x9a1176   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x1310    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-18 06:58:25                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   11     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x9a1201   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x1310    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-18 06:58:25                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  antbin1995@mail.ru     :  MicrosoftAccount   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x29c    :  C:\Windows\System32\lsass.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-18 06:58:25                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x9a11ea   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x29c    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :  Negotiat     : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-18 06:58:25                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x9a12be   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x29c    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :  Negotiat     : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12545      2014-10-18 06:58:25                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x9a12be     :   7          .           " ".      ,       .  
      Audit Success   12545      2014-10-18 06:58:25                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x9a11ea     :   7          .           " ".      ,       .  
      Audit Success   12548      2014-10-18 06:58:25                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x9a1176    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-18 06:58:25                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x9a11ea    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-18 06:58:25                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :        : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   13824      2014-10-18 06:58:25                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :        : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   13824      2014-10-18 06:58:28                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x9a1201     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 06:58:28                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x9a1201     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 06:58:28                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x9a1201     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 06:58:28                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x9a1201     :      : ACER      :       : acer  
      Audit Success   12545      2014-10-18 06:58:55                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x95a5c3     :   2          .           " ".      ,       .  
      Audit Success   12545      2014-10-18 06:58:55                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x95a529     :   2          .           " ".      ,       .  
      Audit Success   13824      2014-10-18 07:01:31                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x9a1201     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 07:01:31                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x9a1201     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 07:01:31                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x9a1201     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 07:01:31                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x9a1201     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 07:01:50                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x9a1201     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 07:01:50                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x9a1201     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 07:01:50                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x9a1201     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 07:01:50                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x9a1201     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-18 07:07:46                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-18 07:07:46                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-18 07:09:16                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x9a1201     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 07:09:16                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x9a1201     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 07:09:19                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x9a1201     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 07:09:19                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x9a1201     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 07:09:37                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x9a1201     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 07:09:37                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x9a1201     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 07:09:41                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x9a1201     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 07:09:41                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x9a1201     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 07:12:56                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x9a1201     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 07:12:56                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x9a1201     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 07:17:08                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x9a1201     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 07:18:19                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x9a1201     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-18 07:18:26                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-18 07:18:26                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-18 07:30:58                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  DWM-2     :  Window Manager   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0xa64    :  C:\Windows\System32\winlogon.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-18 07:30:58                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-90-2     :  DWM-2     :  Window Manager    :  0xc36e22   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0xa64    :  C:\Windows\System32\winlogon.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-18 07:30:58                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-90-2     :  DWM-2     :  Window Manager    :  0xc36e32   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0xa64    :  C:\Windows\System32\winlogon.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-18 07:30:58                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-90-2     :  DWM-2     :  Window Manager    :  0xc36e22    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-18 07:30:58                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-90-2     :  DWM-2     :  Window Manager    :  0xc36e32    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege  
      Audit Success   12545      2014-10-18 07:31:00                                  Microsoft-Windows-Security-Auditing  4647: ,  :    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x9a1201      ,   .  ,  ,  .        .  
      Audit Success   12545      2014-10-18 07:31:01                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-90-3     :  DWM-3     :  Window Manager    :  0x98d928     :   2          .           " ".      ,       .  
      Audit Success   12545      2014-10-18 07:31:01                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-90-3     :  DWM-3     :  Window Manager    :  0x98d918     :   2          .           " ".      ,       .  
      Audit Success   12544      2014-10-18 13:27:11                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  antbin1995@mail.ru     :  MicrosoftAccount   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0xa64    :  C:\Windows\System32\winlogon.exe      :    : 127.0.0.1   :   0      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-18 13:27:11                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   11     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0xc4a89d   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0xa64    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-18 13:27:11                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   11     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0xc4a91c   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0xa64    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-18 13:27:11                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  antbin1995@mail.ru     :  MicrosoftAccount   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x29c    :  C:\Windows\System32\lsass.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-18 13:27:11                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0xc4a907   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x29c    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :  Negotiat     : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-18 13:27:11                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0xc4a9a6   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x29c    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :  Negotiat     : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12545      2014-10-18 13:27:11                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xc4a9a6     :   7          .           " ".      ,       .  
      Audit Success   12545      2014-10-18 13:27:11                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xc4a907     :   7          .           " ".      ,       .  
      Audit Success   12548      2014-10-18 13:27:11                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0xc4a89d    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-18 13:27:11                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0xc4a907    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-18 13:27:11                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :        : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   13824      2014-10-18 13:27:11                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :        : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   13824      2014-10-18 13:27:14                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xc4a91c     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 13:27:14                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xc4a91c     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 13:27:14                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xc4a91c     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 13:27:14                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xc4a91c     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 13:38:09                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xc4a91c     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 13:38:09                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xc4a91c     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 13:38:09                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xc4a91c     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 13:38:09                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xc4a91c     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-18 13:40:08                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  DWM-3     :  Window Manager   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x10dc    :  C:\Windows\System32\winlogon.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-18 13:40:08                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-90-3     :  DWM-3     :  Window Manager    :  0xd7474d   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x10dc    :  C:\Windows\System32\winlogon.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-18 13:40:08                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-90-3     :  DWM-3     :  Window Manager    :  0xd74762   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x10dc    :  C:\Windows\System32\winlogon.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-18 13:40:08                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-90-3     :  DWM-3     :  Window Manager    :  0xd7474d    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-18 13:40:08                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-90-3     :  DWM-3     :  Window Manager    :  0xd74762    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege  
      Audit Success   12545      2014-10-18 13:40:09                                  Microsoft-Windows-Security-Auditing  4647: ,  :    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xc4a91c      ,   .  ,  ,  .        .  
      Audit Success   12545      2014-10-18 13:40:10                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-90-2     :  DWM-2     :  Window Manager    :  0xc36e32     :   2          .           " ".      ,       .  
      Audit Success   12545      2014-10-18 13:40:10                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-90-2     :  DWM-2     :  Window Manager    :  0xc36e22     :   2          .           " ".      ,       .  
      Audit Success   12544      2014-10-18 17:28:46                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  antbin1995@mail.ru     :  MicrosoftAccount   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x10dc    :  C:\Windows\System32\winlogon.exe      :    : 127.0.0.1   :   0      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-18 17:28:46                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   11     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0xd89287   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x10dc    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-18 17:28:46                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   11     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0xd89308   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x10dc    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-18 17:28:46                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  antbin1995@mail.ru     :  MicrosoftAccount   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x29c    :  C:\Windows\System32\lsass.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-18 17:28:46                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0xd892f1   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x29c    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :  Negotiat     : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-18 17:28:46                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0xd893ca   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x29c    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :  Negotiat     : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12545      2014-10-18 17:28:46                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xd893ca     :   7          .           " ".      ,       .  
      Audit Success   12545      2014-10-18 17:28:46                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xd892f1     :   7          .           " ".      ,       .  
      Audit Success   12548      2014-10-18 17:28:46                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0xd89287    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-18 17:28:46                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0xd892f1    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-18 17:28:46                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :        : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   13824      2014-10-18 17:28:46                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :        : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   13824      2014-10-18 17:28:49                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xd89308     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 17:28:49                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xd89308     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 17:28:49                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xd89308     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 17:28:49                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xd89308     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 17:29:21                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xd89308     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 17:29:21                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xd89308     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 17:29:21                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xd89308     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 17:29:21                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xd89308     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 17:29:24                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xd89308     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 17:29:24                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xd89308     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 17:31:14                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xd89308     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 17:31:14                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xd89308     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-18 17:31:36                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-18 17:31:36                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-18 17:31:41                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-18 17:31:41                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-18 17:33:10                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 17:33:10                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 17:33:10                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :        : acer  
      Audit Success   13824      2014-10-18 17:33:10                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :        : acer  
      Audit Success   13824      2014-10-18 17:33:10                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 17:33:10                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 17:33:10                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :        : acer  
      Audit Success   13824      2014-10-18 17:33:10                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :        : acer  
      Audit Success   13824      2014-10-18 17:39:42                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xd89308     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 17:39:42                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xd89308     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 17:39:46                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xd89308     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 17:39:46                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xd89308     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 17:39:50                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xd89308     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 17:39:50                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xd89308     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 17:39:54                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xd89308     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 17:39:54                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xd89308     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 17:39:58                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xd89308     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 17:39:58                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xd89308     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-18 17:41:08                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-18 17:41:08                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-18 17:43:53                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-18 17:43:53                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-18 17:48:47                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-18 17:48:47                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-18 17:49:47                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  DWM-2     :  Window Manager   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x16f8    :  C:\Windows\System32\winlogon.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-18 17:49:47                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-90-2     :  DWM-2     :  Window Manager    :  0xf88d2e   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x16f8    :  C:\Windows\System32\winlogon.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-18 17:49:47                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-90-2     :  DWM-2     :  Window Manager    :  0xf88d43   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x16f8    :  C:\Windows\System32\winlogon.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-18 17:49:47                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-18 17:49:47                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-90-2     :  DWM-2     :  Window Manager    :  0xf88d2e    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-18 17:49:47                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-90-2     :  DWM-2     :  Window Manager    :  0xf88d43    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege  
      Audit Success   12548      2014-10-18 17:49:47                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12545      2014-10-18 17:49:57                                  Microsoft-Windows-Security-Auditing  4647: ,  :    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xd89308      ,   .  ,  ,  .        .  
      Audit Success   12545      2014-10-18 17:49:59                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-90-3     :  DWM-3     :  Window Manager    :  0xd74762     :   2          .           " ".      ,       .  
      Audit Success   12545      2014-10-18 17:49:59                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-90-3     :  DWM-3     :  Window Manager    :  0xd7474d     :   2          .           " ".      ,       .  
      Audit Success   12544      2014-10-18 17:50:41                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  antbin1995@mail.ru     :  MicrosoftAccount   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x16f8    :  C:\Windows\System32\winlogon.exe      :    : 127.0.0.1   :   0      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-18 17:50:41                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   11     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0xfa7943   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x16f8    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-18 17:50:41                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   11     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0xfa79c7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x16f8    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-18 17:50:41                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  antbin1995@mail.ru     :  MicrosoftAccount   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x29c    :  C:\Windows\System32\lsass.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-18 17:50:41                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0xfa79b2   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x29c    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :  Negotiat     : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-18 17:50:41                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0xfa7a5b   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x29c    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :  Negotiat     : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12545      2014-10-18 17:50:41                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xfa7a5b     :   7          .           " ".      ,       .  
      Audit Success   12545      2014-10-18 17:50:41                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xfa79b2     :   7          .           " ".      ,       .  
      Audit Success   12548      2014-10-18 17:50:41                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0xfa7943    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-18 17:50:41                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0xfa79b2    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-18 17:50:41                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :        : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   13824      2014-10-18 17:50:41                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :        : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   13824      2014-10-18 17:50:44                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xfa79c7     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 17:50:44                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xfa79c7     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 17:50:44                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xfa79c7     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 17:50:44                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xfa79c7     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 17:50:44                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 17:50:44                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :        : acer  
      Audit Success   13824      2014-10-18 17:50:44                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 17:50:44                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :        : acer  
      Audit Success   13824      2014-10-18 17:50:44                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 17:50:44                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :        : acer  
      Audit Success   13824      2014-10-18 17:50:44                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 17:50:44                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 17:50:44                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :        : acer  
      Audit Success   13824      2014-10-18 17:50:44                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 17:50:44                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :        : acer  
      Audit Success   13824      2014-10-18 17:50:44                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 17:50:44                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :        : acer  
      Audit Success   13824      2014-10-18 17:50:44                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 17:50:44                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :        : acer  
      Audit Success   13824      2014-10-18 17:50:44                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 17:50:44                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :        : acer  
      Audit Success   13824      2014-10-18 17:52:28                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xfa79c7     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 17:52:28                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xfa79c7     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 17:52:28                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xfa79c7     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 17:52:28                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xfa79c7     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 17:53:47                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xfa79c7     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 17:53:47                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xfa79c7     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 17:58:07                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xfa79c7     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 17:58:07                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xfa79c7     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 17:58:07                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xfa79c7     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 17:58:07                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xfa79c7     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-18 17:58:25                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  antbin1995@mail.ru     :  MicrosoftAccount   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x16f8    :  C:\Windows\System32\winlogon.exe      :    : 127.0.0.1   :   0      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-18 17:58:25                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x1073e31   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x16f8    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-18 17:58:25                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x1073ea9   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x16f8    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-18 17:58:25                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  antbin1995@mail.ru     :  MicrosoftAccount   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x29c    :  C:\Windows\System32\lsass.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-18 17:58:25                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x1073e92   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x29c    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :  Negotiat     : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-18 17:58:25                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x1073f53   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x29c    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :  Negotiat     : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12545      2014-10-18 17:58:25                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1073ea9     :   7          .           " ".      ,       .  
      Audit Success   12545      2014-10-18 17:58:25                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1073e31     :   7          .           " ".      ,       .  
      Audit Success   12545      2014-10-18 17:58:25                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1073f53     :   7          .           " ".      ,       .  
      Audit Success   12545      2014-10-18 17:58:25                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1073e92     :   7          .           " ".      ,       .  
      Audit Success   12548      2014-10-18 17:58:25                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x1073e31    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-18 17:58:25                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x1073e92    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-18 17:58:25                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :        : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   13824      2014-10-18 17:58:25                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :        : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   13824      2014-10-18 18:10:25                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xfa79c7     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 18:10:25                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xfa79c7     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 18:19:51                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xfa79c7     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-18 18:19:51                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xfa79c7     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-18 18:21:27                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  DWM-4     :  Window Manager   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x8cc    :  C:\Windows\System32\winlogon.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-18 18:21:27                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-90-4     :  DWM-4     :  Window Manager    :  0x1209ee6   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x8cc    :  C:\Windows\System32\winlogon.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-18 18:21:27                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-90-4     :  DWM-4     :  Window Manager    :  0x1209ef9   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x8cc    :  C:\Windows\System32\winlogon.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-18 18:21:27                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-90-4     :  DWM-4     :  Window Manager    :  0x1209ee6    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-18 18:21:27                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-90-4     :  DWM-4     :  Window Manager    :  0x1209ef9    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege  
      Audit Success   12545      2014-10-18 18:21:29                                  Microsoft-Windows-Security-Auditing  4647: ,  :    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xfa79c7      ,   .  ,  ,  .        .  
      Audit Success   12545      2014-10-18 18:21:30                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-90-2     :  DWM-2     :  Window Manager    :  0xf88d43     :   2          .           " ".      ,       .  
      Audit Success   12545      2014-10-18 18:21:30                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-90-2     :  DWM-2     :  Window Manager    :  0xf88d2e     :   2          .           " ".      ,       .  
      Audit Success   12544      2014-10-19 11:06:04                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-19 11:06:04                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-19 11:06:05                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  antbin1995@mail.ru     :  MicrosoftAccount   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x8cc    :  C:\Windows\System32\winlogon.exe      :    : 127.0.0.1   :   0      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-19 11:06:05                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   11     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x1230894   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x8cc    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-19 11:06:05                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   11     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x1230913   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x8cc    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-19 11:06:05                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  antbin1995@mail.ru     :  MicrosoftAccount   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x29c    :  C:\Windows\System32\lsass.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-19 11:06:05                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x12308fc   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x29c    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :  Negotiat     : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-19 11:06:05                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x12309e4   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x29c    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :  Negotiat     : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12545      2014-10-19 11:06:05                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x12309e4     :   7          .           " ".      ,       .  
      Audit Success   12545      2014-10-19 11:06:05                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x12308fc     :   7          .           " ".      ,       .  
      Audit Success   12548      2014-10-19 11:06:05                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x1230894    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-19 11:06:05                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x12308fc    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-19 11:06:05                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :        : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   13824      2014-10-19 11:06:05                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :        : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   13824      2014-10-19 11:06:09                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:06:09                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:06:09                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:06:09                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:06:10                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:06:10                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :        : acer  
      Audit Success   13824      2014-10-19 11:06:10                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:06:10                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :        : acer  
      Audit Success   13824      2014-10-19 11:06:10                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:06:10                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:06:10                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :        : acer  
      Audit Success   13824      2014-10-19 11:06:10                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :        : acer  
      Audit Success   13824      2014-10-19 11:06:10                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:06:10                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:06:10                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :        : acer  
      Audit Success   13824      2014-10-19 11:06:10                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:06:10                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :        : acer  
      Audit Success   13824      2014-10-19 11:06:10                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:06:10                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :        : acer  
      Audit Success   13824      2014-10-19 11:06:10                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:06:10                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :        : acer  
      Audit Success   12544      2014-10-19 11:06:46                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-19 11:06:46                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-19 11:06:47                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-19 11:06:47                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-19 11:07:04                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:07:04                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:07:04                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:07:04                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:07:26                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:07:26                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:07:41                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:07:41                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:07:45                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:07:45                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:07:52                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:07:52                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13568      2014-10-19 11:08:17                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\_0000000000000000.cdf-ms    : 0x610      :    : 0x284    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-19 11:08:17                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$.cdf-ms    : 0x700      :    : 0x284    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-19 11:08:18                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_system32_21f9a9c4a2f8b514.cdf-ms    : 0x658      :    : 0x284    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-19 11:08:18                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_policydefinitions_89130cdfc4d9c27c.cdf-ms    : 0x5b0      :    : 0x284    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-19 11:08:18                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_policydefinitions_ru-ru_3947e28191bee0bf.cdf-ms    : 0x7b8      :    : 0x284    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-19 11:08:18                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\PolicyDefinitions\WindowsUpdate.admx    : 0x67c      :    : 0x284    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-19 11:08:18                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\PolicyDefinitions\ru-RU\WindowsUpdate.adml    : 0x718      :    : 0x284    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-19 11:08:18                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\wuaueng.dll    : 0x79c      :    : 0x284    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-19 11:08:18                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\storewuauth.dll    : 0x4f4      :    : 0x284    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-19 11:08:18                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\wups2.dll    : 0x718      :    : 0x284    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-19 11:08:18                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\wuauclt.exe    : 0x7b8      :    : 0x284    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-19 11:08:19                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\wucltux.dll    : 0x500      :    : 0x284    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-19 11:08:19                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\WUSettingsProvider.dll    : 0x79c      :    : 0x284    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-19 11:08:35                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\_0000000000000000.cdf-ms    : 0x7a0      :    : 0x284    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-19 11:08:35                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$.cdf-ms    : 0x7c8      :    : 0x284    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-19 11:08:36                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_syswow64_21ffbdd2a2dd92e0.cdf-ms    : 0x6f8      :    : 0x284    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-19 11:08:36                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_system32_21f9a9c4a2f8b514.cdf-ms    : 0x7a0      :    : 0x284    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-19 11:08:36                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\wuaueng.dll    : 0x7c8      :    : 0x284    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-19 11:08:36                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\storewuauth.dll    : 0x6f8      :    : 0x284    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-19 11:08:36                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\wups.dll    : 0x7b8      :    : 0x284    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-19 11:08:36                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\wudriver.dll    : 0x6b8      :    : 0x284    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   12544      2014-10-19 11:13:19                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-19 11:13:19                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-19 11:19:48                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:19:48                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:19:50                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:19:50                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:22:50                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:22:50                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:22:52                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:22:52                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:22:54                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:22:54                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:23:07                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:23:07                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:23:08                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:23:08                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:23:10                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:23:10                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:23:13                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:23:13                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:23:16                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:23:16                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:23:20                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:23:20                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:23:29                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:23:29                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:23:34                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:23:34                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:23:37                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:23:37                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-19 11:25:02                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-19 11:25:02                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-19 11:26:04                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:26:04                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:26:18                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:26:18                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-19 11:27:35                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-19 11:27:35                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-19 11:27:36                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-19 11:27:36                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13568      2014-10-19 11:28:19                                  Microsoft-Windows-Security-Auditing  4904:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP      :  0x3e7    :    : 0x3e4    : C:\Windows\System32\VSSVC.exe     :    : VSSAudit     : 0x15e7ca3  
      Audit Success   13568      2014-10-19 11:28:19                                  Microsoft-Windows-Security-Auditing  4905:       .    Subject    :  S-1-5-18     :  ACER$     :  WORKGROUP      :  0x3e7    :    : 0x3e4    : C:\Windows\System32\VSSVC.exe     :    : VSSAudit     : 0x15e7ca3  
      Audit Success   13568      2014-10-19 11:29:02                                  Microsoft-Windows-Security-Auditing  4904:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP      :  0x3e7    :    : 0x3e4    : C:\Windows\System32\VSSVC.exe     :    : VSSAudit     : 0x1620dc0  
      Audit Success   13568      2014-10-19 11:29:02                                  Microsoft-Windows-Security-Auditing  4905:       .    Subject    :  S-1-5-18     :  ACER$     :  WORKGROUP      :  0x3e7    :    : 0x3e4    : C:\Windows\System32\VSSVC.exe     :    : VSSAudit     : 0x1620dc0  
      Audit Success   13824      2014-10-19 11:33:52                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:33:52                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:34:01                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:34:01                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:34:53                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:34:53                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:34:53                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:34:53                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-19 11:36:29                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-19 11:36:29                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-19 11:44:02                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  antbin1995@mail.ru     :  MicrosoftAccount   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x8cc    :  C:\Windows\System32\winlogon.exe      :    : 127.0.0.1   :   0      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-19 11:44:02                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x1a4f4f2   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x8cc    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-19 11:44:02                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x1a4f56b   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x8cc    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-19 11:44:02                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  antbin1995@mail.ru     :  MicrosoftAccount   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x29c    :  C:\Windows\System32\lsass.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-19 11:44:02                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x1a4f554   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x29c    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :  Negotiat     : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-19 11:44:02                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x1a4f600   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x29c    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :  Negotiat     : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12545      2014-10-19 11:44:02                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1a4f56b     :   7          .           " ".      ,       .  
      Audit Success   12545      2014-10-19 11:44:02                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1a4f600     :   7          .           " ".      ,       .  
      Audit Success   12545      2014-10-19 11:44:02                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1a4f554     :   7          .           " ".      ,       .  
      Audit Success   12545      2014-10-19 11:44:02                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1a4f4f2     :   7          .           " ".      ,       .  
      Audit Success   12548      2014-10-19 11:44:02                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x1a4f4f2    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-19 11:44:02                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x1a4f554    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-19 11:44:02                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :        : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   13824      2014-10-19 11:44:02                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :        : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   12544      2014-10-19 11:46:05                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-19 11:46:05                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-19 11:47:14                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-19 11:47:14                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13568      2014-10-19 11:47:41                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\_0000000000000000.cdf-ms    : 0x5fc      :    : 0x10ec    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-19 11:47:41                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$.cdf-ms    : 0x32c      :    : 0x10ec    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-19 11:47:41                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_syswow64_21ffbdd2a2dd92e0.cdf-ms    : 0x358      :    : 0x10ec    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-19 11:47:41                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_system32_21f9a9c4a2f8b514.cdf-ms    : 0x360      :    : 0x10ec    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   12544      2014-10-19 11:47:42                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-19 11:47:42                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-19 11:47:42                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-19 11:47:42                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-19 11:52:48                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:52:48                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:53:01                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:53:01                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:53:04                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:53:04                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:53:06                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:53:06                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:55:42                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:55:42                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:55:45                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:55:45                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:55:52                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:55:52                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:55:57                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:55:57                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:56:04                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:56:04                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-19 11:57:06                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-19 11:57:06                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-19 11:58:47                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:58:47                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:58:47                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 11:58:47                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913     :      : ACER      :       : acer  
      Audit Success   12545      2014-10-19 12:00:14                                  Microsoft-Windows-Security-Auditing  4647: ,  :    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1230913      ,   .  ,  ,  .        .  
      Audit Success   103        2014-10-19 12:00:17                                  Microsoft-Windows-Eventlog      1100: 
      Audit Success   12288      2014-10-19 12:01:03                                  Microsoft-Windows-Security-Auditing  4608:   Windows.           LSASS.EXE    .  
      Audit Success   12544      2014-10-19 12:01:03                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   0     :  -     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x4    :        :     : -     : -    :  -       :    :  -     : -    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   13568      2014-10-19 12:01:03                                  Microsoft-Windows-Security-Auditing  4902:      .     : 0   : 0x9e67  
      Audit Success   12544      2014-10-19 12:01:07                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-19 12:01:07                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-19 12:01:08                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-19 12:01:08                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-19 12:01:08                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-19 12:01:08                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-19 12:01:08                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  DWM-1     :  Window Manager   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x264    :  C:\Windows\System32\winlogon.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-19 12:01:08                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0x112a4   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x264    :  C:\Windows\System32\winlogon.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-19 12:01:08                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0x112d0   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x264    :  C:\Windows\System32\winlogon.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-19 12:01:08                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-19 12:01:08                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-19 12:01:08                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-19 12:01:08                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-19 12:01:08                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0x112a4    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-19 12:01:08                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0x112d0    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege  
      Audit Success   12292      2014-10-19 12:01:10                                  Microsoft-Windows-Security-Auditing  5033:   Windows  .  
      Audit Success   12544      2014-10-19 12:01:10                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-19 12:01:10                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12292      2014-10-19 12:01:12                                  Microsoft-Windows-Security-Auditing  5024:   Windows  .  
      Audit Success   12292      2014-10-19 12:01:28                                  Microsoft-Windows-Security-Auditing  6406: ESET Smart Security    Windows      BootTimeRuleCategory, FirewallRuleCategory.  
      Audit Success   12544      2014-10-19 12:01:30                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   3     :  %%1833     :    :  S-1-5-7     :        :  NT AUTHORITY    :  0x266a3   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x0    :  -      :     :      : -    :  -       :    :  NtLmSsp      : NTLM    : -     ( NTLM): NTLM V1    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-19 12:01:37                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  antbin1995@mail.ru     :  MicrosoftAccount   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x264    :  C:\Windows\System32\winlogon.exe      :    : 127.0.0.1   :   0      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-19 12:01:37                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   11     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x30092   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x264    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-19 12:01:37                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   11     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x30176   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x264    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-19 12:01:37                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  antbin1995@mail.ru     :  MicrosoftAccount   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x294    :  C:\Windows\System32\lsass.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-19 12:01:37                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x3015f   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x294    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :  Negotiat     : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-19 12:01:37                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x3023b   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x294    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :  Negotiat     : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12545      2014-10-19 12:01:37                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3023b     :   7          .           " ".      ,       .  
      Audit Success   12545      2014-10-19 12:01:37                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3015f     :   7          .           " ".      ,       .  
      Audit Success   12548      2014-10-19 12:01:37                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x30092    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-19 12:01:37                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x3015f    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-19 12:01:37                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :        : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   13824      2014-10-19 12:01:37                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :        : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   13824      2014-10-19 12:01:42                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x30176     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 12:01:42                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x30176     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 12:01:42                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x30176     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 12:01:42                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x30176     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-19 12:01:46                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-19 12:01:46                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-19 12:01:47                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 12:01:47                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :        : acer  
      Audit Success   13824      2014-10-19 12:01:47                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 12:01:47                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :        : acer  
      Audit Success   13824      2014-10-19 12:01:47                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 12:01:47                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 12:01:47                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :        : acer  
      Audit Success   13824      2014-10-19 12:01:47                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :        : acer  
      Audit Success   13824      2014-10-19 12:01:47                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 12:01:47                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 12:01:47                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 12:01:47                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :        : acer  
      Audit Success   13824      2014-10-19 12:01:47                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :        : acer  
      Audit Success   13824      2014-10-19 12:01:47                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 12:01:47                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :        : acer  
      Audit Success   13824      2014-10-19 12:01:47                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 12:01:47                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :        : acer  
      Audit Success   13824      2014-10-19 12:01:53                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x30176     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 12:01:53                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x30176     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 12:01:53                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x30176     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 12:01:53                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x30176     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 12:05:26                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x30176     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 12:05:26                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x30176     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-19 12:06:51                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-19 12:06:51                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-19 12:10:20                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-19 12:10:20                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-19 12:12:57                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-19 12:12:57                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-19 12:20:22                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-19 12:20:22                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-19 12:20:53                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x30176     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 12:20:53                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x30176     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 12:21:00                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x30176     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 12:21:00                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x30176     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 12:21:08                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x30176     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 12:21:08                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x30176     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 12:21:11                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x30176     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 12:21:11                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x30176     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-19 12:22:16                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-19 12:22:16                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-19 12:22:26                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x30176     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 12:22:26                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x30176     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 12:22:26                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x30176     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 12:22:26                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x30176     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 12:22:26                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 12:22:26                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :        : acer  
      Audit Success   13824      2014-10-19 12:22:26                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 12:22:26                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :        : acer  
      Audit Success   13824      2014-10-19 12:22:26                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 12:22:26                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :        : acer  
      Audit Success   13824      2014-10-19 12:22:26                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 12:22:26                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 12:22:26                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :        : acer  
      Audit Success   13824      2014-10-19 12:22:26                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 12:22:26                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :        : acer  
      Audit Success   13824      2014-10-19 12:22:26                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 12:22:26                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :        : acer  
      Audit Success   13824      2014-10-19 12:22:26                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 12:22:26                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :        : acer  
      Audit Success   13824      2014-10-19 12:22:26                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 12:22:26                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :        : acer  
      Audit Success   13824      2014-10-19 12:31:45                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x30176     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 12:31:45                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x30176     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 12:31:45                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x30176     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 12:31:45                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x30176     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-19 12:41:52                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-19 12:41:52                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-19 13:01:07                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  antbin1995@mail.ru     :  MicrosoftAccount   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x264    :  C:\Windows\System32\winlogon.exe      :    : 127.0.0.1   :   0      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-19 13:01:07                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x575757   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x264    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-19 13:01:07                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x5757d7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x264    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-19 13:01:07                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  antbin1995@mail.ru     :  MicrosoftAccount   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x294    :  C:\Windows\System32\lsass.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-19 13:01:07                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x5757c0   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x294    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :  Negotiat     : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-19 13:01:07                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x57586f   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x294    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :  Negotiat     : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12545      2014-10-19 13:01:07                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x5757d7     :   7          .           " ".      ,       .  
      Audit Success   12545      2014-10-19 13:01:07                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x57586f     :   7          .           " ".      ,       .  
      Audit Success   12545      2014-10-19 13:01:07                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x575757     :   7          .           " ".      ,       .  
      Audit Success   12545      2014-10-19 13:01:07                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x5757c0     :   7          .           " ".      ,       .  
      Audit Success   12548      2014-10-19 13:01:07                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x575757    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-19 13:01:07                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x5757c0    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-19 13:01:07                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :        : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   13824      2014-10-19 13:01:07                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :        : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   13824      2014-10-19 13:01:53                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x30176     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 13:01:53                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x30176     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 13:01:53                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x30176     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 13:01:53                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x30176     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 13:01:57                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x30176     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 13:01:57                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x30176     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 13:03:04                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x30176     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 13:03:04                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x30176     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 13:03:08                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x30176     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 13:03:08                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x30176     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 13:03:12                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x30176     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 13:03:12                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x30176     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 13:03:13                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x30176     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 13:03:13                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x30176     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 13:03:23                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x30176     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 13:03:23                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x30176     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 13:03:27                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x30176     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 13:03:27                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x30176     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 13:03:38                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x30176     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 13:03:38                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x30176     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 13:03:41                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x30176     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 13:03:41                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x30176     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 13:03:42                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x30176     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 13:03:42                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x30176     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 13:03:47                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x30176     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 13:03:47                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x30176     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 13:03:49                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x30176     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 13:03:49                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x30176     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-19 13:24:14                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-19 13:24:14                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-19 13:36:38                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-19 13:36:38                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-19 13:56:47                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-19 13:56:47                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-19 14:10:54                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  DWM-2     :  Window Manager   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x6f0    :  C:\Windows\System32\winlogon.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-19 14:10:54                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-90-2     :  DWM-2     :  Window Manager    :  0xa4e6a4   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x6f0    :  C:\Windows\System32\winlogon.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-19 14:10:54                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-90-2     :  DWM-2     :  Window Manager    :  0xa4e7a9   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x6f0    :  C:\Windows\System32\winlogon.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-19 14:10:54                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-90-2     :  DWM-2     :  Window Manager    :  0xa4e6a4    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-19 14:10:54                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-90-2     :  DWM-2     :  Window Manager    :  0xa4e7a9    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege  
      Audit Success   12545      2014-10-19 14:10:56                                  Microsoft-Windows-Security-Auditing  4647: ,  :    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x30176      ,   .  ,  ,  .        .  
      Audit Success   12545      2014-10-19 14:10:57                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0x112d0     :   2          .           " ".      ,       .  
      Audit Success   12545      2014-10-19 14:10:57                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0x112a4     :   2          .           " ".      ,       .  
      Audit Success   12544      2014-10-19 15:52:38                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  antbin1995@mail.ru     :  MicrosoftAccount   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x6f0    :  C:\Windows\System32\winlogon.exe      :    : 127.0.0.1   :   0      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-19 15:52:38                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   11     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0xa66af5   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x6f0    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-19 15:52:38                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   11     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0xa66b85   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x6f0    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-19 15:52:38                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  antbin1995@mail.ru     :  MicrosoftAccount   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x294    :  C:\Windows\System32\lsass.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-19 15:52:38                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0xa66b70   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x294    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :  Negotiat     : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-19 15:52:38                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0xa66c53   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x294    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :  Negotiat     : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12545      2014-10-19 15:52:38                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xa66c53     :   7          .           " ".      ,       .  
      Audit Success   12545      2014-10-19 15:52:38                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xa66b70     :   7          .           " ".      ,       .  
      Audit Success   12548      2014-10-19 15:52:38                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0xa66af5    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-19 15:52:38                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0xa66b70    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-19 15:52:38                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :        : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   13824      2014-10-19 15:52:38                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :        : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   13824      2014-10-19 15:52:42                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xa66b85     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 15:52:42                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xa66b85     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 15:52:42                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xa66b85     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 15:52:42                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xa66b85     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 15:52:44                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 15:52:44                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :        : acer  
      Audit Success   13824      2014-10-19 15:52:44                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 15:52:44                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :        : acer  
      Audit Success   13824      2014-10-19 15:52:44                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 15:52:44                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :        : acer  
      Audit Success   13824      2014-10-19 15:52:44                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 15:52:44                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 15:52:44                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :        : acer  
      Audit Success   13824      2014-10-19 15:52:44                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 15:52:44                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :        : acer  
      Audit Success   13824      2014-10-19 15:52:44                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 15:52:44                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :        : acer  
      Audit Success   13824      2014-10-19 15:52:44                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 15:52:44                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :        : acer  
      Audit Success   13824      2014-10-19 15:52:44                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 15:52:44                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :        : acer  
      Audit Success   13824      2014-10-19 15:58:08                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xa66b85     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 15:58:08                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xa66b85     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 15:58:08                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xa66b85     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 15:58:08                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xa66b85     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 15:58:13                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xa66b85     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 15:58:13                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xa66b85     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 15:59:34                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xa66b85     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 15:59:34                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xa66b85     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-19 16:06:41                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  DWM-1     :  Window Manager   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x588    :  C:\Windows\System32\winlogon.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-19 16:06:41                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0xb727ac   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x588    :  C:\Windows\System32\winlogon.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-19 16:06:41                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0xb727c0   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x588    :  C:\Windows\System32\winlogon.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-19 16:06:41                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0xb727ac    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-19 16:06:41                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0xb727c0    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege  
      Audit Success   12545      2014-10-19 16:06:42                                  Microsoft-Windows-Security-Auditing  4647: ,  :    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xa66b85      ,   .  ,  ,  .        .  
      Audit Success   12545      2014-10-19 16:06:44                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-90-2     :  DWM-2     :  Window Manager    :  0xa4e7a9     :   2          .           " ".      ,       .  
      Audit Success   12545      2014-10-19 16:06:44                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-90-2     :  DWM-2     :  Window Manager    :  0xa4e6a4     :   2          .           " ".      ,       .  
      Audit Success   12544      2014-10-19 17:03:10                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  antbin1995@mail.ru     :  MicrosoftAccount   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x588    :  C:\Windows\System32\winlogon.exe      :    : 127.0.0.1   :   0      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-19 17:03:10                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   11     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0xb81b87   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x588    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-19 17:03:10                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   11     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0xb81c06   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x588    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-19 17:03:10                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  antbin1995@mail.ru     :  MicrosoftAccount   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x294    :  C:\Windows\System32\lsass.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-19 17:03:10                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0xb81bf1   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x294    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :  Negotiat     : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-19 17:03:10                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0xb81cc6   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x294    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :  Negotiat     : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12545      2014-10-19 17:03:10                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xb81cc6     :   7          .           " ".      ,       .  
      Audit Success   12545      2014-10-19 17:03:10                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xb81bf1     :   7          .           " ".      ,       .  
      Audit Success   12548      2014-10-19 17:03:10                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0xb81b87    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-19 17:03:10                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0xb81bf1    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-19 17:03:10                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :        : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   13824      2014-10-19 17:03:10                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :        : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   13824      2014-10-19 17:03:13                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xb81c06     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 17:03:13                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xb81c06     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 17:03:13                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xb81c06     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 17:03:13                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xb81c06     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 17:03:14                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 17:03:14                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :        : acer  
      Audit Success   13824      2014-10-19 17:03:14                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 17:03:14                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :        : acer  
      Audit Success   13824      2014-10-19 17:03:14                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 17:03:14                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :        : acer  
      Audit Success   13824      2014-10-19 17:03:14                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 17:03:14                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 17:03:14                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :        : acer  
      Audit Success   13824      2014-10-19 17:03:14                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 17:03:14                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :        : acer  
      Audit Success   13824      2014-10-19 17:03:14                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 17:03:14                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :        : acer  
      Audit Success   13824      2014-10-19 17:03:14                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 17:03:14                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :        : acer  
      Audit Success   13824      2014-10-19 17:03:14                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 17:03:14                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :        : acer  
      Audit Success   12545      2014-10-19 17:04:48                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xa66b85     :   2          .           " ".      ,       .  
      Audit Success   12545      2014-10-19 17:04:48                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xa66af5     :   2          .           " ".      ,       .  
      Audit Success   13824      2014-10-19 17:06:05                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xb81c06     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 17:06:05                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xb81c06     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 17:06:05                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xb81c06     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 17:06:05                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xb81c06     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 17:07:53                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xb81c06     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 17:07:53                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xb81c06     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 17:09:22                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xb81c06     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 17:09:22                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xb81c06     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 17:09:42                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xb81c06     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 17:09:42                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xb81c06     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 17:10:07                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xb81c06     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 17:10:07                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xb81c06     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 17:10:51                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xb81c06     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 17:10:51                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xb81c06     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 17:11:22                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xb81c06     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 17:11:22                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xb81c06     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 17:11:26                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xb81c06     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 17:11:26                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xb81c06     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 17:14:44                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xb81c06     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 17:14:44                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xb81c06     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 17:14:44                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xb81c06     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 17:14:44                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xb81c06     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 17:14:52                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xb81c06     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 17:14:52                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xb81c06     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 17:14:52                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xb81c06     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 17:14:52                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xb81c06     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-19 17:15:25                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  antbin1995@mail.ru     :  MicrosoftAccount   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x588    :  C:\Windows\System32\winlogon.exe      :    : 127.0.0.1   :   0      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-19 17:15:25                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0xcadc84   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x588    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-19 17:15:25                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0xcadcfa   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x588    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-19 17:15:25                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  antbin1995@mail.ru     :  MicrosoftAccount   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x294    :  C:\Windows\System32\lsass.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-19 17:15:25                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0xcadce3   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x294    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :  Negotiat     : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-19 17:15:25                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0xcadd9c   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x294    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :  Negotiat     : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12545      2014-10-19 17:15:25                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xcadcfa     :   7          .           " ".      ,       .  
      Audit Success   12545      2014-10-19 17:15:25                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xcadc84     :   7          .           " ".      ,       .  
      Audit Success   12545      2014-10-19 17:15:25                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xcadd9c     :   7          .           " ".      ,       .  
      Audit Success   12545      2014-10-19 17:15:25                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xcadce3     :   7          .           " ".      ,       .  
      Audit Success   12548      2014-10-19 17:15:25                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0xcadc84    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-19 17:15:25                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0xcadce3    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-19 17:15:25                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :        : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   13824      2014-10-19 17:15:25                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :        : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   13824      2014-10-19 17:19:45                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xb81c06     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 17:19:45                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xb81c06     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 17:19:45                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xb81c06     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 17:19:45                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xb81c06     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-19 17:21:04                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  DWM-2     :  Window Manager   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x11b0    :  C:\Windows\System32\winlogon.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-19 17:21:04                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-90-2     :  DWM-2     :  Window Manager    :  0xd26d55   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x11b0    :  C:\Windows\System32\winlogon.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-19 17:21:04                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-90-2     :  DWM-2     :  Window Manager    :  0xd26d68   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x11b0    :  C:\Windows\System32\winlogon.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-19 17:21:04                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-90-2     :  DWM-2     :  Window Manager    :  0xd26d55    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-19 17:21:04                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-90-2     :  DWM-2     :  Window Manager    :  0xd26d68    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege  
      Audit Success   12545      2014-10-19 17:21:05                                  Microsoft-Windows-Security-Auditing  4647: ,  :    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xb81c06      ,   .  ,  ,  .        .  
      Audit Success   12545      2014-10-19 17:21:06                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0xb727c0     :   2          .           " ".      ,       .  
      Audit Success   12545      2014-10-19 17:21:06                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0xb727ac     :   2          .           " ".      ,       .  
      Audit Success   12544      2014-10-19 21:03:30                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  antbin1995@mail.ru     :  MicrosoftAccount   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x11b0    :  C:\Windows\System32\winlogon.exe      :    : 127.0.0.1   :   0      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-19 21:03:30                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   11     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0xd43159   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x11b0    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-19 21:03:30                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   11     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0xd431d4   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x11b0    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-19 21:03:30                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  antbin1995@mail.ru     :  MicrosoftAccount   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x294    :  C:\Windows\System32\lsass.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-19 21:03:30                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0xd431bd   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x294    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :  Negotiat     : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-19 21:03:30                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0xd43296   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x294    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :  Negotiat     : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12545      2014-10-19 21:03:30                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xd43296     :   7          .           " ".      ,       .  
      Audit Success   12545      2014-10-19 21:03:30                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xd431bd     :   7          .           " ".      ,       .  
      Audit Success   12548      2014-10-19 21:03:30                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0xd43159    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-19 21:03:30                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0xd431bd    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-19 21:03:30                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :        : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   13824      2014-10-19 21:03:30                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :        : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   13824      2014-10-19 21:03:34                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xd431d4     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 21:03:34                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xd431d4     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 21:03:34                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xd431d4     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 21:03:34                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xd431d4     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 21:03:35                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 21:03:35                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :        : acer  
      Audit Success   13824      2014-10-19 21:03:35                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 21:03:35                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :        : acer  
      Audit Success   13824      2014-10-19 21:03:35                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 21:03:35                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 21:03:35                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :        : acer  
      Audit Success   13824      2014-10-19 21:03:35                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :        : acer  
      Audit Success   13824      2014-10-19 21:03:35                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 21:03:35                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 21:03:35                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 21:03:35                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :        : acer  
      Audit Success   13824      2014-10-19 21:03:35                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :        : acer  
      Audit Success   13824      2014-10-19 21:03:35                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 21:03:35                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :        : acer  
      Audit Success   13824      2014-10-19 21:03:35                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 21:03:35                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5     :      : ACER      :        : acer  
      Audit Success   12545      2014-10-19 21:03:58                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xb81c06     :   2          .           " ".      ,       .  
      Audit Success   12545      2014-10-19 21:03:58                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xb81b87     :   2          .           " ".      ,       .  
      Audit Success   13824      2014-10-19 21:35:57                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xd431d4     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 21:35:57                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xd431d4     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 21:35:57                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xd431d4     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 21:35:57                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xd431d4     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 21:35:59                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xd431d4     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 21:35:59                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xd431d4     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 21:49:56                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xd431d4     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 21:49:56                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xd431d4     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 21:51:41                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xd431d4     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 21:51:41                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xd431d4     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 21:51:52                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xd431d4     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 21:51:52                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xd431d4     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 21:54:20                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xd431d4     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 21:54:20                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xd431d4     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 22:14:08                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xd431d4     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 22:14:08                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xd431d4     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 22:14:08                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xd431d4     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 22:14:08                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xd431d4     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-19 22:23:59                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  antbin1995@mail.ru     :  MicrosoftAccount   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x11b0    :  C:\Windows\System32\winlogon.exe      :    : 127.0.0.1   :   0      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-19 22:23:59                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x1314140   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x11b0    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-19 22:23:59                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x13141c7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x11b0    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-19 22:23:59                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  antbin1995@mail.ru     :  MicrosoftAccount   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x294    :  C:\Windows\System32\lsass.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-19 22:23:59                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x13141b0   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x294    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :  Negotiat     : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-19 22:23:59                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x1314275   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x294    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :  Negotiat     : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12545      2014-10-19 22:23:59                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x13141c7     :   7          .           " ".      ,       .  
      Audit Success   12545      2014-10-19 22:23:59                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1314140     :   7          .           " ".      ,       .  
      Audit Success   12545      2014-10-19 22:23:59                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1314275     :   7          .           " ".      ,       .  
      Audit Success   12545      2014-10-19 22:23:59                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x13141b0     :   7          .           " ".      ,       .  
      Audit Success   12548      2014-10-19 22:23:59                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x1314140    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-19 22:23:59                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x13141b0    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-19 22:23:59                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :        : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   13824      2014-10-19 22:23:59                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :        : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   12288      2014-10-19 22:56:13                                  Microsoft-Windows-Security-Auditing  4608:   Windows.           LSASS.EXE    .  
      Audit Success   12544      2014-10-19 22:56:13                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   0     :  -     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x4    :        :     : -     : -    :  -       :    :  -     : -    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   13568      2014-10-19 22:56:14                                  Microsoft-Windows-Security-Auditing  4902:      .     : 0   : 0x8d18  
      Audit Success   12544      2014-10-19 22:56:19                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x268    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-19 22:56:19                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   101        2014-10-19 22:56:23                                  Microsoft-Windows-Eventlog      1101: 
      Audit Success   12544      2014-10-19 22:56:23                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x268    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-19 22:56:23                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x268    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-19 22:56:23                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  DWM-1     :  Window Manager   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x2e0    :  C:\Windows\System32\winlogon.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-19 22:56:23                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0x110f9   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2e0    :  C:\Windows\System32\winlogon.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-19 22:56:23                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0x11119   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2e0    :  C:\Windows\System32\winlogon.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-19 22:56:23                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x268    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-19 22:56:23                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x268    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-19 22:56:23                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-19 22:56:23                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-19 22:56:23                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0x110f9    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-19 22:56:23                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0x11119    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege  
      Audit Success   12548      2014-10-19 22:56:23                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-19 22:56:23                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12292      2014-10-19 22:56:31                                  Microsoft-Windows-Security-Auditing  5033:   Windows  .  
      Audit Success   12544      2014-10-19 22:56:31                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x268    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-19 22:56:31                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12292      2014-10-19 22:56:33                                  Microsoft-Windows-Security-Auditing  5024:   Windows  .  
      Audit Success   12544      2014-10-19 22:56:36                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   3     :  %%1833     :    :  S-1-5-7     :        :  NT AUTHORITY    :  0x205a4   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x0    :  -      :     :      : -    :  -       :    :  NtLmSsp      : NTLM    : -     ( NTLM): NTLM V1    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12292      2014-10-19 22:56:39                                  Microsoft-Windows-Security-Auditing  6406: ESET Smart Security    Windows      BootTimeRuleCategory, FirewallRuleCategory.  
      Audit Success   12544      2014-10-19 22:56:55                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  antbin1995@mail.ru     :  MicrosoftAccount   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x2e0    :  C:\Windows\System32\winlogon.exe      :    : 127.0.0.1   :   0      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-19 22:56:55                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   11     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x2e602   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2e0    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-19 22:56:55                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   11     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x2e6dd   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2e0    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-19 22:56:55                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  antbin1995@mail.ru     :  MicrosoftAccount   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x278    :  C:\Windows\System32\lsass.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-19 22:56:55                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x2e6d0   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x278    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :  Negotiat     : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-19 22:56:55                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x2e7a4   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x278    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :  Negotiat     : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12545      2014-10-19 22:56:55                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x2e7a4     :   7          .           " ".      ,       .  
      Audit Success   12545      2014-10-19 22:56:55                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x2e6d0     :   7          .           " ".      ,       .  
      Audit Success   12548      2014-10-19 22:56:55                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x2e602    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-19 22:56:55                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x2e6d0    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-19 22:56:55                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :        : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   13824      2014-10-19 22:56:55                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :        : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   12544      2014-10-19 22:56:57                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x268    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-19 22:56:57                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-19 22:57:00                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x2e6dd     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 22:57:00                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x2e6dd     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 22:57:00                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x2e6dd     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 22:57:00                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x2e6dd     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-19 22:57:02                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x268    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-19 22:57:02                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-19 23:00:10                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x268    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-19 23:00:10                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-19 23:17:13                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x268    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-19 23:17:13                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-19 23:32:16                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x268    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-19 23:32:16                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-19 23:41:47                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x2e6dd     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 23:41:47                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x2e6dd     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 23:41:47                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x2e6dd     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 23:41:47                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x2e6dd     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 23:46:58                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x2e6dd     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 23:46:58                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x2e6dd     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 23:46:58                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x2e6dd     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-19 23:46:58                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x2e6dd     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-19 23:51:17                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x268    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-19 23:51:17                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-19 23:51:18                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x268    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-19 23:51:18                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x268    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-19 23:51:18                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-19 23:51:18                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13568      2014-10-19 23:51:46                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\_0000000000000000.cdf-ms    : 0x564      :    : 0x5e4    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-19 23:51:46                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$.cdf-ms    : 0x560      :    : 0x5e4    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-19 23:51:46                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_3296b36dbe4c7fa3.cdf-ms    : 0x49c      :    : 0x5e4    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-19 23:51:46                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework64_083d4e330e766c5d.cdf-ms    : 0x564      :    : 0x5e4    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-19 23:51:46                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework64_v2.0.50727_443de60f3f6e0828.cdf-ms    : 0x510      :    : 0x5e4    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-19 23:51:46                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework_83386eac0379231b.cdf-ms    : 0x55c      :    : 0x5e4    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-19 23:51:46                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework_v2.0.50727_e9368840261e60ee.cdf-ms    : 0x49c      :    : 0x5e4    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-19 23:51:46                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorlib.dll    : 0x510      :    : 0x5e4    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-19 23:51:47                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorwks.dll    : 0x5c0      :    : 0x5e4    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-19 23:51:47                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\SOS.dll    : 0x728      :    : 0x5e4    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-19 23:51:47                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\System.dll    : 0x584      :    : 0x5e4    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-19 23:51:47                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscordacwks.dll    : 0x5d8      :    : 0x5e4    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-19 23:51:47                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorlib.dll    : 0x5c0      :    : 0x5e4    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   12544      2014-10-20 00:26:18                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x268    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-20 00:26:18                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-20 00:29:27                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x268    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-20 00:29:27                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x268    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-20 00:29:27                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-20 00:29:27                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-20 00:34:47                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x268    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-20 00:34:47                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-20 00:39:12                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x268    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-20 00:39:12                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-20 00:39:47                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x268    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-20 00:39:47                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-20 00:45:40                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x268    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-20 00:45:40                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-20 00:46:45                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x268    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-20 00:46:45                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-20 00:52:08                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x268    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-20 00:52:08                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-20 00:52:41                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x268    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-20 00:52:41                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-20 00:57:23                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x2e6dd     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 00:57:23                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x2e6dd     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 00:58:07                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x2e6dd     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 00:58:07                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x2e6dd     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 00:58:07                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x2e6dd     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 00:58:07                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x2e6dd     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-20 01:22:34                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  antbin1995@mail.ru     :  MicrosoftAccount   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x2e0    :  C:\Windows\System32\winlogon.exe      :    : 127.0.0.1   :   0      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-20 01:22:34                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x1228eb5   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2e0    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-20 01:22:34                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x1228f80   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2e0    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-20 01:22:34                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  antbin1995@mail.ru     :  MicrosoftAccount   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x278    :  C:\Windows\System32\lsass.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-20 01:22:34                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x1228f67   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x278    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :  Negotiat     : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-20 01:22:34                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x122902c   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x278    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :  Negotiat     : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12545      2014-10-20 01:22:34                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1228f80     :   7          .           " ".      ,       .  
      Audit Success   12545      2014-10-20 01:22:34                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1228eb5     :   7          .           " ".      ,       .  
      Audit Success   12545      2014-10-20 01:22:34                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x122902c     :   7          .           " ".      ,       .  
      Audit Success   12545      2014-10-20 01:22:34                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1228f67     :   7          .           " ".      ,       .  
      Audit Success   12548      2014-10-20 01:22:34                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x1228eb5    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-20 01:22:34                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x1228f67    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-20 01:22:34                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :        : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   13824      2014-10-20 01:22:34                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :        : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   13824      2014-10-20 01:26:38                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x2e6dd     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 01:26:38                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x2e6dd     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 01:26:41                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x2e6dd     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 01:26:41                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x2e6dd     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 01:26:44                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x2e6dd     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 01:26:44                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x2e6dd     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 01:27:44                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x2e6dd     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 01:27:44                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x2e6dd     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 01:27:51                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x2e6dd     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 01:27:51                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x2e6dd     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-20 03:00:01                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x268    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-20 03:00:01                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x268    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-20 03:00:01                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-20 03:00:01                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-20 03:00:37                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x268    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-20 03:00:37                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-20 03:02:12                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x268    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-20 03:02:12                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12288      2014-10-20 07:24:56                                  Microsoft-Windows-Security-Auditing  4608:   Windows.           LSASS.EXE    .  
      Audit Success   12544      2014-10-20 07:24:56                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   0     :  -     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x4    :        :     : -     : -    :  -       :    :  -     : -    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   13568      2014-10-20 07:24:56                                  Microsoft-Windows-Security-Auditing  4902:      .     : 0   : 0x912c  
      Audit Success   12544      2014-10-20 07:25:00                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2ac    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-20 07:25:00                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-20 07:25:03                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2ac    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-20 07:25:03                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2ac    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-20 07:25:03                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  DWM-1     :  Window Manager   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x274    :  C:\Windows\System32\winlogon.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-20 07:25:03                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0x102a8   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x274    :  C:\Windows\System32\winlogon.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-20 07:25:03                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0x102bc   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x274    :  C:\Windows\System32\winlogon.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-20 07:25:03                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2ac    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-20 07:25:03                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2ac    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-20 07:25:03                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2ac    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-20 07:25:03                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-20 07:25:03                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-20 07:25:03                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0x102a8    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-20 07:25:03                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0x102bc    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege  
      Audit Success   12548      2014-10-20 07:25:03                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-20 07:25:03                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-20 07:25:03                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12292      2014-10-20 07:25:13                                  Microsoft-Windows-Security-Auditing  5033:   Windows  .  
      Audit Success   12544      2014-10-20 07:25:13                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2ac    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-20 07:25:13                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12292      2014-10-20 07:25:15                                  Microsoft-Windows-Security-Auditing  5024:   Windows  .  
      Audit Success   12544      2014-10-20 07:25:19                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   3     :  %%1833     :    :  S-1-5-7     :        :  NT AUTHORITY    :  0x1b67e   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x0    :  -      :     :      : -    :  -       :    :  NtLmSsp      : NTLM    : -     ( NTLM): NTLM V1    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12292      2014-10-20 07:25:20                                  Microsoft-Windows-Security-Auditing  6406: ESET Smart Security    Windows      BootTimeRuleCategory, FirewallRuleCategory.  
      Audit Success   13568      2014-10-20 07:27:16                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\_0000000000000000.cdf-ms    : 0x14      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:16                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$.cdf-ms    : 0x28      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:16                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_3296b36dbe4c7fa3.cdf-ms    : 0x14      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:16                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework64_083d4e330e766c5d.cdf-ms    : 0x28      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:16                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework64_v2.0.50727_443de60f3f6e0828.cdf-ms    : 0x28      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:16                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework_83386eac0379231b.cdf-ms    : 0x24      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:16                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework_v2.0.50727_e9368840261e60ee.cdf-ms    : 0x24      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:16                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorlib.dll    : 0x24      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:16                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorwks.dll    : 0x28      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:16                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\SOS.dll    : 0x38      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:16                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\System.dll    : 0x38      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:16                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscordacwks.dll    : 0x24      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:17                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorlib.dll    : 0x28      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:17                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorwks.dll    : 0x38      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:17                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\SOS.dll    : 0x38      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:17                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscordacwks.dll    : 0x2c      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:17                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\System.dll    : 0x30      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:19                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\_0000000000000000.cdf-ms    : 0x24      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:19                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$.cdf-ms    : 0x30      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:19                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_3296b36dbe4c7fa3.cdf-ms    : 0x14      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:20                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework64_083d4e330e766c5d.cdf-ms    : 0x30      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:20                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework64_v3.0_d97e7188b51e6116.cdf-ms    : 0x18      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:20                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework64_v3.0_wpf_f80a7f17f38f3771.cdf-ms    : 0x18      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:20                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework64_v3.0_wpf_xamlviewer_2a5223adddc9e767.cdf-ms    : 0x18      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:20                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework64_v3.0_windows_communication_foundation_7de82ac14fafbb1e.cdf-ms    : 0x20      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:20                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework64_v3.5_d97e7b06b51e52d9.cdf-ms    : 0x20      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:20                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework64_v3.5_1033_5fdb1455511a0dfa.cdf-ms    : 0x20      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:20                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework64_v2.0.50727_443de60f3f6e0828.cdf-ms    : 0x20      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:20                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework64_v2.0.50727_1033_b3c88eb113ae6c57.cdf-ms    : 0x28      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:20                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework_83386eac0379231b.cdf-ms    : 0x20      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:20                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework_v3.0_wpf_b56a2354fbfa0c31.cdf-ms    : 0x20      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:21                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework_v3.0_wpf_xamlviewer_97ff09273e68a809.cdf-ms    : 0x14      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:21                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework_v3.0_windows_communication_foundation_e07323de19ff1b52.cdf-ms    : 0x14      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:21                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework_v3.5_5588a8293fdc4499.cdf-ms    : 0x28      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:21                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework_v3.5_1033_b573e20073d26166.cdf-ms    : 0x14      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:21                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework_v2.0.50727_e9368840261e60ee.cdf-ms    : 0x14      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:21                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework_v2.0.50727_1033_7994eb100abd5435.cdf-ms    : 0x14      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:21                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\cvtres.exe    : 0x14      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:21                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\AppLaunch.exe    : 0x28      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:21                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\dw20.exe    : 0x18      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:21                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscortim.dll    : 0x3c      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:21                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\alink.dll    : 0x28      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:21                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscordbc.dll    : 0x28      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:22                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsn.dll    : 0x28      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:22                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\aspnet_regiis.exe    : 0x18      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:22                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\MmcAspExt.dll    : 0x30      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:22                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\1033\CvtResUI.dll    : 0x14      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:22                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\1033\alinkui.dll    : 0x24      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:22                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\1033\cscompui.dll    : 0x34      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:22                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.5\vbc.exe    : 0x30      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:22                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.5\csc.exe    : 0x44      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:22                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.5\1033\cscompui.dll    : 0x30      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:23                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.5\1033\vbc7ui.dll    : 0x34      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:23                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceModelEvents.dll    : 0x34      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:23                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\WsatConfig.exe    : 0x30      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:23                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceMonikerSupport.dll    : 0x18      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:23                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.0\WPF\PenIMC.dll    : 0x30      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:23                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.0\WPF\XamlViewer\XamlViewer_v0300.exe    : 0x18      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:23                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\cvtres.exe    : 0x18      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:24                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\AppLaunch.exe    : 0x18      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:24                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\dw20.exe    : 0x3c      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:24                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\alink.dll    : 0x28      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:24                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscortim.dll    : 0x2c      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:24                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscordbc.dll    : 0x28      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:24                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\aspnet_regiis.exe    : 0x28      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:24                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsn.dll    : 0x28      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:24                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\MmcAspExt.dll    : 0x48      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:24                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\1033\CvtResUI.dll    : 0x48      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:25                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\1033\alinkui.dll    : 0x48      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:25                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\1033\cscompui.dll    : 0x4c      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:25                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.5\vbc.exe    : 0x3c      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:25                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.5\csc.exe    : 0x50      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:25                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.5\1033\cscompui.dll    : 0x50      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:25                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.5\1033\vbc7ui.dll    : 0x48      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:25                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\ServiceModelEvents.dll    : 0x48      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:25                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\WsatConfig.exe    : 0x54      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:26                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\ServiceMonikerSupport.dll    : 0x3c      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:26                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PenIMC.dll    : 0x4c      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:26                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\XamlViewer\XamlViewer_v0300.exe    : 0x50      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:27                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\_0000000000000000.cdf-ms    : 0x18      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:27                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_ffd0cbfc813cc4f1.cdf-ms    : 0x18      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:27                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_reference_assemblies_f89c5a39d351281a.cdf-ms    : 0x50      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:27                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_reference_assemblies_microsoft_a4ba21b6f468ca9e.cdf-ms    : 0x18      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:28                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_reference_assemblies_microsoft_framework_61efdd9e2d0263ca.cdf-ms    : 0x30      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:28                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_reference_assemblies_microsoft_framework_v3.5_44577da22216c264.cdf-ms    : 0x30      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:28                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_x86__676bbe2c7241b694.cdf-ms    : 0x34      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:28                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_x86_reference_assemblies_41115a5fd4566dab.cdf-ms    : 0x58      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:28                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_x86_reference_assemblies_microsoft_ad470207ad610db1.cdf-ms    : 0x34      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:28                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_x86_reference_assemblies_microsoft_framework_b81ea2cfde84fb19.cdf-ms    : 0x58      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:28                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_x86_reference_assemblies_microsoft_framework_v3.5_1dfadad07dc0f94f.cdf-ms    : 0x5c      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:28                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$.cdf-ms    : 0x58      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:29                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_3296b36dbe4c7fa3.cdf-ms    : 0x50      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:29                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework64_083d4e330e766c5d.cdf-ms    : 0x58      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:29                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework64_v3.5_d97e7b06b51e52d9.cdf-ms    : 0x58      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:29                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework_83386eac0379231b.cdf-ms    : 0x58      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:29                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework_v3.5_5588a8293fdc4499.cdf-ms    : 0x34      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:29                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.5\DataSvcUtil.exe    : 0x34      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:29                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.5\DataSvcUtil.exe    : 0x34      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:29                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.5\System.Data.Services.dll    : 0x24      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:30                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.5\System.Data.Services.Design.dll    : 0x24      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:30                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.5\System.Data.Services.Design.dll    : 0x34      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:30                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.5\System.Data.Services.dll    : 0x5c      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:31                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\_0000000000000000.cdf-ms    : 0x24      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:31                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$.cdf-ms    : 0x5c      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:31                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_3296b36dbe4c7fa3.cdf-ms    : 0x5c      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:31                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework64_083d4e330e766c5d.cdf-ms    : 0x5c      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:31                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework64_v2.0.50727_443de60f3f6e0828.cdf-ms    : 0x5c      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:31                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework_83386eac0379231b.cdf-ms    : 0x5c      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:31                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework_v2.0.50727_e9368840261e60ee.cdf-ms    : 0x5c      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:31                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\peverify.dll    : 0x30      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:31                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\System.Drawing.dll    : 0x18      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:32                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\System.Design.dll    : 0x4c      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:32                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\System.Windows.Forms.dll    : 0x4c      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:32                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\System.DirectoryServices.Protocols.dll    : 0x5c      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:32                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorjit.dll    : 0x5c      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:32                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\System.DirectoryServices.dll    : 0x4c      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:32                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\System.Security.dll    : 0x34      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:32                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\System.dll    : 0x54      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:33                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\peverify.dll    : 0x64      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:33                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\System.Drawing.dll    : 0x54      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:33                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\System.Design.dll    : 0x34      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:33                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\System.Windows.Forms.dll    : 0x34      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:33                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\System.DirectoryServices.Protocols.dll    : 0x34      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:33                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorjit.dll    : 0x64      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:33                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\System.DirectoryServices.dll    : 0x34      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:33                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\System.Security.dll    : 0x28      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:34                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\System.dll    : 0x48      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:35                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\_0000000000000000.cdf-ms    : 0x4c      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:35                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$.cdf-ms    : 0x4c      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:35                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_syswow64_21ffbdd2a2dd92e0.cdf-ms    : 0x18      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:36                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_system32_21f9a9c4a2f8b514.cdf-ms    : 0x74      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:36                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\WMVDECOD.DLL    : 0x30      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:36                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\WMVDECOD.DLL    : 0x78      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:37                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\_0000000000000000.cdf-ms    : 0x24      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:37                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$.cdf-ms    : 0x14      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:37                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_syswow64_21ffbdd2a2dd92e0.cdf-ms    : 0x14      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:37                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_system32_21f9a9c4a2f8b514.cdf-ms    : 0x24      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:38                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\DWrite.dll    : 0x20      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:38                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\DWrite.dll    : 0x38      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:38                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\_0000000000000000.cdf-ms    : 0x24      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:39                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_ffd0cbfc813cc4f1.cdf-ms    : 0x14      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:39                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_reference_assemblies_f89c5a39d351281a.cdf-ms    : 0x38      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:39                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_reference_assemblies_microsoft_a4ba21b6f468ca9e.cdf-ms    : 0x20      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:39                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_reference_assemblies_microsoft_framework_61efdd9e2d0263ca.cdf-ms    : 0x20      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:39                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_reference_assemblies_microsoft_framework_v3.0_44577d982216c291.cdf-ms    : 0x24      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:39                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_x86__676bbe2c7241b694.cdf-ms    : 0x78      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:39                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_x86_reference_assemblies_41115a5fd4566dab.cdf-ms    : 0x24      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_x86_reference_assemblies_microsoft_ad470207ad610db1.cdf-ms    : 0x24      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_x86_reference_assemblies_microsoft_framework_b81ea2cfde84fb19.cdf-ms    : 0x20      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_x86_reference_assemblies_microsoft_framework_v3.0_1dfad1527dc1078c.cdf-ms    : 0x24      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$.cdf-ms    : 0x78      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_3296b36dbe4c7fa3.cdf-ms    : 0x30      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework64_083d4e330e766c5d.cdf-ms    : 0x78      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework64_v3.0_d97e7188b51e6116.cdf-ms    : 0x24      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:41                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework64_v3.0_wpf_f80a7f17f38f3771.cdf-ms    : 0x24      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:41                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework_83386eac0379231b.cdf-ms    : 0x78      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:41                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework_v3.0_wpf_b56a2354fbfa0c31.cdf-ms    : 0x78      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:41                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.0\WPF\wpfgfx_v0300.dll    : 0x30      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:41                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.0\WPF\PenIMC.dll    : 0x18      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:42                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.0\WPF\PresentationHostDLL.dll    : 0x64      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:42                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\wpfgfx_v0300.dll    : 0x18      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:42                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PenIMC.dll    : 0x18      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:42                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationHostDLL.dll    : 0x30      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:43                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\System.Printing.dll    : 0x58      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:43                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\WindowsBase.dll    : 0x30      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:43                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\PresentationCore.dll    : 0x50      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:44                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\ReachFramework.dll    : 0x18      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:44                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\PresentationFramework.dll    : 0x50      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:44                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.0\System.Printing.dll    : 0x38      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:44                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.0\WindowsBase.dll    : 0x18      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:44                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.0\ReachFramework.dll    : 0x50      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:44                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.0\PresentationCore.dll    : 0x38      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:44                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.0\PresentationFramework.dll    : 0x50      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:46                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\_0000000000000000.cdf-ms    : 0x60      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:46                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_ffd0cbfc813cc4f1.cdf-ms    : 0x7c      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:46                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_reference_assemblies_f89c5a39d351281a.cdf-ms    : 0x60      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:46                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_reference_assemblies_microsoft_a4ba21b6f468ca9e.cdf-ms    : 0x7c      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:46                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_reference_assemblies_microsoft_framework_61efdd9e2d0263ca.cdf-ms    : 0x60      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:46                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_reference_assemblies_microsoft_framework_v3.5_44577da22216c264.cdf-ms    : 0x14      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:46                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_x86__676bbe2c7241b694.cdf-ms    : 0x50      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:46                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_x86_reference_assemblies_41115a5fd4566dab.cdf-ms    : 0x88      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:47                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_x86_reference_assemblies_microsoft_ad470207ad610db1.cdf-ms    : 0x88      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:47                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_x86_reference_assemblies_microsoft_framework_b81ea2cfde84fb19.cdf-ms    : 0x8c      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:47                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_x86_reference_assemblies_microsoft_framework_v3.5_1dfadad07dc0f94f.cdf-ms    : 0x88      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:47                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.5\System.Data.Linq.dll    : 0x88      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:47                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.5\System.Data.Linq.dll    : 0x14      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:48                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\_0000000000000000.cdf-ms    : 0x90      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:48                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$.cdf-ms    : 0x50      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:48                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_3296b36dbe4c7fa3.cdf-ms    : 0x90      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:48                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework64_083d4e330e766c5d.cdf-ms    : 0x90      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:49                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework64_v4.0.30319_46321ba736a30085.cdf-ms    : 0x90      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:49                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework64_v4.0.30319_wpf_647a02df72a14032.cdf-ms    : 0x90      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:49                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework_83386eac0379231b.cdf-ms    : 0x60      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:49                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework_v4.0.30319_c40c7a995ddd757b.cdf-ms    : 0x94      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:49                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework_v4.0.30319_wpf_bc1339ef8efa3c4c.cdf-ms    : 0x14      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:27:52                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v4.0.30319\System.Data.Linq.dll    : 0x8c      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:52                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v4.0.30319\System.Data.SqlXml.dll    : 0x8c      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:52                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v4.0.30319\System.Configuration.dll    : 0xa0      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:53                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v4.0.30319\System.ComponentModel.Composition.dll    : 0x94      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:53                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v4.0.30319\System.XML.dll    : 0x88      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:53                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WindowsBase.dll    : 0x94      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:54                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WindowsFormsIntegration.dll    : 0x88      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:54                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\PresentationCore.dll    : 0xa0      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:54                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\PresentationFramework.dll    : 0x94      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   12544      2014-10-20 07:27:55                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2ac    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-20 07:27:55                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13568      2014-10-20 07:27:55                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v4.0.30319\System.Data.SqlXml.dll    : 0x8c      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:55                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v4.0.30319\System.Configuration.dll    : 0x98      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:56                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v4.0.30319\System.Data.Linq.dll    : 0x8c      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:56                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v4.0.30319\System.ComponentModel.Composition.dll    : 0x8c      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:56                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v4.0.30319\System.XML.dll    : 0x14      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:57                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v4.0.30319\WPF\WindowsBase.dll    : 0x14      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:57                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v4.0.30319\WPF\WindowsFormsIntegration.dll    : 0x60      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:57                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v4.0.30319\WPF\PresentationCore.dll    : 0x60      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:27:57                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v4.0.30319\WPF\PresentationFramework.dll    : 0x14      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   12544      2014-10-20 07:27:58                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2ac    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-20 07:27:58                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13568      2014-10-20 07:28:02                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\_0000000000000000.cdf-ms    : 0x60      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:02                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$.cdf-ms    : 0xa8      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:03                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_syswow64_21ffbdd2a2dd92e0.cdf-ms    : 0x90      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:03                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_syswow64_ru-ru_b70b8052528b002f.cdf-ms    : 0x90      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:03                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_system32_21f9a9c4a2f8b514.cdf-ms    : 0x90      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:03                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_system32_ru-ru_5b50e7f65fce4fdb.cdf-ms    : 0x90      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:03                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\apprepapi.dll    : 0x90      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:04                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\cryptsvc.dll    : 0x90      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:04                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\crypt32.dll    : 0xa8      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:04                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\apprepsync.dll    : 0x90      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:04                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\wintrust.dll    : 0x18      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:04                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\ru-RU\crypt32.dll.mui    : 0x50      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:05                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\apprepapi.dll    : 0x64      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:05                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\crypt32.dll    : 0x90      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:05                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\apprepsync.dll    : 0x90      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:05                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\wintrust.dll    : 0x90      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:08                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\Drivers\dam.sys    : 0x88      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:08                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\_0000000000000000.cdf-ms    : 0x88      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:08                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$.cdf-ms    : 0x3c      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:08                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_winstore_04445b88cf0b8e8d.cdf-ms    : 0x3c      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:08                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_winstore_ru-ru_4e5eda4478057174.cdf-ms    : 0xa0      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:09                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_syswow64_21ffbdd2a2dd92e0.cdf-ms    : 0x98      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:09                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_syswow64_ru-ru_b70b8052528b002f.cdf-ms    : 0x3c      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:09                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_policydefinitions_89130cdfc4d9c27c.cdf-ms    : 0x3c      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:09                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_policydefinitions_ru-ru_3947e28191bee0bf.cdf-ms    : 0x3c      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:09                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_system32_21f9a9c4a2f8b514.cdf-ms    : 0x3c      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:09                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_system32_spp_plugin-manifests-signed_d1e9d31c180bebd2.cdf-ms    : 0x3c      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:09                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_system32_spp_tokens_ppdlic_0f09ba294211a24b.cdf-ms    : 0x88      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:09                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_system32_migration_927a21df1acd7c18.cdf-ms    : 0x88      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:10                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_system32_drivers_dc1b782427b5ee1b.cdf-ms    : 0x38      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:10                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_system32_ru-ru_5b50e7f65fce4fdb.cdf-ms    : 0x38      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:10                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\sppwinob.dll    : 0x3c      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:10                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\setupcln.dll    : 0x98      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:10                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\sppc.dll    : 0x38      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:11                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\WSSync.dll    : 0x88      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:11                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\WSShared.dll    : 0x20      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:11                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\wups.dll    : 0x7c      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:11                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\WSService.dll    : 0x38      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:11                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\Windows.ApplicationModel.Store.TestingFramework.dll    : 0x20      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:11                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\wudriver.dll    : 0xa0      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:12                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\WSClient.dll    : 0xa0      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:12                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\wuapi.dll    : 0x38      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:12                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\WinSetupUI.dll    : 0xa0      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:12                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\sppobjs.dll    : 0x88      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:12                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\sppsvc.exe    : 0x20      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:12                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\Windows.ApplicationModel.Store.dll    : 0x20      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:13                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\wuapp.exe    : 0x88      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:13                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\NotificationUI.exe    : 0x88      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:13                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\wuwebv.dll    : 0xa0      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:13                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\OEMLicense.dll    : 0x7c      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:13                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\ru-RU\sppsvc.exe.mui    : 0x20      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:13                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\ru-RU\sppc.dll.mui    : 0x20      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:14                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\ru-RU\slc.dll.mui    : 0x3c      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:14                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\migration\WSMigPlugin.dll    : 0x3c      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:14                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\spp\tokens\ppdlic\WSLicensingService-ppdlic.xrm-ms    : 0x98      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:14                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\spp\tokens\ppdlic\WinStoreUI-ppdlic.xrm-ms    : 0xa0      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:14                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\spp\tokens\ppdlic\Security-SPP-ppdlic.xrm-ms    : 0x98      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:15                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\spp\plugin-manifests-signed\sppwinob-spp-plugin-manifest-signed.xrm-ms    : 0x98      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:15                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\spp\plugin-manifests-signed\sppobjs-spp-plugin-manifest-signed.xrm-ms    : 0x7c      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:15                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\PolicyDefinitions\WinStoreUI.admx    : 0x98      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:15                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\PolicyDefinitions\ru-RU\WinStoreUI.adml    : 0x78      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:16                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\sppc.dll    : 0x30      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:16                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\setupcln.dll    : 0x30      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:16                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\WSSync.dll    : 0x5c      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:16                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\WSShared.dll    : 0x5c      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:17                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\wups.dll    : 0x5c      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:17                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll    : 0x30      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:17                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\WSClient.dll    : 0x78      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:17                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\wudriver.dll    : 0x78      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:17                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\wuapi.dll    : 0x74      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:18                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\wuapp.exe    : 0x5c      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:18                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\Windows.ApplicationModel.Store.dll    : 0x74      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:18                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\wuwebv.dll    : 0x74      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:18                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\OEMLicense.dll    : 0x74      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:18                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\ru-RU\sppc.dll.mui    : 0x20      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:18                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\ru-RU\slc.dll.mui    : 0x20      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:19                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinStore\WinStoreUI.dll    : 0x54      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:19                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinStore\WinStore.UI.WinMD    : 0x54      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:19                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinStore\WinStore.js    : 0x88      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:19                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinStore\ru-RU\WinStoreUI.dll.mui    : 0x34      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:25                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\_0000000000000000.cdf-ms    : 0x88      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:25                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$.cdf-ms    : 0x68      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:25                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_syswow64_21ffbdd2a2dd92e0.cdf-ms    : 0x88      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:25                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_system32_21f9a9c4a2f8b514.cdf-ms    : 0x88      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:25                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\atmfd.dll    : 0x28      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:26                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\atmlib.dll    : 0x48      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:26                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\atmfd.dll    : 0x48      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:26                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\atmlib.dll    : 0x48      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:32                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\Drivers\WdfLdr.sys    : 0x78      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:33                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\Drivers\Wdf01000.sys    : 0x78      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:33                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\_0000000000000000.cdf-ms    : 0x78      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:33                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$.cdf-ms    : 0x78      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:33                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_system32_21f9a9c4a2f8b514.cdf-ms    : 0x78      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:33                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_system32_drivers_dc1b782427b5ee1b.cdf-ms    : 0x78      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:33                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\_0000000000000000.cdf-ms    : 0x28      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:34                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$.cdf-ms    : 0x40      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:34                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_syswow64_21ffbdd2a2dd92e0.cdf-ms    : 0x48      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:34                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_system32_21f9a9c4a2f8b514.cdf-ms    : 0x40      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:34                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\comctl32.dll    : 0x40      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:34                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\comctl32.dll    : 0x44      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:35                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\_0000000000000000.cdf-ms    : 0x68      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:35                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$.cdf-ms    : 0x6c      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:36                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_3296b36dbe4c7fa3.cdf-ms    : 0x2c      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:36                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework64_083d4e330e766c5d.cdf-ms    : 0x2c      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:36                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework64_v4.0.30319_46321ba736a30085.cdf-ms    : 0x68      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:36                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework_83386eac0379231b.cdf-ms    : 0x68      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:36                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework_v4.0.30319_c40c7a995ddd757b.cdf-ms    : 0x40      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:36                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_wp.exe    : 0x44      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:36                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v4.0.30319\System.IdentityModel.dll    : 0x44      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:37                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v4.0.30319\webengine.dll    : 0x44      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:37                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v4.0.30319\System.Web.dll    : 0x44      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:37                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v4.0.30319\webengine4.dll    : 0x20      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:37                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v4.0.30319\System.Runtime.Serialization.dll    : 0x20      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:38                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v4.0.30319\System.Security.dll    : 0x20      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:38                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v4.0.30319\System.ServiceModel.dll    : 0x20      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:38                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v4.0.30319\webengine.dll    : 0x20      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:38                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v4.0.30319\System.IdentityModel.dll    : 0x20      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:39                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_wp.exe    : 0x20      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:39                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v4.0.30319\System.Web.dll    : 0x20      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:39                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v4.0.30319\webengine4.dll    : 0x20      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:39                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v4.0.30319\System.Runtime.Serialization.dll    : 0x20      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:39                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v4.0.30319\System.Security.dll    : 0x44      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v4.0.30319\System.ServiceModel.dll    : 0x68      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:42                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\_0000000000000000.cdf-ms    : 0x74      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:42                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_ffd0cbfc813cc4f1.cdf-ms    : 0x68      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:42                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_reference_assemblies_f89c5a39d351281a.cdf-ms    : 0x2c      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:42                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_reference_assemblies_microsoft_a4ba21b6f468ca9e.cdf-ms    : 0x68      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:42                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_reference_assemblies_microsoft_framework_61efdd9e2d0263ca.cdf-ms    : 0x2c      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:42                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_reference_assemblies_microsoft_framework_v3.5_44577da22216c264.cdf-ms    : 0x48      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:42                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_x86__676bbe2c7241b694.cdf-ms    : 0x88      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:42                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_x86_reference_assemblies_41115a5fd4566dab.cdf-ms    : 0x78      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:42                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_x86_reference_assemblies_microsoft_ad470207ad610db1.cdf-ms    : 0x78      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:43                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_x86_reference_assemblies_microsoft_framework_b81ea2cfde84fb19.cdf-ms    : 0x68      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:43                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_x86_reference_assemblies_microsoft_framework_v3.5_1dfadad07dc0f94f.cdf-ms    : 0x68      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:43                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.5\System.ServiceModel.Web.dll    : 0x30      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:43                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.5\System.Web.Extensions.dll    : 0x48      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:43                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.5\System.ServiceModel.Web.dll    : 0x7c      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:43                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.5\System.Web.Extensions.dll    : 0x7c      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:45                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\_0000000000000000.cdf-ms    : 0x44      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:45                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$.cdf-ms    : 0xa0      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:45                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_syswow64_21ffbdd2a2dd92e0.cdf-ms    : 0x44      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:45                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_system32_21f9a9c4a2f8b514.cdf-ms    : 0x54      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:45                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\PresentationCFFRasterizerNative_v0300.dll    : 0x54      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:45                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll    : 0x54      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:46                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\_0000000000000000.cdf-ms    : 0x68      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:46                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$.cdf-ms    : 0x68      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:46                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_apppatch_1143992cbbbebcab.cdf-ms    : 0x68      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:47                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_apppatch_apppatch64_e39bab3b20714e20.cdf-ms    : 0x68      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:47                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\apppatch\sysmain.sdb    : 0x44      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:47                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\apppatch\drvmain.sdb    : 0x54      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:47                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\apppatch\msimain.sdb    : 0x68      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:48                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\apppatch\apppatch64\sysmain.sdb    : 0x54      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:49                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\_0000000000000000.cdf-ms    : 0x88      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:49                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$.cdf-ms    : 0x88      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:49                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_syswow64_21ffbdd2a2dd92e0.cdf-ms    : 0x7c      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:49                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_syswow64_ru-ru_b70b8052528b002f.cdf-ms    : 0xa0      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:50                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_system32_21f9a9c4a2f8b514.cdf-ms    : 0x7c      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:50                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_system32_ru-ru_5b50e7f65fce4fdb.cdf-ms    : 0x7c      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-20 07:28:50                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\crypt32.dll    : 0x54      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:50                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\ru-RU\crypt32.dll.mui    : 0xa0      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-20 07:28:50                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\crypt32.dll    : 0xa0      :    : 0xb08    : C:\Windows\System32\poqexec.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   103        2014-10-20 07:29:57                                  Microsoft-Windows-Eventlog      1100: 
      Audit Success   12288      2014-10-20 07:30:46                                  Microsoft-Windows-Security-Auditing  4608:   Windows.           LSASS.EXE    .  
      Audit Success   12544      2014-10-20 07:30:46                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   0     :  -     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x4    :        :     : -     : -    :  -       :    :  -     : -    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-20 07:30:46                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-20 07:30:46                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13568      2014-10-20 07:30:46                                  Microsoft-Windows-Security-Auditing  4902:      .     : 0   : 0xaa17  
      Audit Success   12544      2014-10-20 07:30:48                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-20 07:30:48                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-20 07:30:49                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-20 07:30:49                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-20 07:30:49                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-20 07:30:49                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  DWM-1     :  Window Manager   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x264    :  C:\Windows\System32\winlogon.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-20 07:30:49                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0x1188c   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x264    :  C:\Windows\System32\winlogon.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-20 07:30:49                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0x118b7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x264    :  C:\Windows\System32\winlogon.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-20 07:30:49                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-20 07:30:49                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-20 07:30:49                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-20 07:30:49                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-20 07:30:49                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0x1188c    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-20 07:30:49                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0x118b7    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege  
      Audit Success   12548      2014-10-20 07:30:49                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12292      2014-10-20 07:30:53                                  Microsoft-Windows-Security-Auditing  5033:   Windows  .  
      Audit Success   12544      2014-10-20 07:30:53                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-20 07:30:53                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12292      2014-10-20 07:30:55                                  Microsoft-Windows-Security-Auditing  5024:   Windows  .  
      Audit Success   12544      2014-10-20 07:30:59                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   3     :  %%1833     :    :  S-1-5-7     :        :  NT AUTHORITY    :  0x1c27c   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x0    :  -      :     :      : -    :  -       :    :  NtLmSsp      : NTLM    : -     ( NTLM): NTLM V1    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12292      2014-10-20 07:31:01                                  Microsoft-Windows-Security-Auditing  6406: ESET Smart Security    Windows      BootTimeRuleCategory, FirewallRuleCategory.  
      Audit Success   12544      2014-10-20 07:31:32                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  antbin1995@mail.ru     :  MicrosoftAccount   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x264    :  C:\Windows\System32\winlogon.exe      :    : 127.0.0.1   :   0      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-20 07:31:32                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   11     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x3cb73   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x264    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-20 07:31:32                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   11     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x3cc53   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x264    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-20 07:31:32                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  antbin1995@mail.ru     :  MicrosoftAccount   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x294    :  C:\Windows\System32\lsass.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-20 07:31:32                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x3cc3c   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x294    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :  Negotiat     : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-20 07:31:32                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x3cd14   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x294    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :  Negotiat     : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12545      2014-10-20 07:31:32                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cd14     :   7          .           " ".      ,       .  
      Audit Success   12545      2014-10-20 07:31:32                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc3c     :   7          .           " ".      ,       .  
      Audit Success   12548      2014-10-20 07:31:32                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x3cb73    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-20 07:31:32                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x3cc3c    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-20 07:31:32                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :        : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   13824      2014-10-20 07:31:32                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :        : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   13824      2014-10-20 07:31:38                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 07:31:38                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 07:31:38                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 07:31:38                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-20 07:31:40                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-20 07:31:40                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-20 07:39:41                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-20 07:39:41                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-20 07:44:05                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-20 07:44:05                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-20 07:44:48                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-20 07:44:48                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-20 07:46:40                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-20 07:46:40                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-20 07:57:04                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-20 07:57:04                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-20 11:14:13                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-20 11:14:13                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-20 14:09:59                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 14:09:59                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 14:09:59                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 14:09:59                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 14:31:26                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 14:31:26                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 14:35:14                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 14:35:14                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 14:35:16                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 14:35:16                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 14:35:18                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 14:35:18                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 16:32:24                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 16:32:24                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 16:32:24                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 16:32:24                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-20 17:04:02                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  antbin1995@mail.ru     :  MicrosoftAccount   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x264    :  C:\Windows\System32\winlogon.exe      :    : 127.0.0.1   :   0      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-20 17:04:02                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x21c8bee   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x264    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-20 17:04:02                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x21c8c60   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x264    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-20 17:04:02                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  antbin1995@mail.ru     :  MicrosoftAccount   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x294    :  C:\Windows\System32\lsass.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-20 17:04:02                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x21c8c48   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x294    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :  Negotiat     : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-20 17:04:02                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x21c8ceb   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x294    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :  Negotiat     : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12545      2014-10-20 17:04:02                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x21c8c60     :   7          .           " ".      ,       .  
      Audit Success   12545      2014-10-20 17:04:02                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x21c8ceb     :   7          .           " ".      ,       .  
      Audit Success   12545      2014-10-20 17:04:02                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x21c8c48     :   7          .           " ".      ,       .  
      Audit Success   12545      2014-10-20 17:04:02                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x21c8bee     :   7          .           " ".      ,       .  
      Audit Success   12548      2014-10-20 17:04:02                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x21c8bee    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-20 17:04:02                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x21c8c48    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-20 17:04:02                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :        : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   13824      2014-10-20 17:04:02                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :        : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   12544      2014-10-20 17:04:47                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-20 17:04:47                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-20 17:15:04                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-20 17:15:04                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-20 17:17:14                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 17:17:14                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 17:18:52                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 17:18:52                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 17:22:15                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 17:22:15                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-20 17:24:52                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-20 17:24:52                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-20 17:25:06                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 17:25:06                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 17:25:06                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 17:25:06                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-20 17:27:34                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-20 17:27:34                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-20 17:27:38                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 17:27:38                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 17:27:38                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 17:27:38                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 17:34:24                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 17:34:24                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 17:34:24                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 17:34:24                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 17:34:27                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 17:34:27                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 17:34:31                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 17:34:31                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 17:35:20                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 17:35:23                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 17:36:06                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 17:36:09                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-20 17:39:17                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-20 17:39:17                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-20 17:39:26                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-20 17:39:26                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-20 17:41:31                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-20 17:41:31                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-20 17:50:43                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 17:50:43                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 17:50:43                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 17:50:43                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 17:55:34                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 17:55:34                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 17:55:36                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 17:55:36                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 17:55:41                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 17:55:41                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-20 17:59:35                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-20 17:59:35                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-20 18:04:07                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 18:04:07                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 18:04:13                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 18:04:13                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-20 18:05:32                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-20 18:05:32                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-20 18:05:35                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-20 18:05:35                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-20 18:05:35                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-20 18:05:35                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13568      2014-10-20 18:06:00                                  Microsoft-Windows-Security-Auditing  4904:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP      :  0x3e7    :    : 0xd08    : C:\Windows\System32\VSSVC.exe     :    : VSSAudit     : 0x27c6ae2  
      Audit Success   13568      2014-10-20 18:06:00                                  Microsoft-Windows-Security-Auditing  4905:       .    Subject    :  S-1-5-18     :  ACER$     :  WORKGROUP      :  0x3e7    :    : 0xd08    : C:\Windows\System32\VSSVC.exe     :    : VSSAudit     : 0x27c6ae2  
      Audit Success   12544      2014-10-20 18:31:13                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-20 18:31:13                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-20 18:31:33                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 18:31:33                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 18:31:39                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 18:31:39                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-20 18:32:05                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-20 18:32:05                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-20 18:47:05                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-20 18:47:05                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-20 18:47:07                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-20 18:47:07                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x28c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-20 18:47:07                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-20 18:47:07                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-20 18:47:34                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 18:47:34                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 19:48:26                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 19:48:26                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 19:48:33                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 19:48:33                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 19:48:38                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 19:48:38                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 19:49:49                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 19:49:49                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 20:04:51                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 20:04:51                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 20:05:08                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 20:05:08                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 20:05:10                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 20:05:10                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 20:05:40                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 20:05:40                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 20:09:58                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 20:09:58                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 20:09:58                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 20:09:58                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 20:49:42                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 20:49:42                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 20:49:42                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 20:49:42                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-20 20:55:08                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  antbin1995@mail.ru     :  MicrosoftAccount   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x264    :  C:\Windows\System32\winlogon.exe      :    : 127.0.0.1   :   0      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-20 20:55:08                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x39d4989   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x264    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-20 20:55:08                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x39d4a02   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x264    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-20 20:55:08                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  antbin1995@mail.ru     :  MicrosoftAccount   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x294    :  C:\Windows\System32\lsass.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-20 20:55:08                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x39d49eb   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x294    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :  Negotiat     : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-20 20:55:08                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x39d4ac7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x294    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :  Negotiat     : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12545      2014-10-20 20:55:08                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x39d4a02     :   7          .           " ".      ,       .  
      Audit Success   12545      2014-10-20 20:55:08                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x39d4989     :   7          .           " ".      ,       .  
      Audit Success   12545      2014-10-20 20:55:08                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x39d4ac7     :   7          .           " ".      ,       .  
      Audit Success   12545      2014-10-20 20:55:08                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x39d49eb     :   7          .           " ".      ,       .  
      Audit Success   12548      2014-10-20 20:55:08                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x39d4989    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-20 20:55:08                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x39d49eb    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-20 20:55:08                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :        : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   13824      2014-10-20 20:55:08                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :        : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   13824      2014-10-20 21:18:09                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 21:18:09                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 21:18:12                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 21:18:12                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 21:18:14                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 21:18:14                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 21:18:16                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 21:18:16                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53     :      : ACER      :       : acer  
      Audit Success   12545      2014-10-20 21:20:57                                  Microsoft-Windows-Security-Auditing  4647: ,  :    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x3cc53      ,   .  ,  ,  .        .  
      Audit Success   103        2014-10-20 21:20:59                                  Microsoft-Windows-Eventlog      1100: 
      Audit Success   12288      2014-10-20 21:22:00                                  Microsoft-Windows-Security-Auditing  4608:   Windows.           LSASS.EXE    .  
      Audit Success   12544      2014-10-20 21:22:00                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   0     :  -     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x4    :        :     : -     : -    :  -       :    :  -     : -    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   13568      2014-10-20 21:22:00                                  Microsoft-Windows-Security-Auditing  4902:      .     : 0   : 0xaa4a  
      Audit Success   12544      2014-10-20 21:22:01                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x29c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-20 21:22:01                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-20 21:22:05                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x29c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-20 21:22:05                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x29c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-20 21:22:05                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x29c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-20 21:22:05                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x29c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-20 21:22:05                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  DWM-1     :  Window Manager   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x270    :  C:\Windows\System32\winlogon.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-20 21:22:05                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0x12538   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x270    :  C:\Windows\System32\winlogon.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-20 21:22:05                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0x1255e   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x270    :  C:\Windows\System32\winlogon.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-20 21:22:05                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-20 21:22:05                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-20 21:22:05                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-20 21:22:05                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-20 21:22:05                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0x12538    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-20 21:22:05                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0x1255e    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege  
      Audit Success   12292      2014-10-20 21:22:06                                  Microsoft-Windows-Security-Auditing  5033:   Windows  .  
      Audit Success   12292      2014-10-20 21:22:06                                  Microsoft-Windows-Security-Auditing  5024:   Windows  .  
      Audit Success   12544      2014-10-20 21:22:06                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x29c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-20 21:22:06                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-20 21:22:14                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   3     :  %%1833     :    :  S-1-5-7     :        :  NT AUTHORITY    :  0x289b3   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x0    :  -      :     :      : -    :  -       :    :  NtLmSsp      : NTLM    : -     ( NTLM): NTLM V1    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12292      2014-10-20 21:22:15                                  Microsoft-Windows-Security-Auditing  6406: ESET Smart Security    Windows      BootTimeRuleCategory, FirewallRuleCategory.  
      Audit Success   12544      2014-10-20 21:22:16                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  antbin1995@mail.ru     :  MicrosoftAccount   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x270    :  C:\Windows\System32\winlogon.exe      :    : 127.0.0.1   :   0      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-20 21:22:16                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   11     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x2ab83   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x270    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-20 21:22:16                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   11     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x2aefe   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x270    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-20 21:22:16                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  antbin1995@mail.ru     :  MicrosoftAccount   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x2a4    :  C:\Windows\System32\lsass.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-20 21:22:16                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x2aefa   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2a4    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :  Negotiat     : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-20 21:22:16                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x2afc8   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2a4    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :  Negotiat     : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12545      2014-10-20 21:22:16                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x2afc8     :   7          .           " ".      ,       .  
      Audit Success   12545      2014-10-20 21:22:16                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x2aefa     :   7          .           " ".      ,       .  
      Audit Success   12548      2014-10-20 21:22:16                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x2ab83    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-20 21:22:16                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x2aefa    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-20 21:22:16                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :        : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   13824      2014-10-20 21:22:16                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :        : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   13824      2014-10-20 21:22:26                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x2aefe     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 21:22:26                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x2aefe     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 21:22:26                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x2aefe     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 21:22:26                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x2aefe     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-20 21:22:29                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x29c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-20 21:22:29                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-20 21:23:04                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  DWM-2     :  Window Manager   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x1238    :  C:\Windows\System32\winlogon.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-20 21:23:04                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-90-2     :  DWM-2     :  Window Manager    :  0x6881d   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x1238    :  C:\Windows\System32\winlogon.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-20 21:23:04                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-90-2     :  DWM-2     :  Window Manager    :  0x68831   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x1238    :  C:\Windows\System32\winlogon.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-20 21:23:04                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-90-2     :  DWM-2     :  Window Manager    :  0x6881d    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-20 21:23:04                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-90-2     :  DWM-2     :  Window Manager    :  0x68831    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege  
      Audit Success   12545      2014-10-20 21:23:10                                  Microsoft-Windows-Security-Auditing  4647: ,  :    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x2aefe      ,   .  ,  ,  .        .  
      Audit Success   12545      2014-10-20 21:23:12                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0x1255e     :   2          .           " ".      ,       .  
      Audit Success   12545      2014-10-20 21:23:12                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0x12538     :   2          .           " ".      ,       .  
      Audit Success   12544      2014-10-20 21:23:51                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  antbin1995@mail.ru     :  MicrosoftAccount   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x1238    :  C:\Windows\System32\winlogon.exe      :    : 127.0.0.1   :   0      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-20 21:23:51                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   11     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x7cc79   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x1238    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-20 21:23:51                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   11     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x7ccf7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x1238    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-20 21:23:51                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  antbin1995@mail.ru     :  MicrosoftAccount   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x2a4    :  C:\Windows\System32\lsass.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-20 21:23:51                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x7cce2   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2a4    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :  Negotiat     : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-20 21:23:51                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x7cdb7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2a4    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :  Negotiat     : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12545      2014-10-20 21:23:51                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x7cdb7     :   7          .           " ".      ,       .  
      Audit Success   12545      2014-10-20 21:23:51                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x7cce2     :   7          .           " ".      ,       .  
      Audit Success   12548      2014-10-20 21:23:51                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x7cc79    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-20 21:23:51                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x7cce2    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-20 21:23:51                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :        : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   13824      2014-10-20 21:23:51                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :        : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   13824      2014-10-20 21:23:59                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x7ccf7     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 21:23:59                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x7ccf7     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 21:23:59                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x7ccf7     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 21:23:59                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x7ccf7     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-20 21:25:51                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  DWM-3     :  Window Manager   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0xb24    :  C:\Windows\System32\winlogon.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-20 21:25:51                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-90-3     :  DWM-3     :  Window Manager    :  0x11083a2   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0xb24    :  C:\Windows\System32\winlogon.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-20 21:25:51                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-90-3     :  DWM-3     :  Window Manager    :  0x11083ca   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0xb24    :  C:\Windows\System32\winlogon.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-20 21:25:51                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x29c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-20 21:25:51                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-90-3     :  DWM-3     :  Window Manager    :  0x11083a2    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-20 21:25:51                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-90-3     :  DWM-3     :  Window Manager    :  0x11083ca    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege  
      Audit Success   12548      2014-10-20 21:25:51                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12545      2014-10-20 21:25:52                                  Microsoft-Windows-Security-Auditing  4647: ,  :    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x7ccf7      ,   .  ,  ,  .        .  
      Audit Success   12545      2014-10-20 21:25:54                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-90-2     :  DWM-2     :  Window Manager    :  0x68831     :   2          .           " ".      ,       .  
      Audit Success   12545      2014-10-20 21:25:54                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-90-2     :  DWM-2     :  Window Manager    :  0x6881d     :   2          .           " ".      ,       .  
      Audit Success   12544      2014-10-20 21:26:56                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  antbin1995@mail.ru     :  MicrosoftAccount   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0xb24    :  C:\Windows\System32\winlogon.exe      :    : 127.0.0.1   :   0      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-20 21:26:56                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   11     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x11704f5   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0xb24    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-20 21:26:56                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   11     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x1170576   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0xb24    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-20 21:26:56                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  antbin1995@mail.ru     :  MicrosoftAccount   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x2a4    :  C:\Windows\System32\lsass.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-20 21:26:56                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x117055d   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2a4    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :  Negotiat     : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-20 21:26:56                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x1170638   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2a4    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :  Negotiat     : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12545      2014-10-20 21:26:56                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1170638     :   7          .           " ".      ,       .  
      Audit Success   12545      2014-10-20 21:26:56                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x117055d     :   7          .           " ".      ,       .  
      Audit Success   12548      2014-10-20 21:26:56                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x11704f5    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-20 21:26:56                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x117055d    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-20 21:26:56                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :        : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   13824      2014-10-20 21:26:56                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :        : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   13824      2014-10-20 21:26:59                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1170576     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 21:26:59                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1170576     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 21:26:59                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1170576     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 21:26:59                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1170576     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 21:27:40                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1170576     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 21:27:40                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1170576     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 21:27:41                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1170576     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 21:27:41                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1170576     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 21:27:58                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1170576     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 21:27:58                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1170576     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 21:28:17                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1170576     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 21:28:17                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1170576     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 21:28:21                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1170576     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 21:28:21                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1170576     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 21:28:36                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1170576     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 21:28:36                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1170576     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 21:28:39                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1170576     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 21:28:39                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1170576     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 21:28:40                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1170576     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 21:28:40                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1170576     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 21:28:42                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1170576     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 21:28:42                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1170576     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 21:28:51                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1170576     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 21:28:51                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1170576     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-20 21:39:05                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x29c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-20 21:39:05                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-20 21:39:11                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x29c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-20 21:39:11                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-20 21:39:19                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1170576     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 21:39:19                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1170576     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 21:39:19                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1170576     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 21:39:19                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1170576     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 21:48:32                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1170576     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 21:48:32                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1170576     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 21:48:33                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1170576     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 21:48:33                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1170576     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 21:48:40                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1170576     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 21:48:40                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1170576     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-20 21:50:24                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x29c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-20 21:50:24                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-20 21:50:26                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x29c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-20 21:50:26                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-20 21:53:40                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x29c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-20 21:53:40                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-20 21:53:45                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1170576     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 21:53:45                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1170576     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 21:53:45                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1170576     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 21:53:45                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1170576     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-20 22:07:54                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x29c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-20 22:07:54                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-20 22:42:20                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1170576     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 22:42:20                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1170576     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 22:42:20                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1170576     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 22:42:20                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1170576     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 22:42:34                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1170576     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 22:42:34                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1170576     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 23:05:12                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1170576     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-20 23:05:12                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1170576     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-21 00:17:29                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  antbin1995@mail.ru     :  MicrosoftAccount   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0xb24    :  C:\Windows\System32\winlogon.exe      :    : 127.0.0.1   :   0      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-21 00:17:29                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x20cfc12   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0xb24    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-21 00:17:29                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x20cfca5   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0xb24    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-21 00:17:29                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  antbin1995@mail.ru     :  MicrosoftAccount   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x2a4    :  C:\Windows\System32\lsass.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-21 00:17:29                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x20cfc89   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2a4    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :  Negotiat     : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-21 00:17:29                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x20cfd5e   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2a4    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :  Negotiat     : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12545      2014-10-21 00:17:29                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x20cfca5     :   7          .           " ".      ,       .  
      Audit Success   12545      2014-10-21 00:17:29                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x20cfc12     :   7          .           " ".      ,       .  
      Audit Success   12545      2014-10-21 00:17:29                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x20cfd5e     :   7          .           " ".      ,       .  
      Audit Success   12545      2014-10-21 00:17:29                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x20cfc89     :   7          .           " ".      ,       .  
      Audit Success   12548      2014-10-21 00:17:29                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x20cfc12    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-21 00:17:29                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x20cfc89    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-21 00:17:29                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :        : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   13824      2014-10-21 00:17:29                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :        : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   12544      2014-10-21 03:00:13                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x29c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-21 03:00:13                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-21 03:07:16                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x29c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-21 03:07:16                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x29c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-21 03:07:16                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-21 03:07:16                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-21 03:07:49                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x29c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-21 03:07:49                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12288      2014-10-21 08:40:44                                  Microsoft-Windows-Security-Auditing  4608:   Windows.           LSASS.EXE    .  
      Audit Success   12544      2014-10-21 08:40:44                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   0     :  -     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x4    :        :     : -     : -    :  -       :    :  -     : -    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   13568      2014-10-21 08:40:44                                  Microsoft-Windows-Security-Auditing  4902:      .     : 0   : 0x943a  
      Audit Success   12544      2014-10-21 08:40:50                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2a8    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-21 08:40:50                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-21 08:40:52                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2a8    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-21 08:40:52                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2a8    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-21 08:40:52                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  DWM-1     :  Window Manager   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x27c    :  C:\Windows\System32\winlogon.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-21 08:40:52                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0x104f3   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x27c    :  C:\Windows\System32\winlogon.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-21 08:40:52                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0x10512   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x27c    :  C:\Windows\System32\winlogon.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-21 08:40:52                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2a8    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-21 08:40:52                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-21 08:40:52                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-21 08:40:52                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0x104f3    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-21 08:40:52                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0x10512    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege  
      Audit Success   12548      2014-10-21 08:40:52                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-21 08:40:53                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2a8    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-21 08:40:53                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-21 08:40:57                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2a8    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-21 08:40:57                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   101        2014-10-21 08:40:58                                  Microsoft-Windows-Eventlog      1101: 
      Audit Success   12292      2014-10-21 08:40:59                                  Microsoft-Windows-Security-Auditing  5033:   Windows  .  
      Audit Success   12292      2014-10-21 08:41:04                                  Microsoft-Windows-Security-Auditing  5024:   Windows  .  
      Audit Success   12544      2014-10-21 08:41:09                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   3     :  %%1833     :    :  S-1-5-7     :        :  NT AUTHORITY    :  0x1e869   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x0    :  -      :     :      : -    :  -       :    :  NtLmSsp      : NTLM    : -     ( NTLM): NTLM V1    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12292      2014-10-21 08:41:12                                  Microsoft-Windows-Security-Auditing  6406: ESET Smart Security    Windows      BootTimeRuleCategory, FirewallRuleCategory.  
      Audit Success   12544      2014-10-21 08:41:31                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  antbin1995@mail.ru     :  MicrosoftAccount   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x27c    :  C:\Windows\System32\winlogon.exe      :    : 127.0.0.1   :   0      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-21 08:41:31                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   11     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x2a55b   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x27c    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-21 08:41:31                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   11     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x2a6b4   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x27c    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-21 08:41:31                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  antbin1995@mail.ru     :  MicrosoftAccount   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x2b0    :  C:\Windows\System32\lsass.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-21 08:41:31                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x2a6ae   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2b0    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :  Negotiat     : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-21 08:41:31                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x2a77f   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2b0    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :  Negotiat     : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12545      2014-10-21 08:41:31                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x2a77f     :   7          .           " ".      ,       .  
      Audit Success   12545      2014-10-21 08:41:31                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x2a6ae     :   7          .           " ".      ,       .  
      Audit Success   12548      2014-10-21 08:41:31                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x2a55b    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-21 08:41:31                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x2a6ae    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-21 08:41:31                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :        : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   13824      2014-10-21 08:41:31                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :        : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   13824      2014-10-21 08:41:40                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x2a6b4     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-21 08:41:40                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x2a6b4     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-21 08:41:40                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x2a6b4     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-21 08:41:40                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x2a6b4     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-21 08:41:43                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2a8    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-21 08:41:43                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-21 08:43:49                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2a8    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-21 08:43:49                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-21 08:46:03                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2a8    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-21 08:46:03                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-21 08:48:37                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2a8    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-21 08:48:37                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-21 09:05:42                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2a8    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-21 09:05:42                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-21 09:30:47                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x2a6b4     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-21 09:30:47                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x2a6b4     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-21 09:30:47                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x2a6b4     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-21 09:30:47                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x2a6b4     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-21 09:30:51                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x2a6b4     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-21 09:30:51                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x2a6b4     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-21 09:45:32                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2a8    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-21 09:45:32                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-21 11:14:22                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2a8    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-21 11:14:22                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-21 12:29:11                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2a8    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-21 12:29:11                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-21 12:29:33                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2a8    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-21 12:29:33                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2a8    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-21 12:29:33                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-21 12:29:33                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13568      2014-10-21 12:29:33                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\_0000000000000000.cdf-ms    : 0x340      :    : 0xf90    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-21 12:29:33                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$.cdf-ms    : 0x368      :    : 0xf90    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-21 12:29:33                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_syswow64_21ffbdd2a2dd92e0.cdf-ms    : 0x37c      :    : 0xf90    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-21 12:29:33                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_system32_21f9a9c4a2f8b514.cdf-ms    : 0x340      :    : 0xf90    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-21 12:29:33                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\wuaueng.dll    : 0x368      :    : 0xf90    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-21 12:29:33                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\storewuauth.dll    : 0x37c      :    : 0xf90    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-21 12:29:33                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\wudriver.dll    : 0x2e4      :    : 0xf90    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   12544      2014-10-21 12:33:02                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2a8    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-21 12:33:02                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-21 12:43:07                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2a8    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-21 12:43:07                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-21 13:08:26                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  DWM-2     :  Window Manager   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0xd04    :  C:\Windows\System32\winlogon.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-21 13:08:26                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-90-2     :  DWM-2     :  Window Manager    :  0xf8006d   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0xd04    :  C:\Windows\System32\winlogon.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-21 13:08:26                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-90-2     :  DWM-2     :  Window Manager    :  0xf8007b   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0xd04    :  C:\Windows\System32\winlogon.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-21 13:08:26                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-90-2     :  DWM-2     :  Window Manager    :  0xf8006d    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-21 13:08:26                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-90-2     :  DWM-2     :  Window Manager    :  0xf8007b    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege  
      Audit Success   12545      2014-10-21 13:08:30                                  Microsoft-Windows-Security-Auditing  4647: ,  :    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x2a6b4      ,   .  ,  ,  .        .  
      Audit Success   12545      2014-10-21 13:08:31                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0x10512     :   2          .           " ".      ,       .  
      Audit Success   12545      2014-10-21 13:08:31                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0x104f3     :   2          .           " ".      ,       .  
      Audit Success   12544      2014-10-21 14:36:17                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  antbin1995@mail.ru     :  MicrosoftAccount   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0xd04    :  C:\Windows\System32\winlogon.exe      :    : 127.0.0.1   :   0      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-21 14:36:17                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   11     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0xf95862   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0xd04    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-21 14:36:17                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   11     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0xf958e1   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0xd04    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-21 14:36:17                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  antbin1995@mail.ru     :  MicrosoftAccount   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x2b0    :  C:\Windows\System32\lsass.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-21 14:36:17                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0xf958cc   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2b0    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :  Negotiat     : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-21 14:36:17                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0xf959a3   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2b0    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :  Negotiat     : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12545      2014-10-21 14:36:17                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xf959a3     :   7          .           " ".      ,       .  
      Audit Success   12545      2014-10-21 14:36:17                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xf958cc     :   7          .           " ".      ,       .  
      Audit Success   12548      2014-10-21 14:36:17                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0xf95862    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-21 14:36:17                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0xf958cc    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-21 14:36:17                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :        : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   13824      2014-10-21 14:36:17                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :        : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   13824      2014-10-21 14:36:21                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xf958e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-21 14:36:21                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xf958e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-21 14:36:21                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xf958e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-21 14:36:21                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xf958e1     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-21 15:04:03                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  antbin1995@mail.ru     :  MicrosoftAccount   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0xd04    :  C:\Windows\System32\winlogon.exe      :    : 127.0.0.1   :   0      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-21 15:04:03                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x1119035   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0xd04    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-21 15:04:03                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x11190c3   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0xd04    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-21 15:04:03                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  antbin1995@mail.ru     :  MicrosoftAccount   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x2b0    :  C:\Windows\System32\lsass.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-21 15:04:03                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x11190a8   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2b0    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :  Negotiat     : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-21 15:04:03                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x1119174   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2b0    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :  Negotiat     : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12545      2014-10-21 15:04:03                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x11190c3     :   7          .           " ".      ,       .  
      Audit Success   12545      2014-10-21 15:04:03                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1119035     :   7          .           " ".      ,       .  
      Audit Success   12545      2014-10-21 15:04:03                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x1119174     :   7          .           " ".      ,       .  
      Audit Success   12545      2014-10-21 15:04:03                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x11190a8     :   7          .           " ".      ,       .  
      Audit Success   12548      2014-10-21 15:04:03                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x1119035    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-21 15:04:03                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x11190a8    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-21 15:04:03                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :        : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   13824      2014-10-21 15:04:03                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :        : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   12544      2014-10-21 15:04:40                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2a8    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-21 15:04:40                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-21 15:06:24                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xf958e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-21 15:06:24                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xf958e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-21 15:06:25                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xf958e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-21 15:06:25                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xf958e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-21 15:06:53                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xf958e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-21 15:06:53                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xf958e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-21 15:06:53                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xf958e1     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-21 15:06:53                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0xf958e1     :      : ACER      :       : acer  
      Audit Success   12288      2014-10-21 16:55:07                                  Microsoft-Windows-Security-Auditing  4608:   Windows.           LSASS.EXE    .  
      Audit Success   12544      2014-10-21 16:55:07                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   0     :  -     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x4    :        :     : -     : -    :  -       :    :  -     : -    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   13568      2014-10-21 16:55:07                                  Microsoft-Windows-Security-Auditing  4902:      .     : 0   : 0x9a54  
      Audit Success   12544      2014-10-21 16:55:11                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c4    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-21 16:55:11                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-21 16:55:17                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c4    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-21 16:55:17                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c4    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-21 16:55:17                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c4    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-21 16:55:17                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  DWM-1     :  Window Manager   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x27c    :  C:\Windows\System32\winlogon.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-21 16:55:17                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0x10dc3   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x27c    :  C:\Windows\System32\winlogon.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-21 16:55:17                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   2     :  %%1833     :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0x10de3   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x27c    :  C:\Windows\System32\winlogon.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-21 16:55:17                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c4    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-21 16:55:17                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-21 16:55:17                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-21 16:55:17                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-21 16:55:17                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0x10dc3    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-21 16:55:17                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-90-1     :  DWM-1     :  Window Manager    :  0x10de3    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege  
      Audit Success   12548      2014-10-21 16:55:17                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   101        2014-10-21 16:55:20                                  Microsoft-Windows-Eventlog      1101: 
      Audit Success   12292      2014-10-21 16:55:21                                  Microsoft-Windows-Security-Auditing  5033:   Windows  .  
      Audit Success   12544      2014-10-21 16:55:21                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c4    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-21 16:55:21                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12292      2014-10-21 16:55:28                                  Microsoft-Windows-Security-Auditing  5024:   Windows  .  
      Audit Success   12544      2014-10-21 16:55:31                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   3     :  %%1833     :    :  S-1-5-7     :        :  NT AUTHORITY    :  0x1fd5d   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x0    :  -      :     :      : -    :  -       :    :  NtLmSsp      : NTLM    : -     ( NTLM): NTLM V1    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12292      2014-10-21 16:55:34                                  Microsoft-Windows-Security-Auditing  6406: ESET Smart Security    Windows      BootTimeRuleCategory, FirewallRuleCategory.  
      Audit Success   12544      2014-10-21 16:57:55                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c4    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-21 16:57:55                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-21 17:25:10                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  antbin1995@mail.ru     :  MicrosoftAccount   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x27c    :  C:\Windows\System32\winlogon.exe      :    : 127.0.0.1   :   0      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-21 17:25:10                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   11     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x190c85   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x27c    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-21 17:25:10                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   11     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x190d13   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x27c    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-21 17:25:10                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  antbin1995@mail.ru     :  MicrosoftAccount   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x2d4    :  C:\Windows\System32\lsass.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-21 17:25:10                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x190d01   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2d4    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :  Negotiat     : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-21 17:25:10                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x190dd9   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2d4    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :  Negotiat     : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12545      2014-10-21 17:25:10                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x190dd9     :   7          .           " ".      ,       .  
      Audit Success   12545      2014-10-21 17:25:10                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x190d01     :   7          .           " ".      ,       .  
      Audit Success   12548      2014-10-21 17:25:10                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x190c85    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-21 17:25:10                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x190d01    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-21 17:25:10                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :        : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   13824      2014-10-21 17:25:10                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :        : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   12544      2014-10-21 17:25:12                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c4    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-21 17:25:12                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-21 17:25:15                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x190d13     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-21 17:25:15                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x190d13     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-21 17:25:15                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x190d13     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-21 17:25:15                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x190d13     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-21 17:30:31                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c4    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-21 17:30:31                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-21 17:40:49                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c4    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-21 17:40:49                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-21 17:44:45                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c4    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-21 17:44:45                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-21 17:50:39                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c4    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-21 17:50:39                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-21 18:00:41                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c4    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-21 18:00:41                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-21 18:58:17                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c4    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-21 18:58:17                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-21 18:58:23                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c4    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-21 18:58:23                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-21 19:19:55                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c4    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-21 19:19:55                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-21 19:25:40                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c4    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-21 19:25:40                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-21 19:28:32                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c4    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-21 19:28:32                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-21 19:51:46                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c4    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-21 19:51:46                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-21 19:52:02                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x190d13     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-21 19:52:02                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x190d13     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-21 19:52:03                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x190d13     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-21 19:52:03                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x190d13     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-21 20:31:12                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x190d13     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-21 20:31:12                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x190d13     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-21 20:33:19                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x190d13     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-21 20:33:19                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x190d13     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-21 20:33:23                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x190d13     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-21 20:33:23                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x190d13     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-21 20:33:25                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x190d13     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-21 20:33:25                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x190d13     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-21 20:36:47                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c4    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-21 20:36:47                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-21 20:37:21                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c4    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-21 20:37:21                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c4    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-21 20:37:21                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-21 20:37:21                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13568      2014-10-21 20:38:05                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\_0000000000000000.cdf-ms    : 0xb30      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-21 20:38:05                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_ffd0cbfc813cc4f1.cdf-ms    : 0xab8      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-21 20:38:05                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_reference_assemblies_f89c5a39d351281a.cdf-ms    : 0xb8c      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-21 20:38:05                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_reference_assemblies_microsoft_a4ba21b6f468ca9e.cdf-ms    : 0xaac      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-21 20:38:05                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_reference_assemblies_microsoft_framework_61efdd9e2d0263ca.cdf-ms    : 0xb30      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-21 20:38:05                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_reference_assemblies_microsoft_framework_v3.0_44577d982216c291.cdf-ms    : 0xb8c      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-21 20:38:05                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_x86__676bbe2c7241b694.cdf-ms    : 0xae0      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-21 20:38:05                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_x86_reference_assemblies_41115a5fd4566dab.cdf-ms    : 0xb60      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-21 20:38:05                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_x86_reference_assemblies_microsoft_ad470207ad610db1.cdf-ms    : 0xb8c      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-21 20:38:05                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_x86_reference_assemblies_microsoft_framework_b81ea2cfde84fb19.cdf-ms    : 0xae0      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-21 20:38:05                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\program_files_x86_reference_assemblies_microsoft_framework_v3.0_1dfad1527dc1078c.cdf-ms    : 0xb38      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-21 20:38:05                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$.cdf-ms    : 0xafc      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-21 20:38:05                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_3296b36dbe4c7fa3.cdf-ms    : 0xb8c      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-21 20:38:05                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework64_083d4e330e766c5d.cdf-ms    : 0xb38      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-21 20:38:05                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework64_v3.0_d97e7188b51e6116.cdf-ms    : 0xb8c      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-21 20:38:05                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework64_v3.0_wpf_f80a7f17f38f3771.cdf-ms    : 0xae0      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-21 20:38:05                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework64_v3.0_wpf_ru-ru_19ab931b774defe2.cdf-ms    : 0xb60      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-21 20:38:05                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework64_v3.0_windows_communication_foundation_7de82ac14fafbb1e.cdf-ms    : 0xb8c      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-21 20:38:06                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework64_v3.0_windows_communication_foundation_ru-ru_8a6a171c2f279b81.cdf-ms    : 0xac0      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-21 20:38:06                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework_83386eac0379231b.cdf-ms    : 0xb60      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-21 20:38:06                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework_v3.0_wpf_b56a2354fbfa0c31.cdf-ms    : 0xb8c      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-21 20:38:06                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework_v3.0_wpf_ru-ru_3abd41056abbbebc.cdf-ms    : 0xb38      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-21 20:38:06                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework_v3.0_windows_communication_foundation_e07323de19ff1b52.cdf-ms    : 0xae0      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-21 20:38:06                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_syswow64_21ffbdd2a2dd92e0.cdf-ms    : 0xb5c      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-21 20:38:06                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_syswow64_xpsviewer_ru-ru_aeef64bf80f1009a.cdf-ms    : 0xac0      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-21 20:38:06                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_syswow64_ru-ru_b70b8052528b002f.cdf-ms    : 0xb9c      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-21 20:38:06                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_system32_21f9a9c4a2f8b514.cdf-ms    : 0xb5c      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-21 20:38:06                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_system32_ru-ru_5b50e7f65fce4fdb.cdf-ms    : 0xae0      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-21 20:38:06                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\TsWpfWrp.exe    : 0xb9c      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-21 20:38:06                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\ru-RU\PresentationHost.exe.mui    : 0xaac      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-21 20:38:06                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\TsWpfWrp.exe    : 0xab8      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-21 20:38:06                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\ru-RU\PresentationHost.exe.mui    : 0xb0c      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-21 20:38:06                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\XPSViewer\ru-RU\XPSViewer.exe.mui    : 0x91c      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-21 20:38:06                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\Microsoft.Transactions.Bridge.Dtc.dll    : 0xaec      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-21 20:38:06                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceModelEvents.dll    : 0x8a0      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-21 20:38:06                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMConfigInstaller.exe    : 0x544      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-21 20:38:07                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe    : 0xaec      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-21 20:38:07                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\System.Runtime.Serialization.dll    : 0xaac      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-21 20:38:07                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\System.ServiceModel.WasHosting.dll    : 0x8a0      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-21 20:38:07                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceMonikerSupport.dll    : 0x57c      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-21 20:38:07                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMdiagnostics.dll    : 0x544      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-21 20:38:07                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceModelInstallRC.dll    : 0xb8c      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-21 20:38:07                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\System.ServiceModel.dll    : 0x57c      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-21 20:38:07                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v3.0\WPF\ru-RU\PresentationHostDLL.dll.mui    : 0x544      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-21 20:38:07                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\Microsoft.Transactions.Bridge.Dtc.dll    : 0xb8c      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-21 20:38:07                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\ServiceModelEvents.dll    : 0x8a0      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-21 20:38:07                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMConfigInstaller.exe    : 0xaec      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-21 20:38:07                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe    : 0xb8c      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-21 20:38:07                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\System.Runtime.Serialization.dll    : 0x544      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-21 20:38:07                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\System.ServiceModel.WasHosting.dll    : 0x8a0      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-21 20:38:07                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\ServiceMonikerSupport.dll    : 0x5b0      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-21 20:38:07                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\ServiceModelInstallRC.dll    : 0xae0      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-21 20:38:07                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMdiagnostics.dll    : 0xaac      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-21 20:38:07                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\System.ServiceModel.dll    : 0xaec      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-21 20:38:07                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\ru-RU\ServiceModelInstallRC.dll.mui    : 0xab8      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-21 20:38:07                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\ru-RU\ServiceModelEvents.dll.mui    : 0x544      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-21 20:38:07                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\ru-RU\PresentationHostDLL.dll.mui    : 0xae0      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-21 20:38:07                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\System.IdentityModel.dll    : 0x8a0      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-21 20:38:08                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\System.Runtime.Serialization.dll    : 0x7fc      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-21 20:38:08                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\System.ServiceModel.dll    : 0xb8c      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-21 20:38:08                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.0\System.IdentityModel.dll    : 0xab8      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-21 20:38:08                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.0\System.Runtime.Serialization.dll    : 0x544      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-21 20:38:08                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.0\System.ServiceModel.dll    : 0xaec      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-21 20:38:39                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\_0000000000000000.cdf-ms    : 0xadc      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-21 20:38:39                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$.cdf-ms    : 0xba8      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-21 20:38:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_syswow64_21ffbdd2a2dd92e0.cdf-ms    : 0x6a4      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-21 20:38:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_system32_21f9a9c4a2f8b514.cdf-ms    : 0xa9c      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-21 20:38:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\msieftp.dll    : 0x640      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-21 20:38:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\msieftp.dll    : 0x6a4      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-21 20:38:44                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\_0000000000000000.cdf-ms    : 0x810      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-21 20:38:44                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$.cdf-ms    : 0x8f8      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-21 20:38:44                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_system32_21f9a9c4a2f8b514.cdf-ms    : 0xb0c      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-21 20:38:45                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_system32_oobe_06655c95df2fa06f.cdf-ms    : 0xb90      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-21 20:38:45                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\oobe\msoobeplugins.dll    : 0x85c      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-21 20:38:55                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\_0000000000000000.cdf-ms    : 0xa00      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-21 20:38:55                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$.cdf-ms    : 0xa8c      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-21 20:38:55                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_syswow64_21ffbdd2a2dd92e0.cdf-ms    : 0xa84      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-21 20:38:55                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_syswow64_en-us_9e576ab077991fe8.cdf-ms    : 0xa74      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-21 20:38:55                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_syswow64_ru-ru_b70b8052528b002f.cdf-ms    : 0x734      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-21 20:38:55                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_system32_21f9a9c4a2f8b514.cdf-ms    : 0x90c      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-21 20:38:55                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_system32_en-us_429cd25484dc6f94.cdf-ms    : 0x900      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-21 20:38:55                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_system32_ru-ru_5b50e7f65fce4fdb.cdf-ms    : 0xa84      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-21 20:38:55                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\ru-RU\tzres.dll.mui    : 0x90c      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-21 20:38:55                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\en-US\tzres.dll.mui    : 0x900      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-21 20:39:03                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\_0000000000000000.cdf-ms    : 0xa24      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-21 20:39:03                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$.cdf-ms    : 0xa8c      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-21 20:39:03                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_3296b36dbe4c7fa3.cdf-ms    : 0xbe8      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-21 20:39:03                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework64_083d4e330e766c5d.cdf-ms    : 0xa24      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-21 20:39:03                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework64_v2.0.50727_443de60f3f6e0828.cdf-ms    : 0x874      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-21 20:39:03                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework_83386eac0379231b.cdf-ms    : 0xbe8      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-21 20:39:03                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_microsoft.net_framework_v2.0.50727_e9368840261e60ee.cdf-ms    : 0x9b8      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-21 20:39:03                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework\v2.0.50727\System.Runtime.Remoting.dll    : 0x994      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-21 20:39:03                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\Microsoft.NET\Framework64\v2.0.50727\System.Runtime.Remoting.dll    : 0x9a8      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-21 20:39:07                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\_0000000000000000.cdf-ms    : 0x888      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-21 20:39:07                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$.cdf-ms    : 0xa70      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-21 20:39:07                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_ehome_40103e2da1d121de.cdf-ms    : 0x7d4      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-21 20:39:07                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\ehome\mcplayer.dll    : 0xb50      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     : S:AI     :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2014-10-21 20:39:11                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\_0000000000000000.cdf-ms    : 0x860      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-21 20:39:11                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$.cdf-ms    : 0x87c      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-21 20:39:11                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_syswow64_21ffbdd2a2dd92e0.cdf-ms    : 0xaec      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   13568      2014-10-21 20:39:11                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\WinSxS\FileMaps\$$_system32_21f9a9c4a2f8b514.cdf-ms    : 0x89c      :    : 0xc74    : C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16384_none_622908ad510eb05b\TiWorker.exe     :     :      :  S:ARAI(AU;SAFA;0x1f0116;;;WD)  
      Audit Success   12544      2014-10-21 20:44:04                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c4    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-21 20:44:04                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-21 20:44:09                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c4    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-21 20:44:09                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-21 20:46:12                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c4    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-21 20:46:12                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c4    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-21 20:46:12                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-21 20:46:12                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-21 20:46:22                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c4    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-21 20:46:22                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-21 20:46:29                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c4    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-21 20:46:29                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-21 20:51:53                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c4    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-21 20:51:53                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-21 21:04:04                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c4    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-21 21:04:04                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2014-10-21 21:13:34                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   5     :  %%1833     :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c4    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2014-10-21 21:13:34                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :       :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-21 21:43:17                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x190d13     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-21 21:43:17                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x190d13     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-21 21:43:17                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x190d13     :      : ACER      :       : acer  
      Audit Success   13824      2014-10-21 21:43:17                                  Microsoft-Windows-Security-Auditing  4797:        .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x190d13     :      : ACER      :       : acer  
      Audit Success   12544      2014-10-21 22:21:25                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  antbin1995@mail.ru     :  MicrosoftAccount   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x27c    :  C:\Windows\System32\winlogon.exe      :    : 127.0.0.1   :   0      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-21 22:21:25                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x2e0ec34   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x27c    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-21 22:21:25                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x2e0ecb9   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x27c    :  C:\Windows\System32\winlogon.exe      :     : ACER     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-21 22:21:25                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  antbin1995@mail.ru     :  MicrosoftAccount   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x2d4    :  C:\Windows\System32\lsass.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2014-10-21 22:21:25                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x2e0ec9f   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2d4    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :  Negotiat     : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2014-10-21 22:21:25                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7     :   7     :  %%1833     :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x2e0ed80   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2d4    :  C:\Windows\System32\lsass.exe      :     : ACER     : -    :  -       :    :  Negotiat     : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .     " "            .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12545      2014-10-21 22:21:25                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x2e0ecb9     :   7          .           " ".      ,       .  
      Audit Success   12545      2014-10-21 22:21:25                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x2e0ed80     :   7          .           " ".      ,       .  
      Audit Success   12545      2014-10-21 22:21:25                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x2e0ec9f     :   7          .           " ".      ,       .  
      Audit Success   12545      2014-10-21 22:21:25                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  ACER    :  0x2e0ec34     :   7          .           " ".      ,       .  
      Audit Success   12548      2014-10-21 22:21:25                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x2e0ec34    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2014-10-21 22:21:25                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :  antbin1995@mail.ru     :  MicrosoftAccount    :  0x2e0ec9f    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2014-10-21 22:21:25                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :        : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   13824      2014-10-21 22:21:25                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  ACER$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-1438717787-2843651206-2158049019-1001     :        :  acer     :      SAM: -    :        : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
                            2014-10-17 21:14:36                                  volmgr                          46:     .  
                            2014-10-17 21:15:26                                  Service Control Manager         7023: 
                            2014-10-17 21:15:27                                  Service Control Manager         7023: 
                          2014-10-17 21:15:44                                  k57nd60a                        4: 
                          2014-10-17 21:17:09                                  k57nd60a                        4: 
                          2014-10-17 21:18:09  LOCAL SERVICE                   Microsoft-Windows-Time-Service  134: 
                          2014-10-17 21:18:09  LOCAL SERVICE                   Microsoft-Windows-Time-Service  134: 
                          2014-10-17 21:18:11  LOCAL SERVICE                   Microsoft-Windows-Time-Service  134: 
                          2014-10-17 21:23:19                                  k57nd60a                        4: 
                            2014-10-17 21:32:32                                  Service Control Manager         7030: 
                          2014-10-17 21:43:01                                  k57nd60a                        4: 
                          2014-10-17 21:47:15                                  k57nd60a                        4: 
                            2014-10-17 21:47:44                                  Service Control Manager         7023: 
                          2014-10-17 21:58:02                                  k57nd60a                        4: 
                          2014-10-17 21:58:12                           Microsoft-Windows-Wininit       11: 
                          2014-10-17 22:35:26                                  Microsoft-Windows-Kernel-Tm     1: The Transaction (UOW={1CCDD267-5627-11E4-BE75-6416F0A1C295}, Description='') was unable to be committed, and instead rolled back; this was due to an error message returned by CLFS while attempting to write a Prepare or Commit record for the Transaction.  The CLFS error returned was: 0xc0190052.  
                  1014       2014-10-17 22:35:27  NETWORK SERVICE                 Microsoft-Windows-DNS-Client    1014:     6to4.ipv6.microsoft.com.        DNS.  
                          2014-10-17 22:35:51                                  k57nd60a                        4: 
                          2014-10-17 22:36:01                           Microsoft-Windows-Wininit       11: 
                          2014-10-17 22:59:21                                  k57nd60a                        4: 
                          2014-10-17 22:59:32                           Microsoft-Windows-Wininit       11: 
                  7          2014-10-18 13:31:36                           Microsoft-Windows-Kernel-Processor-Power  37: 
                  7          2014-10-18 13:31:36                           Microsoft-Windows-Kernel-Processor-Power  37: 
                  7          2014-10-18 13:31:36                           Microsoft-Windows-Kernel-Processor-Power  37: 
                  7          2014-10-18 13:31:36                           Microsoft-Windows-Kernel-Processor-Power  37: 
                          2014-10-18 13:38:11                                  disk                            153:  -     1347c0   1  .  
                          2014-10-18 13:38:11                                  disk                            153:  -     134940   1  .  
                          2014-10-18 13:38:11                                  disk                            153:  -     1349c0   1  .  
                          2014-10-18 13:38:11                                  disk                            153:  -     134a40   1  .  
                          2014-10-18 13:38:11                                  disk                            153:  -     134ac0   1  .  
                          2014-10-18 13:38:11                                  disk                            153:  -     134b40   1  .  
                          2014-10-18 13:38:11                                  disk                            153:  -     1348c0   1  .  
                          2014-10-18 13:38:11                                  disk                            153:  -     134840   1  .  
                          2014-10-18 13:38:14                                  disk                            153:  -     135d40   1  .  
                          2014-10-18 13:38:14                                  disk                            153:  -     135dc0   1  .  
                          2014-10-18 13:38:14                                  disk                            153:  -     135f40   1  .  
                          2014-10-18 13:38:14                                  disk                            153:  -     135ec0   1  .  
                          2014-10-18 13:38:14                                  disk                            153:  -     135e40   1  .  
                          2014-10-18 13:38:14                                  disk                            153:  -     135cc0   1  .  
                          2014-10-18 13:38:14                                  disk                            153:  -     135bc0   1  .  
                          2014-10-18 13:38:14                                  disk                            153:  -     135c40   1  .  
                            2014-10-18 17:34:57                                  cdrom                           7:     \Device\CdRom0.  
                            2014-10-18 17:35:01                                  cdrom                           7:     \Device\CdRom0.  
                            2014-10-18 17:35:08                                  cdrom                           7:     \Device\CdRom0.  
                  1014       2014-10-18 17:42:51  NETWORK SERVICE                 Microsoft-Windows-DNS-Client    1014:     homewifi.beltelecom.by        DNS.  
                            2014-10-18 17:44:18                                  cdrom                           7:     \Device\CdRom0.  
                          2014-10-19 12:00:51                                  k57nd60a                        4: 
                          2014-10-19 12:01:13                           Microsoft-Windows-Wininit       11: 
                  1014       2014-10-19 12:04:11  NETWORK SERVICE                 Microsoft-Windows-DNS-Client    1014:     44.165.228.91.in-addr.arpa.        DNS.  
                  7          2014-10-19 12:26:40                           Microsoft-Windows-Kernel-Processor-Power  37: 
                  7          2014-10-19 12:26:40                           Microsoft-Windows-Kernel-Processor-Power  37: 
                  7          2014-10-19 12:26:40                           Microsoft-Windows-Kernel-Processor-Power  37: 
                  7          2014-10-19 12:26:40                           Microsoft-Windows-Kernel-Processor-Power  37: 
                  1014       2014-10-19 15:52:34  NETWORK SERVICE                 Microsoft-Windows-DNS-Client    1014:     teredo.ipv6.microsoft.com.        DNS.  
                  1014       2014-10-19 22:39:03  NETWORK SERVICE                 Microsoft-Windows-DNS-Client    1014:     g.bing.net        DNS.  
                          2014-10-19 22:56:10                                  k57nd60a                        4: 
                            2014-10-19 22:56:23                                  EventLog                        6008:      22:22:28  ?19.?10.?2014  .  
                            2014-10-19 22:56:23                                  BugCheck                        
                          2014-10-19 22:56:23                           Microsoft-Windows-Wininit       11: 
                            2014-10-19 23:31:52                                  Service Control Manager         7030: 
                            2014-10-20 07:24:25                           Microsoft-Windows-Kernel-General  6:  .  
                          2014-10-20 07:24:27                                  k57nd60a                        4: 
                            2014-10-20 07:24:48                                  volmgr                          46:     .  
                          2014-10-20 07:24:56                                  k57nd60a                        4: 
                            2014-10-20 07:25:03                                  EventLog                        6008:      2:56:23  ?20.?10.?2014  .  
                          2014-10-20 07:25:06                           Microsoft-Windows-Wininit       11: 
                            2014-10-20 07:29:07                                  Service Control Manager         7034: 
                          2014-10-20 07:30:25                                  k57nd60a                        4: 
                          2014-10-20 07:30:56                           Microsoft-Windows-Wininit       11: 
                  212        2014-10-20 17:51:44                           Microsoft-Windows-Kernel-PnP    219: 
                  1014       2014-10-20 19:41:38  NETWORK SERVICE                 Microsoft-Windows-DNS-Client    1014:     i4.c.eset.com        DNS.  
                  7          2014-10-20 20:04:47                           Microsoft-Windows-Kernel-Processor-Power  37: 
                  7          2014-10-20 20:04:47                           Microsoft-Windows-Kernel-Processor-Power  37: 
                  7          2014-10-20 20:04:47                           Microsoft-Windows-Kernel-Processor-Power  37: 
                  7          2014-10-20 20:04:47                           Microsoft-Windows-Kernel-Processor-Power  37: 
                          2014-10-20 21:21:40                                  k57nd60a                        4: 
                          2014-10-20 21:22:10                           Microsoft-Windows-Wininit       11: 
                            2014-10-20 21:24:41                                  Service Control Manager         7034: 
                          2014-10-21 08:40:43                                  k57nd60a                        4: 
                            2014-10-21 08:40:52                                  EventLog                        6008:      4:03:03  ?21.?10.?2014  .  
                          2014-10-21 08:40:54                           Microsoft-Windows-Wininit       11: 
                            2014-10-21 13:08:28                 DCOM                            
                          2014-10-21 16:55:04                                  k57nd60a                        4: 
                            2014-10-21 16:55:17                                  EventLog                        6008:      16:21:11  ?21.?10.?2014  .  
                          2014-10-21 16:55:17                           Microsoft-Windows-Wininit       11: 
                            2014-10-21 16:55:18                                  BugCheck                        
                  1014       2014-10-21 19:03:33  NETWORK SERVICE                 Microsoft-Windows-DNS-Client    1014:     a.c.eset.com        DNS.  


--------[   ]-------------------------------------------------------------------------------------------------------

      :
      Borland Database Engine                           -
      Borland InterBase Client                          -
      Easysoft ODBC-InterBase 6                         -
      Easysoft ODBC-InterBase 7                         -
      Firebird Client                                   -
      Jet Engine                                        4.00.9765.0
      MDAC                                              6.2.9200.16384 (win8_rtm.120725-1247)
      ODBC                                              6.2.9200.16384 (win8_rtm.120725-1247)
      MySQL Connector/ODBC                              -
      Oracle Client                                     -
      PsqlODBC                                          -
      Sybase ASE ODBC                                   -

     :
      Borland InterBase Server                          -
      Firebird Server                                   -
      Microsoft SQL Server                              -
      Microsoft SQL Server Compact Edition              -
      Microsoft SQL Server Express Edition              -
      MySQL Server                                      -
      Oracle Server                                     -
      PostgreSQL Server                                 -
      Sybase SQL Server                                 -


--------[  ODBC ]-----------------------------------------------------------------------------------------------

    Driver da Microsoft para arquivos texto (*.txt; *.csv)      odbcjt32.dll        6.2.9200.16384 (win8_rtm.120725-1247)  *.,*.asc,*.csv,*.tab,*.txt,*.csv
    Driver do Microsoft Access (*.mdb)                          odbcjt32.dll        6.2.9200.16384 (win8_rtm.120725-1247)  *.mdb
    Driver do Microsoft dBase (*.dbf)                           odbcjt32.dll        6.2.9200.16384 (win8_rtm.120725-1247)  *.dbf,*.ndx,*.mdx
    Driver do Microsoft Excel(*.xls)                            odbcjt32.dll        6.2.9200.16384 (win8_rtm.120725-1247)  *.xls
    Driver do Microsoft Paradox (*.db )                         odbcjt32.dll        6.2.9200.16384 (win8_rtm.120725-1247)  *.db
    Microsoft Access Driver (*.mdb)                             odbcjt32.dll        6.2.9200.16384 (win8_rtm.120725-1247)  *.mdb
    Microsoft Access Driver (*.mdb, *.accdb)                    aceodbc.dll         15.0.4420.1017        *.mdb,*.accdb
    Microsoft Access Text Driver (*.txt, *.csv)                 aceodbc.dll         15.0.4420.1017        *.txt, *.csv
    Microsoft Access-Treiber (*.mdb)                            odbcjt32.dll        6.2.9200.16384 (win8_rtm.120725-1247)  *.mdb
    Microsoft dBase Driver (*.dbf)                              odbcjt32.dll        6.2.9200.16384 (win8_rtm.120725-1247)  *.dbf,*.ndx,*.mdx
    Microsoft dBase-Treiber (*.dbf)                             odbcjt32.dll        6.2.9200.16384 (win8_rtm.120725-1247)  *.dbf,*.ndx,*.mdx
    Microsoft Excel Driver (*.xls)                              odbcjt32.dll        6.2.9200.16384 (win8_rtm.120725-1247)  *.xls
    Microsoft Excel Driver (*.xls, *.xlsx, *.xlsm, *.xlsb)      aceodbc.dll         15.0.4420.1017        *.xls,*.xlsx, *.xlsb
    Microsoft Excel-Treiber (*.xls)                             odbcjt32.dll        6.2.9200.16384 (win8_rtm.120725-1247)  *.xls
    Microsoft ODBC for Oracle                                   msorcl32.dll        6.2.9200.16384 (win8_rtm.120725-1247)  
    Microsoft Paradox Driver (*.db )                            odbcjt32.dll        6.2.9200.16384 (win8_rtm.120725-1247)  *.db
    Microsoft Paradox-Treiber (*.db )                           odbcjt32.dll        6.2.9200.16384 (win8_rtm.120725-1247)  *.db
    Microsoft Text Driver (*.txt; *.csv)                        odbcjt32.dll        6.2.9200.16384 (win8_rtm.120725-1247)  *.,*.asc,*.csv,*.tab,*.txt,*.csv
    Microsoft Text-Treiber (*.txt; *.csv)                       odbcjt32.dll        6.2.9200.16384 (win8_rtm.120725-1247)  *.,*.asc,*.csv,*.tab,*.txt,*.csv
    SQL Server                                                  sqlsrv32.dll        6.2.9200.16384 (win8_rtm.120725-1247)  


--------[   ODBC ]---------------------------------------------------------------------------------------

    Excel Files                   Microsoft Excel Driver (*.xls, *.xlsx, *.xlsm, *.xlsb)        aceodbc.dll
    MS Access Database            Microsoft Access Driver (*.mdb, *.accdb)                      aceodbc.dll


--------[    ]--------------------------------------------------------------------------------------------

    16x Xeon E5-2670 HT     2600   Supermicro X9DR6-F                                                      C600                  Quad DDR3-1333        9-9-9-24                77243 /
    32x Opteron 6274        2200   Supermicro H8DGI-F                                                      SR5690                Dual DDR3-1600R       11-11-11-28 CR1            67619 /
    6x Core i7-4930K HT     3400   Gigabyte GA-X79-UD3                                                     X79                   Quad DDR3-1866        9-10-9-27 CR2            52396 /
    6x Core i7-3960X Extreme HT    3300   Intel DX79SI                                                            X79                   Quad DDR3-1600        9-9-9-24 CR2            45162 /
    8x Xeon X5550 HT        2666   Supermicro X8DTN+                                                       i5520                 Triple DDR3-1333      9-9-9-24 CR1            37831 /
    8x FX-8150              3600   Asus M5A97                                                              AMD970                Dual DDR3-1866        9-10-9-27 CR2            26428 /
    8x FX-8350              4000   Asus M5A99X Evo R2.0                                                    AMD990X               Dual DDR3-1866        9-10-9-27 CR2            26020 /
    4x Core i7-3770K HT     3500   MSI Z77A-GD55                                                           Z77 Int.              Dual DDR3-1600        9-9-9-24 CR2            23559 /
    4x Core i7-4770 HT      3400   Intel DZ87KLT-75K                                                       Z87 Int.              Dual DDR3-1600        9-9-9-27 CR2            23218 /
    4x Xeon E3-1245 v3 HT    3400   Supermicro X10SAE                                                       C226 Int.             Dual DDR3-1600        11-11-11-28 CR1            23157 /
    8x Atom C2750           2400   Supermicro A1SAi-2750F                                                  Avoton                Dual DDR3-1600        11-11-11-28 CR1            21726 /
    4x A10-5800K            3800   Asus F2A55-M                                                            A55 Int.              Dual DDR3-1866        9-10-9-27 CR2            21404 /
    4x A10-6800K            4100   Gigabyte GA-F2A85X-UP4                                                  A85X Int.             Dual DDR3-2133        9-11-10-27 CR2            21284 /
    4x Core i7-965 Extreme HT    3200   Asus P6T Deluxe                                                         X58                   Triple DDR3-1333      9-9-9-24 CR1            21210 /
    6x Core i7-990X Extreme HT    3466   Intel DX58SO2                                                           X58                   Triple DDR3-1333      9-9-9-24 CR1            21110 /
    4x A10-7850K            3700   Gigabyte GA-F2A88XM-D3H                                                 A88X Int.             Dual DDR3-2133        9-11-10-31 CR2            21006 /
    12x Opteron 2431        2400   Supermicro H8DI3+-F                                                     SR5690                Unganged Dual DDR2-800R  6-6-6-18 CR1            19763 /
    4x Core i7-2600 HT      3400   Asus P8P67                                                              P67                   Dual DDR3-1333        9-9-9-24 CR1            19552 /
    2x Core i5-2450M HT     2900   Acer Aspire 5750G                                                       HM65 Int.             Dual DDR3-1333        9-9-9-24 CR1            18897 /
    8x Opteron 2378         2400   Tyan Thunder n3600R                                                     nForcePro-3600        Unganged Dual DDR2-800R  6-6-6-18 CR1            18834 /
    4x Xeon X3430           2400   Supermicro X8SIL-F                                                      i3420                 Dual DDR3-1333        9-9-9-24 CR1            17639 /
    4x A8-3850              2900   Gigabyte GA-A75M-UD2H                                                   A75 Int.              Dual DDR3-1333        9-9-9-24 CR1            16638 /
    6x Phenom II X6 Black 1100T    3300   Gigabyte GA-890GPA-UD3H v2                                              AMD890GX Int.         Unganged Dual DDR3-1333  9-9-9-24 CR2            14730 /
    Celeron J1900           2000   Gigabyte GA-J1900N-D3V                                                  BayTrailD Int.        Dual DDR3-1333        9-9-9-24 CR1            13453 /
    8x Opteron 2344 HE      1700   Supermicro H8DME-2                                                      nForcePro-3600        Unganged Dual DDR2-667R  5-5-5-15 CR1            13118 /
    4x Opteron 2210 HE      1800   Tyan Thunder h2000M                                                     BCM5785               Dual DDR2-600R        5-5-5-15 CR1            11534 /
    2x Core i5-650 HT       3200   Supermicro C7SIM-Q                                                      Q57 Int.              Dual DDR3-1333        9-9-9-24 CR1            11178 /
    4x Phenom II X4 Black 940    3000   Asus M3N78-EM                                                           GeForce8300 Int.      Ganged Dual DDR2-800  5-5-5-18 CR2            10112 /
    2x Athlon64 X2 Black 6400+    3200   MSI K9N SLI Platinum                                                    nForce570SLI          Dual DDR2-800         4-4-4-11 CR1             9714 /
    4x Core 2 Extreme QX9650    3000   Gigabyte GA-EP35C-DS3R                                                  P35                   Dual DDR3-1066        8-8-8-20 CR2             9037 /
    4x Athlon 5350          2050   ASRock AM1B-ITX                                                         Yangtze Int.          DDR3-1600 SDRAM       11-11-11-28 CR2             8716 /
    4x Phenom X4 9500       2200   Asus M3A                                                                AMD770                Ganged Dual DDR2-800  5-5-5-18 CR2             8709 /
    2x Opteron 240          1400   MSI K8D Master3-133 FS                                                  AMD8100               Dual DDR400R          3-4-4-8 CR1              8366 /
    2x Pentium EE 955 HT    3466   Intel D955XBK                                                           i955X                 Dual DDR2-667         4-4-4-11                 8096 /
    P4EE HT                 3733   Intel SE7230NH1LX                                                       iE7230                Dual DDR2-667         5-5-5-15                 7965 /
    8x Xeon E5462           2800   Intel S5400SF                                                           i5400                 Quad DDR2-640FB       5-5-5-15                 7646 /
    2x Core 2 Extreme X6800    2933   Abit AB9                                                                P965                  Dual DDR2-800         5-5-5-18 CR2             7627 /
    2x Athlon64 X2 4000+    2100   ASRock ALiveNF7G-HDready                                                nForce7050-630a Int.  Dual DDR2-700         5-5-5-18 CR2             7616 /
    2x Core 2 Duo P8400     2266   MSI MegaBook PR201                                                      GM45 Int.             Dual DDR2-667         5-5-5-15                 6989 /
    4x Core 2 Extreme QX6700    2666   Intel D975XBX2                                                          i975X                 Dual DDR2-667         5-5-5-15                 6593 /
    Nano X2 L4350           1600   VIA EPIA-M900                                                           VX900H Int.           DDR3-1066 SDRAM       7-7-7-20 CR2             6414 /
    2x Pentium D 820        2800   Abit Fatal1ty F-I90HD                                                   RS600 Int.            Dual DDR2-800         5-5-5-18 CR2             6206 /
    2x Atom D2500           1866   Intel D2500CC                                                           NM10 Int.             DDR3-1066 SDRAM       7-7-7-20 CR2             6104 /
    2x E-350                1600   ASRock E350M1                                                           A50M Int.             DDR3-1066 SDRAM       8-8-8-20 CR1             6082 /
    Athlon64 3200+          2000   ASRock 939S56-M                                                         SiS756                Dual DDR400           2.5-3-3-8 CR2             6009 /
    Celeron 420             1600   Intel DQ965GF                                                           Q965 Int.             Dual DDR2-667         5-5-5-15                 5353 /
    2x Xeon HT              3400   Intel SE7320SP2                                                         iE7320                Dual DDR333R          2.5-3-3-7                4539 /
    Celeron D 326           2533   ASRock 775Twins-HDTV                                                    RC410 Ext.            DDR2-533 SDRAM        4-4-4-11                 3967 /
    Opteron 248             2200   MSI K8T Master1-FAR                                                     K8T800                Dual DDR266R          2-3-3-6 CR1              3907 /
    8x Xeon L5320           1866   Intel S5000VCL                                                          i5000V                Dual DDR2-533FB       4-4-4-12                 3672 /
    Atom 230 HT             1600   Intel D945GCLF                                                          i945GC Int.           DDR2-533 SDRAM        4-4-4-12                 3593 /
    Nano L2200              1600   VIA VB8001                                                              CN896 Int.            DDR2-667 SDRAM        5-5-5-15 CR2             3362 /
    4x Xeon 5140            2333   Intel S5000VSA                                                          i5000V                Dual DDR2-667FB       5-5-5-15                 3323 /
    Sempron 2600+           1600   ASRock K8NF4G-SATA2                                                     GeForce6100 Int.      DDR400 SDRAM          2.5-3-3-8 CR2             2919 /


--------[    ]---------------------------------------------------------------------------------------------

    16x Xeon E5-2670 HT     2600   Supermicro X9DR6-F                                                      C600                  Quad DDR3-1333        9-9-9-24                77060 /
    32x Opteron 6274        2200   Supermicro H8DGI-F                                                      SR5690                Dual DDR3-1600R       11-11-11-28 CR1            57844 /
    6x Core i7-4930K HT     3400   Gigabyte GA-X79-UD3                                                     X79                   Quad DDR3-1866        9-10-9-27 CR2            52243 /
    6x Core i7-3960X Extreme HT    3300   Intel DX79SI                                                            X79                   Quad DDR3-1600        9-9-9-24 CR2            45588 /
    8x Xeon X5550 HT        2666   Supermicro X8DTN+                                                       i5520                 Triple DDR3-1333      9-9-9-24 CR1            27392 /
    4x Core i7-3770K HT     3500   MSI Z77A-GD55                                                           Z77 Int.              Dual DDR3-1600        9-9-9-24 CR2            24093 /
    4x Core i7-4770 HT      3400   Intel DZ87KLT-75K                                                       Z87 Int.              Dual DDR3-1600        9-9-9-27 CR2            23672 /
    4x Xeon E3-1245 v3 HT    3400   Supermicro X10SAE                                                       C226 Int.             Dual DDR3-1600        11-11-11-28 CR1            23649 /
    4x Core i7-2600 HT      3400   Asus P8P67                                                              P67                   Dual DDR3-1333        9-9-9-24 CR1            19528 /
    2x Core i5-2450M HT     2900   Acer Aspire 5750G                                                       HM65 Int.             Dual DDR3-1333        9-9-9-24 CR1            18575 /
    8x FX-8150              3600   Asus M5A97                                                              AMD970                Dual DDR3-1866        9-10-9-27 CR2            18063 /
    8x FX-8350              4000   Asus M5A99X Evo R2.0                                                    AMD990X               Dual DDR3-1866        9-10-9-27 CR2            17607 /
    4x Core i7-965 Extreme HT    3200   Asus P6T Deluxe                                                         X58                   Triple DDR3-1333      9-9-9-24 CR1            17088 /
    6x Core i7-990X Extreme HT    3466   Intel DX58SO2                                                           X58                   Triple DDR3-1333      9-9-9-24 CR1            16673 /
    4x A8-3850              2900   Gigabyte GA-A75M-UD2H                                                   A75 Int.              Dual DDR3-1333        9-9-9-24 CR1            14866 /
    12x Opteron 2431        2400   Supermicro H8DI3+-F                                                     SR5690                Unganged Dual DDR2-800R  6-6-6-18 CR1            14492 /
    4x Xeon X3430           2400   Supermicro X8SIL-F                                                      i3420                 Dual DDR3-1333        9-9-9-24 CR1            13215 /
    8x Opteron 2378         2400   Tyan Thunder n3600R                                                     nForcePro-3600        Unganged Dual DDR2-800R  6-6-6-18 CR1            12776 /
    8x Atom C2750           2400   Supermicro A1SAi-2750F                                                  Avoton                Dual DDR3-1600        11-11-11-28 CR1            12328 /
    4x A10-7850K            3700   Gigabyte GA-F2A88XM-D3H                                                 A88X Int.             Dual DDR3-2133        9-11-10-31 CR2            11995 /
    4x A10-6800K            4100   Gigabyte GA-F2A85X-UP4                                                  A85X Int.             Dual DDR3-2133        9-11-10-27 CR2            10777 /
    Celeron J1900           2000   Gigabyte GA-J1900N-D3V                                                  BayTrailD Int.        Dual DDR3-1333        9-9-9-24 CR1            10154 /
    4x A10-5800K            3800   Asus F2A55-M                                                            A55 Int.              Dual DDR3-1866        9-10-9-27 CR2             9970 /
    2x Core i5-650 HT       3200   Supermicro C7SIM-Q                                                      Q57 Int.              Dual DDR3-1333        9-9-9-24 CR1             9937 /
    2x Athlon64 X2 Black 6400+    3200   MSI K9N SLI Platinum                                                    nForce570SLI          Dual DDR2-800         4-4-4-11 CR1             8869 /
    8x Opteron 2344 HE      1700   Supermicro H8DME-2                                                      nForcePro-3600        Unganged Dual DDR2-667R  5-5-5-15 CR1             8662 /
    Nano X2 L4350           1600   VIA EPIA-M900                                                           VX900H Int.           DDR3-1066 SDRAM       7-7-7-20 CR2             7913 /
    4x Opteron 2210 HE      1800   Tyan Thunder h2000M                                                     BCM5785               Dual DDR2-600R        5-5-5-15 CR1             7779 /
    4x Phenom II X4 Black 940    3000   Asus M3N78-EM                                                           GeForce8300 Int.      Ganged Dual DDR2-800  5-5-5-18 CR2             7115 /
    6x Phenom II X6 Black 1100T    3300   Gigabyte GA-890GPA-UD3H v2                                              AMD890GX Int.         Unganged Dual DDR3-1333  9-9-9-24 CR2             7091 /
    4x Core 2 Extreme QX9650    3000   Gigabyte GA-EP35C-DS3R                                                  P35                   Dual DDR3-1066        8-8-8-20 CR2             7083 /
    8x Xeon E5462           2800   Intel S5400SF                                                           i5400                 Quad DDR2-640FB       5-5-5-15                 6733 /
    2x Athlon64 X2 4000+    2100   ASRock ALiveNF7G-HDready                                                nForce7050-630a Int.  Dual DDR2-700         5-5-5-18 CR2             5762 /
    2x Pentium EE 955 HT    3466   Intel D955XBK                                                           i955X                 Dual DDR2-667         4-4-4-11                 5654 /
    P4EE HT                 3733   Intel SE7230NH1LX                                                       iE7230                Dual DDR2-667         5-5-5-15                 5639 /
    4x Phenom X4 9500       2200   Asus M3A                                                                AMD770                Ganged Dual DDR2-800  5-5-5-18 CR2             5504 /
    2x Core 2 Duo P8400     2266   MSI MegaBook PR201                                                      GM45 Int.             Dual DDR2-667         5-5-5-15                 5461 /
    2x Core 2 Extreme X6800    2933   Abit AB9                                                                P965                  Dual DDR2-800         5-5-5-18 CR2             4869 /
    4x Core 2 Extreme QX6700    2666   Intel D975XBX2                                                          i975X                 Dual DDR2-667         5-5-5-15                 4856 /
    2x Atom D2500           1866   Intel D2500CC                                                           NM10 Int.             DDR3-1066 SDRAM       7-7-7-20 CR2             4712 /
    4x Athlon 5350          2050   ASRock AM1B-ITX                                                         Yangtze Int.          DDR3-1600 SDRAM       11-11-11-28 CR2             4694 /
    2x Pentium D 820        2800   Abit Fatal1ty F-I90HD                                                   RS600 Int.            Dual DDR2-800         5-5-5-18 CR2             4260 /
    2x Xeon HT              3400   Intel SE7320SP2                                                         iE7320                Dual DDR333R          2.5-3-3-7                4220 /
    2x E-350                1600   ASRock E350M1                                                           A50M Int.             DDR3-1066 SDRAM       8-8-8-20 CR1             4117 /
    Athlon64 3200+          2000   ASRock 939S56-M                                                         SiS756                Dual DDR400           2.5-3-3-8 CR2             4093 /
    2x Opteron 240          1400   MSI K8D Master3-133 FS                                                  AMD8100               Dual DDR400R          3-4-4-8 CR1              4029 /
    Opteron 248             2200   MSI K8T Master1-FAR                                                     K8T800                Dual DDR266R          2-3-3-6 CR1              3800 /
    Celeron 420             1600   Intel DQ965GF                                                           Q965 Int.             Dual DDR2-667         5-5-5-15                 3568 /
    Nano L2200              1600   VIA VB8001                                                              CN896 Int.            DDR2-667 SDRAM        5-5-5-15 CR2             3159 /
    Atom 230 HT             1600   Intel D945GCLF                                                          i945GC Int.           DDR2-533 SDRAM        4-4-4-12                 2831 /
    Celeron D 326           2533   ASRock 775Twins-HDTV                                                    RC410 Ext.            DDR2-533 SDRAM        4-4-4-11                 2796 /
    4x Xeon 5140            2333   Intel S5000VSA                                                          i5000V                Dual DDR2-667FB       5-5-5-15                 2474 /
    8x Xeon L5320           1866   Intel S5000VCL                                                          i5000V                Dual DDR2-533FB       4-4-4-12                 2348 /
    Sempron 2600+           1600   ASRock K8NF4G-SATA2                                                     GeForce6100 Int.      DDR400 SDRAM          2.5-3-3-8 CR2             2337 /


--------[    ]----------------------------------------------------------------------------------------

    32x Opteron 6274        2200   Supermicro H8DGI-F                                                      SR5690                Dual DDR3-1600R       11-11-11-28 CR1            69009 /
    16x Xeon E5-2670 HT     2600   Supermicro X9DR6-F                                                      C600                  Quad DDR3-1333        9-9-9-24                67052 /
    6x Core i7-4930K HT     3400   Gigabyte GA-X79-UD3                                                     X79                   Quad DDR3-1866        9-10-9-27 CR2            50043 /
    6x Core i7-3960X Extreme HT    3300   Intel DX79SI                                                            X79                   Quad DDR3-1600        9-9-9-24 CR2            42150 /
    8x Xeon X5550 HT        2666   Supermicro X8DTN+                                                       i5520                 Triple DDR3-1333      9-9-9-24 CR1            34882 /
    6x Core i7-990X Extreme HT    3466   Intel DX58SO2                                                           X58                   Triple DDR3-1333      9-9-9-24 CR1            24509 /
    8x FX-8150              3600   Asus M5A97                                                              AMD970                Dual DDR3-1866        9-10-9-27 CR2            23799 /
    8x FX-8350              4000   Asus M5A99X Evo R2.0                                                    AMD990X               Dual DDR3-1866        9-10-9-27 CR2            22896 /
    4x Core i7-3770K HT     3500   MSI Z77A-GD55                                                           Z77 Int.              Dual DDR3-1600        9-9-9-24 CR2            22772 /
    4x Xeon E3-1245 v3 HT    3400   Supermicro X10SAE                                                       C226 Int.             Dual DDR3-1600        11-11-11-28 CR1            21695 /
    4x Core i7-965 Extreme HT    3200   Asus P6T Deluxe                                                         X58                   Triple DDR3-1333      9-9-9-24 CR1            21530 /
    4x Core i7-4770 HT      3400   Intel DZ87KLT-75K                                                       Z87 Int.              Dual DDR3-1600        9-9-9-27 CR2            21283 /
    4x A10-7850K            3700   Gigabyte GA-F2A88XM-D3H                                                 A88X Int.             Dual DDR3-2133        9-11-10-31 CR2            20802 /
    4x A10-5800K            3800   Asus F2A55-M                                                            A55 Int.              Dual DDR3-1866        9-10-9-27 CR2            17897 /
    4x Core i7-2600 HT      3400   Asus P8P67                                                              P67                   Dual DDR3-1333        9-9-9-24 CR1            17836 /
    4x A10-6800K            4100   Gigabyte GA-F2A85X-UP4                                                  A85X Int.             Dual DDR3-2133        9-11-10-27 CR2            17735 /
    8x Opteron 2378         2400   Tyan Thunder n3600R                                                     nForcePro-3600        Unganged Dual DDR2-800R  6-6-6-18 CR1            17362 /
    2x Core i5-2450M HT     2900   Acer Aspire 5750G                                                       HM65 Int.             Dual DDR3-1333        9-9-9-24 CR1            17260 /
    12x Opteron 2431        2400   Supermicro H8DI3+-F                                                     SR5690                Unganged Dual DDR2-800R  6-6-6-18 CR1            17174 /
    8x Atom C2750           2400   Supermicro A1SAi-2750F                                                  Avoton                Dual DDR3-1600        11-11-11-28 CR1            16882 /
    4x Xeon X3430           2400   Supermicro X8SIL-F                                                      i3420                 Dual DDR3-1333        9-9-9-24 CR1            15347 /
    4x A8-3850              2900   Gigabyte GA-A75M-UD2H                                                   A75 Int.              Dual DDR3-1333        9-9-9-24 CR1            13993 /
    2x Core i5-650 HT       3200   Supermicro C7SIM-Q                                                      Q57 Int.              Dual DDR3-1333        9-9-9-24 CR1            13993 /
    6x Phenom II X6 Black 1100T    3300   Gigabyte GA-890GPA-UD3H v2                                              AMD890GX Int.         Unganged Dual DDR3-1333  9-9-9-24 CR2            12444 /
    8x Opteron 2344 HE      1700   Supermicro H8DME-2                                                      nForcePro-3600        Unganged Dual DDR2-667R  5-5-5-15 CR1            11945 /
    Celeron J1900           2000   Gigabyte GA-J1900N-D3V                                                  BayTrailD Int.        Dual DDR3-1333        9-9-9-24 CR1            11370 /
    4x Phenom II X4 Black 940    3000   Asus M3N78-EM                                                           GeForce8300 Int.      Ganged Dual DDR2-800  5-5-5-18 CR2             9671 /
    4x Opteron 2210 HE      1800   Tyan Thunder h2000M                                                     BCM5785               Dual DDR2-600R        5-5-5-15 CR1             9468 /
    2x Athlon64 X2 Black 6400+    3200   MSI K9N SLI Platinum                                                    nForce570SLI          Dual DDR2-800         4-4-4-11 CR1             9054 /
    8x Xeon E5462           2800   Intel S5400SF                                                           i5400                 Quad DDR2-640FB       5-5-5-15                 8216 /
    4x Phenom X4 9500       2200   Asus M3A                                                                AMD770                Ganged Dual DDR2-800  5-5-5-18 CR2             7792 /
    4x Athlon 5350          2050   ASRock AM1B-ITX                                                         Yangtze Int.          DDR3-1600 SDRAM       11-11-11-28 CR2             7740 /
    4x Core 2 Extreme QX9650    3000   Gigabyte GA-EP35C-DS3R                                                  P35                   Dual DDR3-1066        8-8-8-20 CR2             7403 /
    2x Athlon64 X2 4000+    2100   ASRock ALiveNF7G-HDready                                                nForce7050-630a Int.  Dual DDR2-700         5-5-5-18 CR2             6881 /
    2x Opteron 240          1400   MSI K8D Master3-133 FS                                                  AMD8100               Dual DDR400R          3-4-4-8 CR1              6774 /
    2x Pentium EE 955 HT    3466   Intel D955XBK                                                           i955X                 Dual DDR2-667         4-4-4-11                 6282 /
    P4EE HT                 3733   Intel SE7230NH1LX                                                       iE7230                Dual DDR2-667         5-5-5-15                 6139 /
    Nano X2 L4350           1600   VIA EPIA-M900                                                           VX900H Int.           DDR3-1066 SDRAM       7-7-7-20 CR2             5921 /
    2x Core 2 Duo P8400     2266   MSI MegaBook PR201                                                      GM45 Int.             Dual DDR2-667         5-5-5-15                 5551 /
    2x Core 2 Extreme X6800    2933   Abit AB9                                                                P965                  Dual DDR2-800         5-5-5-18 CR2             5396 /
    4x Core 2 Extreme QX6700    2666   Intel D975XBX2                                                          i975X                 Dual DDR2-667         5-5-5-15                 5284 /
    2x E-350                1600   ASRock E350M1                                                           A50M Int.             DDR3-1066 SDRAM       8-8-8-20 CR1             4951 /
    2x Pentium D 820        2800   Abit Fatal1ty F-I90HD                                                   RS600 Int.            Dual DDR2-800         5-5-5-18 CR2             4891 /
    2x Atom D2500           1866   Intel D2500CC                                                           NM10 Int.             DDR3-1066 SDRAM       7-7-7-20 CR2             4764 /
    Athlon64 3200+          2000   ASRock 939S56-M                                                         SiS756                Dual DDR400           2.5-3-3-8 CR2             4572 /
    2x Xeon HT              3400   Intel SE7320SP2                                                         iE7320                Dual DDR333R          2.5-3-3-7                4213 /
    Celeron 420             1600   Intel DQ965GF                                                           Q965 Int.             Dual DDR2-667         5-5-5-15                 4195 /
    Opteron 248             2200   MSI K8T Master1-FAR                                                     K8T800                Dual DDR266R          2-3-3-6 CR1              3673 /
    Nano L2200              1600   VIA VB8001                                                              CN896 Int.            DDR2-667 SDRAM        5-5-5-15 CR2             3270 /
    Celeron D 326           2533   ASRock 775Twins-HDTV                                                    RC410 Ext.            DDR2-533 SDRAM        4-4-4-11                 3147 /
    Atom 230 HT             1600   Intel D945GCLF                                                          i945GC Int.           DDR2-533 SDRAM        4-4-4-12                 3051 /
    4x Xeon 5140            2333   Intel S5000VSA                                                          i5000V                Dual DDR2-667FB       5-5-5-15                 3009 /
    8x Xeon L5320           1866   Intel S5000VCL                                                          i5000V                Dual DDR2-533FB       4-4-4-12                 2987 /
    Sempron 2600+           1600   ASRock K8NF4G-SATA2                                                     GeForce6100 Int.      DDR400 SDRAM          2.5-3-3-8 CR2             2578 /


--------[   ]---------------------------------------------------------------------------------------------

    Athlon64 X2 Black 6400+    3200   MSI K9N SLI Platinum                                                    nForce570SLI          Dual DDR2-800         4-4-4-11 CR1       55.2 ns
    Core i7-3770K           3500   MSI Z77A-GD55                                                           Z77 Int.              Dual DDR3-1600        9-9-9-24 CR2       57.5 ns
    Xeon E3-1245 v3         3400   Supermicro X10SAE                                                       C226 Int.             Dual DDR3-1600        11-11-11-28 CR1       57.9 ns
    Core i7-4770            3400   Intel DZ87KLT-75K                                                       Z87 Int.              Dual DDR3-1600        9-9-9-27 CR2       58.3 ns
    A10-6800K               4100   Gigabyte GA-F2A85X-UP4                                                  A85X Int.             Dual DDR3-2133        9-11-10-27 CR2       59.6 ns
    FX-8150                 3600   Asus M5A97                                                              AMD970                Dual DDR3-1866        9-10-9-27 CR2       60.3 ns
    FX-8350                 4000   Asus M5A99X Evo R2.0                                                    AMD990X               Dual DDR3-1866        9-10-9-27 CR2       61.4 ns
    A10-5800K               3800   Asus F2A55-M                                                            A55 Int.              Dual DDR3-1866        9-10-9-27 CR2       62.0 ns
    Core i7-4930K           3400   Gigabyte GA-X79-UD3                                                     X79                   Quad DDR3-1866        9-10-9-27 CR2       62.1 ns
    Core i7-965 Extreme     3200   Asus P6T Deluxe                                                         X58                   Triple DDR3-1333      9-9-9-24 CR1       62.9 ns
    Core i7-2600            3400   Asus P8P67                                                              P67                   Dual DDR3-1333        9-9-9-24 CR1       66.7 ns
    Core i7-990X Extreme    3466   Intel DX58SO2                                                           X58                   Triple DDR3-1333      9-9-9-24 CR1       67.1 ns
    Core i7-3960X Extreme    3300   Intel DX79SI                                                            X79                   Quad DDR3-1600        9-9-9-24 CR2       67.5 ns
    Xeon X3430              2400   Supermicro X8SIL-F                                                      i3420                 Dual DDR3-1333        9-9-9-24 CR1       69.6 ns
    Xeon X5550              2666   Supermicro X8DTN+                                                       i5520                 Triple DDR3-1333      9-9-9-24 CR1       70.3 ns
    Athlon64 3200+          2000   ASRock 939S56-M                                                         SiS756                Dual DDR400           2.5-3-3-8 CR2       72.4 ns
    Phenom II X6 Black 1100T    3300   Gigabyte GA-890GPA-UD3H v2                                              AMD890GX Int.         Unganged Dual DDR3-1333  9-9-9-24 CR2       74.1 ns
    Phenom II X4 Black 940    3000   Asus M3N78-EM                                                           GeForce8300 Int.      Ganged Dual DDR2-800  5-5-5-18 CR2       74.2 ns
    A8-3850                 2900   Gigabyte GA-A75M-UD2H                                                   A75 Int.              Dual DDR3-1333        9-9-9-24 CR1       75.9 ns
    Core i5-2450M           2900   Acer Aspire 5750G                                                       HM65 Int.             Dual DDR3-1333        9-9-9-24 CR1       76.5 ns
    Sempron 2600+           1600   ASRock K8NF4G-SATA2                                                     GeForce6100 Int.      DDR400 SDRAM          2.5-3-3-8 CR2       77.0 ns
    Athlon64 X2 4000+       2100   ASRock ALiveNF7G-HDready                                                nForce7050-630a Int.  Dual DDR2-700         5-5-5-18 CR2       77.9 ns
    Pentium EE 955          3466   Intel D955XBK                                                           i955X                 Dual DDR2-667         4-4-4-11           78.0 ns
    A10-7850K               3700   Gigabyte GA-F2A88XM-D3H                                                 A88X Int.             Dual DDR3-2133        9-11-10-31 CR2       79.6 ns
    Xeon E5-2670            2600   Supermicro X9DR6-F                                                      C600                  Quad DDR3-1333        9-9-9-24           79.6 ns
    Core 2 Extreme X6800    2933   Abit AB9                                                                P965                  Dual DDR2-800         5-5-5-18 CR2       79.9 ns
    Core 2 Extreme QX6700    2666   Intel D975XBX2                                                          i975X                 Dual DDR2-667         5-5-5-15           81.2 ns
    P4EE                    3733   Intel SE7230NH1LX                                                       iE7230                Dual DDR2-667         5-5-5-15           82.4 ns
    Opteron 6274            2200   Supermicro H8DGI-F                                                      SR5690                Dual DDR3-1600R       11-11-11-28 CR1       87.0 ns
    Opteron 248             2200   MSI K8T Master1-FAR                                                     K8T800                Dual DDR266R          2-3-3-6 CR1        88.2 ns
    Atom D2500              1866   Intel D2500CC                                                           NM10 Int.             DDR3-1066 SDRAM       7-7-7-20 CR2       88.6 ns
    Opteron 240             1400   MSI K8D Master3-133 FS                                                  AMD8100               Dual DDR400R          3-4-4-8 CR1        89.9 ns
    Core 2 Extreme QX9650    3000   Gigabyte GA-EP35C-DS3R                                                  P35                   Dual DDR3-1066        8-8-8-20 CR2       91.3 ns
    Atom C2750              2400   Supermicro A1SAi-2750F                                                  Avoton                Dual DDR3-1600        11-11-11-28 CR1       93.2 ns
    Celeron J1900           2000   Gigabyte GA-J1900N-D3V                                                  BayTrailD Int.        Dual DDR3-1333        9-9-9-24 CR1       93.7 ns
    Opteron 2378            2400   Tyan Thunder n3600R                                                     nForcePro-3600        Unganged Dual DDR2-800R  6-6-6-18 CR1       99.1 ns
    Celeron 420             1600   Intel DQ965GF                                                           Q965 Int.             Dual DDR2-667         5-5-5-15           99.5 ns
    Core i5-650             3200   Supermicro C7SIM-Q                                                      Q57 Int.              Dual DDR3-1333        9-9-9-24 CR1      100.3 ns
    Core 2 Duo P8400        2266   MSI MegaBook PR201                                                      GM45 Int.             Dual DDR2-667         5-5-5-15          101.4 ns
    Pentium D 820           2800   Abit Fatal1ty F-I90HD                                                   RS600 Int.            Dual DDR2-800         5-5-5-18 CR2      103.9 ns
    Atom 230                1600   Intel D945GCLF                                                          i945GC Int.           DDR2-533 SDRAM        4-4-4-12          105.7 ns
    E-350                   1600   ASRock E350M1                                                           A50M Int.             DDR3-1066 SDRAM       8-8-8-20 CR1      107.0 ns
    Opteron 2210 HE         1800   Tyan Thunder h2000M                                                     BCM5785               Dual DDR2-600R        5-5-5-15 CR1      111.9 ns
    Xeon 5140               2333   Intel S5000VSA                                                          i5000V                Dual DDR2-667FB       5-5-5-15          113.3 ns
    Xeon E5462              2800   Intel S5400SF                                                           i5400                 Quad DDR2-640FB       5-5-5-15          114.8 ns
    Nano X2 L4350           1600   VIA EPIA-M900                                                           VX900H Int.           DDR3-1066 SDRAM       7-7-7-20 CR2      120.0 ns
    Opteron 2431            2400   Supermicro H8DI3+-F                                                     SR5690                Unganged Dual DDR2-800R  6-6-6-18 CR1      124.4 ns
    Xeon                    3400   Intel SE7320SP2                                                         iE7320                Dual DDR333R          2.5-3-3-7         124.7 ns
    Xeon L5320              1866   Intel S5000VCL                                                          i5000V                Dual DDR2-533FB       4-4-4-12          127.8 ns
    Athlon 5350             2050   ASRock AM1B-ITX                                                         Yangtze Int.          DDR3-1600 SDRAM       11-11-11-28 CR2      128.3 ns
    Phenom X4 9500          2200   Asus M3A                                                                AMD770                Ganged Dual DDR2-800  5-5-5-18 CR2      129.7 ns
    Nano L2200              1600   VIA VB8001                                                              CN896 Int.            DDR2-667 SDRAM        5-5-5-15 CR2      138.4 ns
    Celeron D 326           2533   ASRock 775Twins-HDTV                                                    RC410 Ext.            DDR2-533 SDRAM        4-4-4-11          153.7 ns
    Opteron 2344 HE         1700   Supermicro H8DME-2                                                      nForcePro-3600        Unganged Dual DDR2-667R  5-5-5-15 CR1      159.0 ns


--------[ CPU Queen ]---------------------------------------------------------------------------------------------------

    16x Xeon E5-2670 HT     2600   Supermicro X9DR6-F                                                      C600                  Quad DDR3-1333        9-9-9-24            100531
    6x Core i7-4930K HT     3400   Gigabyte GA-X79-UD3                                                     X79                   Quad DDR3-1866        9-10-9-27 CR2         62643
    6x Core i7-3960X Extreme HT    3300   Intel DX79SI                                                            X79                   Quad DDR3-1600        9-9-9-24 CR2         62484
    6x Core i7-990X Extreme HT    3466   Intel DX58SO2                                                           X58                   Triple DDR3-1333      9-9-9-24 CR1         56836
    32x Opteron 6274        2200   Supermicro H8DGI-F                                                      SR5690                Dual DDR3-1600R       11-11-11-28 CR1         53879
    8x Xeon X5550 HT        2666   Supermicro X8DTN+                                                       i5520                 Triple DDR3-1333      9-9-9-24 CR1         53544
    4x Core i7-4770 HT      3400   Intel DZ87KLT-75K                                                       Z87 Int.              Dual DDR3-1600        9-9-9-27 CR2         47291
    4x Core i7-3770K HT     3500   MSI Z77A-GD55                                                           Z77 Int.              Dual DDR3-1600        9-9-9-24 CR2         46747
    4x Xeon E3-1245 v3 HT    3400   Supermicro X10SAE                                                       C226 Int.             Dual DDR3-1600        11-11-11-28 CR1         45915
    4x Core i7-2600 HT      3400   Asus P8P67                                                              P67                   Dual DDR3-1333        9-9-9-24 CR1         43907
    12x Opteron 2431        2400   Supermicro H8DI3+-F                                                     SR5690                Unganged Dual DDR2-800R  6-6-6-18 CR1         42550
    8x Xeon E5462           2800   Intel S5400SF                                                           i5400                 Quad DDR2-640FB       5-5-5-15             41740
    4x Core i7-965 Extreme HT    3200   Asus P6T Deluxe                                                         X58                   Triple DDR3-1333      9-9-9-24 CR1         37778
    8x FX-8350              4000   Asus M5A99X Evo R2.0                                                    AMD990X               Dual DDR3-1866        9-10-9-27 CR2         36089
    8x Atom C2750           2400   Supermicro A1SAi-2750F                                                  Avoton                Dual DDR3-1600        11-11-11-28 CR1         34010
    6x Phenom II X6 Black 1100T    3300   Gigabyte GA-890GPA-UD3H v2                                              AMD890GX Int.         Unganged Dual DDR3-1333  9-9-9-24 CR2         32366
    8x FX-8150              3600   Asus M5A97                                                              AMD970                Dual DDR3-1866        9-10-9-27 CR2         31680
    8x Opteron 2378         2400   Tyan Thunder n3600R                                                     nForcePro-3600        Unganged Dual DDR2-800R  6-6-6-18 CR1         30784
    8x Xeon L5320           1866   Intel S5000VCL                                                          i5000V                Dual DDR2-533FB       4-4-4-12             26997
    4x Core 2 Extreme QX9650    3000   Gigabyte GA-EP35C-DS3R                                                  P35                   Dual DDR3-1066        8-8-8-20 CR2         25523
    4x A8-3850              2900   Gigabyte GA-A75M-UD2H                                                   A75 Int.              Dual DDR3-1333        9-9-9-24 CR1         22162
    4x Core 2 Extreme QX6700    2666   Intel D975XBX2                                                          i975X                 Dual DDR2-667         5-5-5-15             22013
    8x Opteron 2344 HE      1700   Supermicro H8DME-2                                                      nForcePro-3600        Unganged Dual DDR2-667R  5-5-5-15 CR1         21945
    4x Phenom II X4 Black 940    3000   Asus M3N78-EM                                                           GeForce8300 Int.      Ganged Dual DDR2-800  5-5-5-18 CR2         21896
    4x A10-6800K            4100   Gigabyte GA-F2A85X-UP4                                                  A85X Int.             Dual DDR3-2133        9-11-10-27 CR2         21655
    2x Core i5-650 HT       3200   Supermicro C7SIM-Q                                                      Q57 Int.              Dual DDR3-1333        9-9-9-24 CR1         21434
    4x Xeon X3430           2400   Supermicro X8SIL-F                                                      i3420                 Dual DDR3-1333        9-9-9-24 CR1         21225
    4x A10-5800K            3800   Asus F2A55-M                                                            A55 Int.              Dual DDR3-1866        9-10-9-27 CR2         20154
    2x Core i5-2450M HT     2900   Acer Aspire 5750G                                                       HM65 Int.             Dual DDR3-1333        9-9-9-24 CR1         19472
    4x A10-7850K            3700   Gigabyte GA-F2A88XM-D3H                                                 A88X Int.             Dual DDR3-2133        9-11-10-31 CR2         19397
    4x Xeon 5140            2333   Intel S5000VSA                                                          i5000V                Dual DDR2-667FB       5-5-5-15             19226
    Celeron J1900           2000   Gigabyte GA-J1900N-D3V                                                  BayTrailD Int.        Dual DDR3-1333        9-9-9-24 CR1         18012
    4x Phenom X4 9500       2200   Asus M3A                                                                AMD770                Ganged Dual DDR2-800  5-5-5-18 CR2         16094
    4x Athlon 5350          2050   ASRock AM1B-ITX                                                         Yangtze Int.          DDR3-1600 SDRAM       11-11-11-28 CR2         14695
    4x Opteron 2210 HE      1800   Tyan Thunder h2000M                                                     BCM5785               Dual DDR2-600R        5-5-5-15 CR1         12584
    2x Core 2 Extreme X6800    2933   Abit AB9                                                                P965                  Dual DDR2-800         5-5-5-18 CR2         12140
    2x Athlon64 X2 Black 6400+    3200   MSI K9N SLI Platinum                                                    nForce570SLI          Dual DDR2-800         4-4-4-11 CR1         11236
    2x Core 2 Duo P8400     2266   MSI MegaBook PR201                                                      GM45 Int.             Dual DDR2-667         5-5-5-15              9614
    2x Pentium EE 955 HT    3466   Intel D955XBK                                                           i955X                 Dual DDR2-667         4-4-4-11              7485
    2x Xeon HT              3400   Intel SE7320SP2                                                         iE7320                Dual DDR333R          2.5-3-3-7             7304
    2x Athlon64 X2 4000+    2100   ASRock ALiveNF7G-HDready                                                nForce7050-630a Int.  Dual DDR2-700         5-5-5-18 CR2          7300
    2x Atom D2500           1866   Intel D2500CC                                                           NM10 Int.             DDR3-1066 SDRAM       7-7-7-20 CR2          5904
    Nano X2 L4350           1600   VIA EPIA-M900                                                           VX900H Int.           DDR3-1066 SDRAM       7-7-7-20 CR2          5452
    2x E-350                1600   ASRock E350M1                                                           A50M Int.             DDR3-1066 SDRAM       8-8-8-20 CR1          5164
    2x Opteron 240          1400   MSI K8D Master3-133 FS                                                  AMD8100               Dual DDR400R          3-4-4-8 CR1           4879
    2x Pentium D 820        2800   Abit Fatal1ty F-I90HD                                                   RS600 Int.            Dual DDR2-800         5-5-5-18 CR2          4086
    P4EE HT                 3733   Intel SE7230NH1LX                                                       iE7230                Dual DDR2-667         5-5-5-15              4021
    Opteron 248             2200   MSI K8T Master1-FAR                                                     K8T800                Dual DDR266R          2-3-3-6 CR1           3855
    Atom 230 HT             1600   Intel D945GCLF                                                          i945GC Int.           DDR2-533 SDRAM        4-4-4-12              3791
    Athlon64 3200+          2000   ASRock 939S56-M                                                         SiS756                Dual DDR400           2.5-3-3-8 CR2          3514
    Celeron 420             1600   Intel DQ965GF                                                           Q965 Int.             Dual DDR2-667         5-5-5-15              3301
    Sempron 2600+           1600   ASRock K8NF4G-SATA2                                                     GeForce6100 Int.      DDR400 SDRAM          2.5-3-3-8 CR2          2814
    Nano L2200              1600   VIA VB8001                                                              CN896 Int.            DDR2-667 SDRAM        5-5-5-15 CR2          2586
    Celeron D 326           2533   ASRock 775Twins-HDTV                                                    RC410 Ext.            DDR2-533 SDRAM        4-4-4-11              1839


--------[ CPU PhotoWorxx ]----------------------------------------------------------------------------------------------

    16x Xeon E5-2670 HT     2600   Supermicro X9DR6-F                                                      C600                  Quad DDR3-1333        9-9-9-24              38725 /
    32x Opteron 6274        2200   Supermicro H8DGI-F                                                      SR5690                Dual DDR3-1600R       11-11-11-28 CR1          35478 /
    6x Core i7-4930K HT     3400   Gigabyte GA-X79-UD3                                                     X79                   Quad DDR3-1866        9-10-9-27 CR2          23599 /
    6x Core i7-3960X Extreme HT    3300   Intel DX79SI                                                            X79                   Quad DDR3-1600        9-9-9-24 CR2          22806 /
    8x Xeon X5550 HT        2666   Supermicro X8DTN+                                                       i5520                 Triple DDR3-1333      9-9-9-24 CR1          20428 /
    4x Core i7-3770K HT     3500   MSI Z77A-GD55                                                           Z77 Int.              Dual DDR3-1600        9-9-9-24 CR2          14178 /
    4x Xeon E3-1245 v3 HT    3400   Supermicro X10SAE                                                       C226 Int.             Dual DDR3-1600        11-11-11-28 CR1          14090 /
    4x Core i7-4770 HT      3400   Intel DZ87KLT-75K                                                       Z87 Int.              Dual DDR3-1600        9-9-9-27 CR2          14001 /
    6x Core i7-990X Extreme HT    3466   Intel DX58SO2                                                           X58                   Triple DDR3-1333      9-9-9-24 CR1          12962 /
    8x FX-8350              4000   Asus M5A99X Evo R2.0                                                    AMD990X               Dual DDR3-1866        9-10-9-27 CR2          12477 /
    8x FX-8150              3600   Asus M5A97                                                              AMD970                Dual DDR3-1866        9-10-9-27 CR2          12457 /
    4x Core i7-965 Extreme HT    3200   Asus P6T Deluxe                                                         X58                   Triple DDR3-1333      9-9-9-24 CR1          11872 /
    12x Opteron 2431        2400   Supermicro H8DI3+-F                                                     SR5690                Unganged Dual DDR2-800R  6-6-6-18 CR1          11495 /
    4x Core i7-2600 HT      3400   Asus P8P67                                                              P67                   Dual DDR3-1333        9-9-9-24 CR1          11115 /
    8x Opteron 2378         2400   Tyan Thunder n3600R                                                     nForcePro-3600        Unganged Dual DDR2-800R  6-6-6-18 CR1          10673 /
    4x A10-6800K            4100   Gigabyte GA-F2A85X-UP4                                                  A85X Int.             Dual DDR3-2133        9-11-10-27 CR2           9603 /
    4x A10-5800K            3800   Asus F2A55-M                                                            A55 Int.              Dual DDR3-1866        9-10-9-27 CR2           9078 /
    4x A10-7850K            3700   Gigabyte GA-F2A88XM-D3H                                                 A88X Int.             Dual DDR3-2133        9-11-10-31 CR2           8913 /
    8x Atom C2750           2400   Supermicro A1SAi-2750F                                                  Avoton                Dual DDR3-1600        11-11-11-28 CR1           8886 /
    4x Xeon X3430           2400   Supermicro X8SIL-F                                                      i3420                 Dual DDR3-1333        9-9-9-24 CR1           8581 /
    2x Core i5-2450M HT     2900   Acer Aspire 5750G                                                       HM65 Int.             Dual DDR3-1333        9-9-9-24 CR1           8105 /
    4x A8-3850              2900   Gigabyte GA-A75M-UD2H                                                   A75 Int.              Dual DDR3-1333        9-9-9-24 CR1           8064 /
    6x Phenom II X6 Black 1100T    3300   Gigabyte GA-890GPA-UD3H v2                                              AMD890GX Int.         Unganged Dual DDR3-1333  9-9-9-24 CR2           6975 /
    2x Core i5-650 HT       3200   Supermicro C7SIM-Q                                                      Q57 Int.              Dual DDR3-1333        9-9-9-24 CR1           6862 /
    8x Opteron 2344 HE      1700   Supermicro H8DME-2                                                      nForcePro-3600        Unganged Dual DDR2-667R  5-5-5-15 CR1           6131 /
    4x Phenom II X4 Black 940    3000   Asus M3N78-EM                                                           GeForce8300 Int.      Ganged Dual DDR2-800  5-5-5-18 CR2           5627 /
    Celeron J1900           2000   Gigabyte GA-J1900N-D3V                                                  BayTrailD Int.        Dual DDR3-1333        9-9-9-24 CR1           5276 /
    8x Xeon E5462           2800   Intel S5400SF                                                           i5400                 Quad DDR2-640FB       5-5-5-15               4730 /
    4x Core 2 Extreme QX9650    3000   Gigabyte GA-EP35C-DS3R                                                  P35                   Dual DDR3-1066        8-8-8-20 CR2           4183 /
    4x Athlon 5350          2050   ASRock AM1B-ITX                                                         Yangtze Int.          DDR3-1600 SDRAM       11-11-11-28 CR2           4179 /
    4x Phenom X4 9500       2200   Asus M3A                                                                AMD770                Ganged Dual DDR2-800  5-5-5-18 CR2           3840 /
    4x Opteron 2210 HE      1800   Tyan Thunder h2000M                                                     BCM5785               Dual DDR2-600R        5-5-5-15 CR1           3707 /
    2x Core 2 Extreme X6800    2933   Abit AB9                                                                P965                  Dual DDR2-800         5-5-5-18 CR2           3462 /
    2x Core 2 Duo P8400     2266   MSI MegaBook PR201                                                      GM45 Int.             Dual DDR2-667         5-5-5-15               3041 /
    2x Athlon64 X2 Black 6400+    3200   MSI K9N SLI Platinum                                                    nForce570SLI          Dual DDR2-800         4-4-4-11 CR1           3025 /
    2x Pentium EE 955 HT    3466   Intel D955XBK                                                           i955X                 Dual DDR2-667         4-4-4-11               2926 /
    4x Core 2 Extreme QX6700    2666   Intel D975XBX2                                                          i975X                 Dual DDR2-667         5-5-5-15               2793 /
    Nano X2 L4350           1600   VIA EPIA-M900                                                           VX900H Int.           DDR3-1066 SDRAM       7-7-7-20 CR2           2536 /
    2x Athlon64 X2 4000+    2100   ASRock ALiveNF7G-HDready                                                nForce7050-630a Int.  Dual DDR2-700         5-5-5-18 CR2           2390 /
    P4EE HT                 3733   Intel SE7230NH1LX                                                       iE7230                Dual DDR2-667         5-5-5-15               2147 /
    2x E-350                1600   ASRock E350M1                                                           A50M Int.             DDR3-1066 SDRAM       8-8-8-20 CR1           1936 /
    8x Xeon L5320           1866   Intel S5000VCL                                                          i5000V                Dual DDR2-533FB       4-4-4-12               1904 /
    2x Pentium D 820        2800   Abit Fatal1ty F-I90HD                                                   RS600 Int.            Dual DDR2-800         5-5-5-18 CR2           1895 /
    4x Xeon 5140            2333   Intel S5000VSA                                                          i5000V                Dual DDR2-667FB       5-5-5-15               1864 /
    Celeron 420             1600   Intel DQ965GF                                                           Q965 Int.             Dual DDR2-667         5-5-5-15               1852 /
    2x Opteron 240          1400   MSI K8D Master3-133 FS                                                  AMD8100               Dual DDR400R          3-4-4-8 CR1            1850 /
    2x Atom D2500           1866   Intel D2500CC                                                           NM10 Int.             DDR3-1066 SDRAM       7-7-7-20 CR2           1844 /
    2x Xeon HT              3400   Intel SE7320SP2                                                         iE7320                Dual DDR333R          2.5-3-3-7              1676 /
    Athlon64 3200+          2000   ASRock 939S56-M                                                         SiS756                Dual DDR400           2.5-3-3-8 CR2           1224 /
    Nano L2200              1600   VIA VB8001                                                              CN896 Int.            DDR2-667 SDRAM        5-5-5-15 CR2           1167 /
    Opteron 248             2200   MSI K8T Master1-FAR                                                     K8T800                Dual DDR266R          2-3-3-6 CR1            1100 /
    Atom 230 HT             1600   Intel D945GCLF                                                          i945GC Int.           DDR2-533 SDRAM        4-4-4-12               1099 /
    Celeron D 326           2533   ASRock 775Twins-HDTV                                                    RC410 Ext.            DDR2-533 SDRAM        4-4-4-11                879 /
    Sempron 2600+           1600   ASRock K8NF4G-SATA2                                                     GeForce6100 Int.      DDR400 SDRAM          2.5-3-3-8 CR2            826 /


--------[ CPU ZLib ]----------------------------------------------------------------------------------------------------

    16x Xeon E5-2670 HT     2600   Supermicro X9DR6-F                                                      C600                  Quad DDR3-1333        9-9-9-24                975.4 /
    32x Opteron 6274        2200   Supermicro H8DGI-F                                                      SR5690                Dual DDR3-1600R       11-11-11-28 CR1            672.7 /
    6x Core i7-4930K HT     3400   Gigabyte GA-X79-UD3                                                     X79                   Quad DDR3-1866        9-10-9-27 CR2            455.0 /
    6x Core i7-3960X Extreme HT    3300   Intel DX79SI                                                            X79                   Quad DDR3-1600        9-9-9-24 CR2            444.5 /
    12x Opteron 2431        2400   Supermicro H8DI3+-F                                                     SR5690                Unganged Dual DDR2-800R  6-6-6-18 CR1            366.5 /
    6x Core i7-990X Extreme HT    3466   Intel DX58SO2                                                           X58                   Triple DDR3-1333      9-9-9-24 CR1            358.7 /
    8x Xeon X5550 HT        2666   Supermicro X8DTN+                                                       i5520                 Triple DDR3-1333      9-9-9-24 CR1            358.1 /
    8x FX-8350              4000   Asus M5A99X Evo R2.0                                                    AMD990X               Dual DDR3-1866        9-10-9-27 CR2            346.1 /
    4x Core i7-4770 HT      3400   Intel DZ87KLT-75K                                                       Z87 Int.              Dual DDR3-1600        9-9-9-27 CR2            320.0 /
    4x Core i7-3770K HT     3500   MSI Z77A-GD55                                                           Z77 Int.              Dual DDR3-1600        9-9-9-24 CR2            317.2 /
    4x Xeon E3-1245 v3 HT    3400   Supermicro X10SAE                                                       C226 Int.             Dual DDR3-1600        11-11-11-28 CR1            308.6 /
    4x Core i7-2600 HT      3400   Asus P8P67                                                              P67                   Dual DDR3-1333        9-9-9-24 CR1            289.2 /
    8x Xeon E5462           2800   Intel S5400SF                                                           i5400                 Quad DDR2-640FB       5-5-5-15                281.4 /
    8x FX-8150              3600   Asus M5A97                                                              AMD970                Dual DDR3-1866        9-10-9-27 CR2            276.3 /
    6x Phenom II X6 Black 1100T    3300   Gigabyte GA-890GPA-UD3H v2                                              AMD890GX Int.         Unganged Dual DDR3-1333  9-9-9-24 CR2            256.7 /
    8x Opteron 2378         2400   Tyan Thunder n3600R                                                     nForcePro-3600        Unganged Dual DDR2-800R  6-6-6-18 CR1            244.3 /
    4x Core i7-965 Extreme HT    3200   Asus P6T Deluxe                                                         X58                   Triple DDR3-1333      9-9-9-24 CR1            222.7 /
    8x Atom C2750           2400   Supermicro A1SAi-2750F                                                  Avoton                Dual DDR3-1600        11-11-11-28 CR1            209.2 /
    8x Xeon L5320           1866   Intel S5000VCL                                                          i5000V                Dual DDR2-533FB       4-4-4-12                189.4 /
    4x A10-6800K            4100   Gigabyte GA-F2A85X-UP4                                                  A85X Int.             Dual DDR3-2133        9-11-10-27 CR2            183.0 /
    4x A10-7850K            3700   Gigabyte GA-F2A88XM-D3H                                                 A88X Int.             Dual DDR3-2133        9-11-10-31 CR2            174.8 /
    8x Opteron 2344 HE      1700   Supermicro H8DME-2                                                      nForcePro-3600        Unganged Dual DDR2-667R  5-5-5-15 CR1            174.3 /
    4x A10-5800K            3800   Asus F2A55-M                                                            A55 Int.              Dual DDR3-1866        9-10-9-27 CR2            167.7 /
    4x Phenom II X4 Black 940    3000   Asus M3N78-EM                                                           GeForce8300 Int.      Ganged Dual DDR2-800  5-5-5-18 CR2            154.7 /
    4x Core 2 Extreme QX9650    3000   Gigabyte GA-EP35C-DS3R                                                  P35                   Dual DDR3-1066        8-8-8-20 CR2            153.2 /
    4x A8-3850              2900   Gigabyte GA-A75M-UD2H                                                   A75 Int.              Dual DDR3-1333        9-9-9-24 CR1            152.5 /
    4x Core 2 Extreme QX6700    2666   Intel D975XBX2                                                          i975X                 Dual DDR2-667         5-5-5-15                136.2 /
    2x Core i5-2450M HT     2900   Acer Aspire 5750G                                                       HM65 Int.             Dual DDR3-1333        9-9-9-24 CR1            118.1 /
    4x Xeon 5140            2333   Intel S5000VSA                                                          i5000V                Dual DDR2-667FB       5-5-5-15                117.7 /
    4x Phenom X4 9500       2200   Asus M3A                                                                AMD770                Ganged Dual DDR2-800  5-5-5-18 CR2            112.5 /
    4x Xeon X3430           2400   Supermicro X8SIL-F                                                      i3420                 Dual DDR3-1333        9-9-9-24 CR1            108.3 /
    2x Core i5-650 HT       3200   Supermicro C7SIM-Q                                                      Q57 Int.              Dual DDR3-1333        9-9-9-24 CR1            105.8 /
    Celeron J1900           2000   Gigabyte GA-J1900N-D3V                                                  BayTrailD Int.        Dual DDR3-1333        9-9-9-24 CR1             97.1 /
    4x Athlon 5350          2050   ASRock AM1B-ITX                                                         Yangtze Int.          DDR3-1600 SDRAM       11-11-11-28 CR2             95.6 /
    4x Opteron 2210 HE      1800   Tyan Thunder h2000M                                                     BCM5785               Dual DDR2-600R        5-5-5-15 CR1             82.8 /
    2x Core 2 Extreme X6800    2933   Abit AB9                                                                P965                  Dual DDR2-800         5-5-5-18 CR2             75.0 /
    2x Athlon64 X2 Black 6400+    3200   MSI K9N SLI Platinum                                                    nForce570SLI          Dual DDR2-800         4-4-4-11 CR1             73.7 /
    2x Pentium EE 955 HT    3466   Intel D955XBK                                                           i955X                 Dual DDR2-667         4-4-4-11                 59.6 /
    2x Xeon HT              3400   Intel SE7320SP2                                                         iE7320                Dual DDR333R          2.5-3-3-7                57.8 /
    2x Core 2 Duo P8400     2266   MSI MegaBook PR201                                                      GM45 Int.             Dual DDR2-667         5-5-5-15                 57.5 /
    2x Athlon64 X2 4000+    2100   ASRock ALiveNF7G-HDready                                                nForce7050-630a Int.  Dual DDR2-700         5-5-5-18 CR2             47.3 /
    2x Pentium D 820        2800   Abit Fatal1ty F-I90HD                                                   RS600 Int.            Dual DDR2-800         5-5-5-18 CR2             41.5 /
    Nano X2 L4350           1600   VIA EPIA-M900                                                           VX900H Int.           DDR3-1066 SDRAM       7-7-7-20 CR2             33.3 /
    2x E-350                1600   ASRock E350M1                                                           A50M Int.             DDR3-1066 SDRAM       8-8-8-20 CR1             32.9 /
    P4EE HT                 3733   Intel SE7230NH1LX                                                       iE7230                Dual DDR2-667         5-5-5-15                 32.2 /
    2x Atom D2500           1866   Intel D2500CC                                                           NM10 Int.             DDR3-1066 SDRAM       7-7-7-20 CR2             31.6 /
    2x Opteron 240          1400   MSI K8D Master3-133 FS                                                  AMD8100               Dual DDR400R          3-4-4-8 CR1              30.8 /
    Opteron 248             2200   MSI K8T Master1-FAR                                                     K8T800                Dual DDR266R          2-3-3-6 CR1              24.3 /
    Athlon64 3200+          2000   ASRock 939S56-M                                                         SiS756                Dual DDR400           2.5-3-3-8 CR2             22.8 /
    Celeron 420             1600   Intel DQ965GF                                                           Q965 Int.             Dual DDR2-667         5-5-5-15                 20.3 /
    Atom 230 HT             1600   Intel D945GCLF                                                          i945GC Int.           DDR2-533 SDRAM        4-4-4-12                 18.5 /
    Celeron D 326           2533   ASRock 775Twins-HDTV                                                    RC410 Ext.            DDR2-533 SDRAM        4-4-4-11                 17.4 /
    Sempron 2600+           1600   ASRock K8NF4G-SATA2                                                     GeForce6100 Int.      DDR400 SDRAM          2.5-3-3-8 CR2             16.3 /
    Nano L2200              1600   VIA VB8001                                                              CN896 Int.            DDR2-667 SDRAM        5-5-5-15 CR2             15.2 /


--------[ CPU AES ]-----------------------------------------------------------------------------------------------------

    16x Xeon E5-2670 HT     2600   Supermicro X9DR6-F                                                      C600                  Quad DDR3-1333        9-9-9-24        46884 /
    32x Opteron 6274        2200   Supermicro H8DGI-F                                                      SR5690                Dual DDR3-1600R       11-11-11-28 CR1    38007 /
    6x Core i7-3960X Extreme HT    3300   Intel DX79SI                                                            X79                   Quad DDR3-1600        9-9-9-24 CR2    21097 /
    6x Core i7-4930K HT     3400   Gigabyte GA-X79-UD3                                                     X79                   Quad DDR3-1866        9-10-9-27 CR2    21094 /
    8x FX-8350              4000   Asus M5A99X Evo R2.0                                                    AMD990X               Dual DDR3-1866        9-10-9-27 CR2    17312 /
    4x Core i7-4770 HT      3400   Intel DZ87KLT-75K                                                       Z87 Int.              Dual DDR3-1600        9-9-9-27 CR2    16800 /
    4x Xeon E3-1245 v3 HT    3400   Supermicro X10SAE                                                       C226 Int.             Dual DDR3-1600        11-11-11-28 CR1    16333 /
    8x FX-8150              3600   Asus M5A97                                                              AMD970                Dual DDR3-1866        9-10-9-27 CR2    15406 /
    4x Core i7-3770K HT     3500   MSI Z77A-GD55                                                           Z77 Int.              Dual DDR3-1600        9-9-9-24 CR2    14455 /
    4x Core i7-2600 HT      3400   Asus P8P67                                                              P67                   Dual DDR3-1333        9-9-9-24 CR1    13681 /
    6x Core i7-990X Extreme HT    3466   Intel DX58SO2                                                           X58                   Triple DDR3-1333      9-9-9-24 CR1    12247 /
    4x A10-6800K            4100   Gigabyte GA-F2A85X-UP4                                                  A85X Int.             Dual DDR3-2133        9-11-10-27 CR2     9124 /
    4x A10-7850K            3700   Gigabyte GA-F2A88XM-D3H                                                 A88X Int.             Dual DDR3-2133        9-11-10-31 CR2     8465 /
    4x A10-5800K            3800   Asus F2A55-M                                                            A55 Int.              Dual DDR3-1866        9-10-9-27 CR2     8460 /
    4x Athlon 5350          2050   ASRock AM1B-ITX                                                         Yangtze Int.          DDR3-1600 SDRAM       11-11-11-28 CR2     6532 /
    2x Core i5-2450M HT     2900   Acer Aspire 5750G                                                       HM65 Int.             Dual DDR3-1333        9-9-9-24 CR1     5478 /
    8x Atom C2750           2400   Supermicro A1SAi-2750F                                                  Avoton                Dual DDR3-1600        11-11-11-28 CR1     4053 /
    2x Core i5-650 HT       3200   Supermicro C7SIM-Q                                                      Q57 Int.              Dual DDR3-1333        9-9-9-24 CR1     3782 /
    Nano X2 L4350           1600   VIA EPIA-M900                                                           VX900H Int.           DDR3-1066 SDRAM       7-7-7-20 CR2     2908 /
    12x Opteron 2431        2400   Supermicro H8DI3+-F                                                     SR5690                Unganged Dual DDR2-800R  6-6-6-18 CR1     1930 /
    Nano L2200              1600   VIA VB8001                                                              CN896 Int.            DDR2-667 SDRAM        5-5-5-15 CR2     1447 /
    6x Phenom II X6 Black 1100T    3300   Gigabyte GA-890GPA-UD3H v2                                              AMD890GX Int.         Unganged Dual DDR3-1333  9-9-9-24 CR2     1332 /
    8x Opteron 2378         2400   Tyan Thunder n3600R                                                     nForcePro-3600        Unganged Dual DDR2-800R  6-6-6-18 CR1     1286 /
    8x Xeon E5462           2800   Intel S5400SF                                                           i5400                 Quad DDR2-640FB       5-5-5-15         1212 /
    8x Xeon X5550 HT        2666   Supermicro X8DTN+                                                       i5520                 Triple DDR3-1333      9-9-9-24 CR1     1153 /
    8x Opteron 2344 HE      1700   Supermicro H8DME-2                                                      nForcePro-3600        Unganged Dual DDR2-667R  5-5-5-15 CR1      913 /
    4x Phenom II X4 Black 940    3000   Asus M3N78-EM                                                           GeForce8300 Int.      Ganged Dual DDR2-800  5-5-5-18 CR2      802 /
    8x Xeon L5320           1866   Intel S5000VCL                                                          i5000V                Dual DDR2-533FB       4-4-4-12          790 /
    4x A8-3850              2900   Gigabyte GA-A75M-UD2H                                                   A75 Int.              Dual DDR3-1333        9-9-9-24 CR1      789 /
    4x Core i7-965 Extreme HT    3200   Asus P6T Deluxe                                                         X58                   Triple DDR3-1333      9-9-9-24 CR1      721 /
    4x Core 2 Extreme QX9650    3000   Gigabyte GA-EP35C-DS3R                                                  P35                   Dual DDR3-1066        8-8-8-20 CR2      651 /
    4x Phenom X4 9500       2200   Asus M3A                                                                AMD770                Ganged Dual DDR2-800  5-5-5-18 CR2      587 /
    4x Core 2 Extreme QX6700    2666   Intel D975XBX2                                                          i975X                 Dual DDR2-667         5-5-5-15          566 /
    4x Xeon X3430           2400   Supermicro X8SIL-F                                                      i3420                 Dual DDR3-1333        9-9-9-24 CR1      524 /
    4x Xeon 5140            2333   Intel S5000VSA                                                          i5000V                Dual DDR2-667FB       5-5-5-15          493 /
    4x Opteron 2210 HE      1800   Tyan Thunder h2000M                                                     BCM5785               Dual DDR2-600R        5-5-5-15 CR1      473 /
    2x Athlon64 X2 Black 6400+    3200   MSI K9N SLI Platinum                                                    nForce570SLI          Dual DDR2-800         4-4-4-11 CR1      421 /
    Celeron J1900           2000   Gigabyte GA-J1900N-D3V                                                  BayTrailD Int.        Dual DDR3-1333        9-9-9-24 CR1      387 /
    2x Core 2 Extreme X6800    2933   Abit AB9                                                                P965                  Dual DDR2-800         5-5-5-18 CR2      311 /
    2x Pentium EE 955 HT    3466   Intel D955XBK                                                           i955X                 Dual DDR2-667         4-4-4-11          277 /
    2x Athlon64 X2 4000+    2100   ASRock ALiveNF7G-HDready                                                nForce7050-630a Int.  Dual DDR2-700         5-5-5-18 CR2      274 /
    2x Xeon HT              3400   Intel SE7320SP2                                                         iE7320                Dual DDR333R          2.5-3-3-7         269 /
    2x Core 2 Duo P8400     2266   MSI MegaBook PR201                                                      GM45 Int.             Dual DDR2-667         5-5-5-15          245 /
    2x Pentium D 820        2800   Abit Fatal1ty F-I90HD                                                   RS600 Int.            Dual DDR2-800         5-5-5-18 CR2      242 /
    2x Opteron 240          1400   MSI K8D Master3-133 FS                                                  AMD8100               Dual DDR400R          3-4-4-8 CR1       184 /
    2x E-350                1600   ASRock E350M1                                                           A50M Int.             DDR3-1066 SDRAM       8-8-8-20 CR1      153 /
    P4EE HT                 3733   Intel SE7230NH1LX                                                       iE7230                Dual DDR2-667         5-5-5-15          148 /
    Opteron 248             2200   MSI K8T Master1-FAR                                                     K8T800                Dual DDR266R          2-3-3-6 CR1       144 /
    Athlon64 3200+          2000   ASRock 939S56-M                                                         SiS756                Dual DDR400           2.5-3-3-8 CR2      131 /
    Celeron D 326           2533   ASRock 775Twins-HDTV                                                    RC410 Ext.            DDR2-533 SDRAM        4-4-4-11          109 /
    Sempron 2600+           1600   ASRock K8NF4G-SATA2                                                     GeForce6100 Int.      DDR400 SDRAM          2.5-3-3-8 CR2      105 /
    2x Atom D2500           1866   Intel D2500CC                                                           NM10 Int.             DDR3-1066 SDRAM       7-7-7-20 CR2       98 /
    Celeron 420             1600   Intel DQ965GF                                                           Q965 Int.             Dual DDR2-667         5-5-5-15           84 /
    Atom 230 HT             1600   Intel D945GCLF                                                          i945GC Int.           DDR2-533 SDRAM        4-4-4-12           44 /


--------[ CPU Hash ]----------------------------------------------------------------------------------------------------

    32x Opteron 6274        2200   Supermicro H8DGI-F                                                      SR5690                Dual DDR3-1600R       11-11-11-28 CR1             9056 /
    16x Xeon E5-2670 HT     2600   Supermicro X9DR6-F                                                      C600                  Quad DDR3-1333        9-9-9-24                 8724 /
    12x Opteron 2431        2400   Supermicro H8DI3+-F                                                     SR5690                Unganged Dual DDR2-800R  6-6-6-18 CR1             4783 /
    6x Core i7-4930K HT     3400   Gigabyte GA-X79-UD3                                                     X79                   Quad DDR3-1866        9-10-9-27 CR2             4368 /
    8x FX-8350              4000   Asus M5A99X Evo R2.0                                                    AMD990X               Dual DDR3-1866        9-10-9-27 CR2             4104 /
    6x Core i7-3960X Extreme HT    3300   Intel DX79SI                                                            X79                   Quad DDR3-1600        9-9-9-24 CR2             3924 /
    4x Core i7-4770 HT      3400   Intel DZ87KLT-75K                                                       Z87 Int.              Dual DDR3-1600        9-9-9-27 CR2             3786 /
    4x Xeon E3-1245 v3 HT    3400   Supermicro X10SAE                                                       C226 Int.             Dual DDR3-1600        11-11-11-28 CR1             3679 /
    8x FX-8150              3600   Asus M5A97                                                              AMD970                Dual DDR3-1866        9-10-9-27 CR2             3674 /
    8x Xeon E5462           2800   Intel S5400SF                                                           i5400                 Quad DDR2-640FB       5-5-5-15                 3604 /
    6x Phenom II X6 Black 1100T    3300   Gigabyte GA-890GPA-UD3H v2                                              AMD890GX Int.         Unganged Dual DDR3-1333  9-9-9-24 CR2             3304 /
    8x Opteron 2378         2400   Tyan Thunder n3600R                                                     nForcePro-3600        Unganged Dual DDR2-800R  6-6-6-18 CR1             3188 /
    6x Core i7-990X Extreme HT    3466   Intel DX58SO2                                                           X58                   Triple DDR3-1333      9-9-9-24 CR1             3137 /
    8x Xeon X5550 HT        2666   Supermicro X8DTN+                                                       i5520                 Triple DDR3-1333      9-9-9-24 CR1             3094 /
    4x Core i7-3770K HT     3500   MSI Z77A-GD55                                                           Z77 Int.              Dual DDR3-1600        9-9-9-24 CR2             2995 /
    4x A10-7850K            3700   Gigabyte GA-F2A88XM-D3H                                                 A88X Int.             Dual DDR3-2133        9-11-10-31 CR2             2621 /
    4x Core i7-2600 HT      3400   Asus P8P67                                                              P67                   Dual DDR3-1333        9-9-9-24 CR1             2544 /
    8x Xeon L5320           1866   Intel S5000VCL                                                          i5000V                Dual DDR2-533FB       4-4-4-12                 2345 /
    8x Opteron 2344 HE      1700   Supermicro H8DME-2                                                      nForcePro-3600        Unganged Dual DDR2-667R  5-5-5-15 CR1             2242 /
    4x A10-6800K            4100   Gigabyte GA-F2A85X-UP4                                                  A85X Int.             Dual DDR3-2133        9-11-10-27 CR2             2159 /
    4x Phenom II X4 Black 940    3000   Asus M3N78-EM                                                           GeForce8300 Int.      Ganged Dual DDR2-800  5-5-5-18 CR2             1989 /
    4x A10-5800K            3800   Asus F2A55-M                                                            A55 Int.              Dual DDR3-1866        9-10-9-27 CR2             1986 /
    8x Atom C2750           2400   Supermicro A1SAi-2750F                                                  Avoton                Dual DDR3-1600        11-11-11-28 CR1             1965 /
    4x Core 2 Extreme QX9650    3000   Gigabyte GA-EP35C-DS3R                                                  P35                   Dual DDR3-1066        8-8-8-20 CR2             1942 /
    4x Core i7-965 Extreme HT    3200   Asus P6T Deluxe                                                         X58                   Triple DDR3-1333      9-9-9-24 CR1             1936 /
    4x A8-3850              2900   Gigabyte GA-A75M-UD2H                                                   A75 Int.              Dual DDR3-1333        9-9-9-24 CR1             1914 /
    4x Core 2 Extreme QX6700    2666   Intel D975XBX2                                                          i975X                 Dual DDR2-667         5-5-5-15                 1680 /
    4x Xeon X3430           2400   Supermicro X8SIL-F                                                      i3420                 Dual DDR3-1333        9-9-9-24 CR1             1677 /
    4x Xeon 5140            2333   Intel S5000VSA                                                          i5000V                Dual DDR2-667FB       5-5-5-15                 1464 /
    4x Phenom X4 9500       2200   Asus M3A                                                                AMD770                Ganged Dual DDR2-800  5-5-5-18 CR2             1441 /
    4x Opteron 2210 HE      1800   Tyan Thunder h2000M                                                     BCM5785               Dual DDR2-600R        5-5-5-15 CR1             1101 /
    2x Core i5-2450M HT     2900   Acer Aspire 5750G                                                       HM65 Int.             Dual DDR3-1333        9-9-9-24 CR1             1024 /
    4x Athlon 5350          2050   ASRock AM1B-ITX                                                         Yangtze Int.          DDR3-1600 SDRAM       11-11-11-28 CR2              998 /
    2x Athlon64 X2 Black 6400+    3200   MSI K9N SLI Platinum                                                    nForce570SLI          Dual DDR2-800         4-4-4-11 CR1              980 /
    Nano X2 L4350           1600   VIA EPIA-M900                                                           VX900H Int.           DDR3-1066 SDRAM       7-7-7-20 CR2              976 /
    2x Core i5-650 HT       3200   Supermicro C7SIM-Q                                                      Q57 Int.              Dual DDR3-1333        9-9-9-24 CR1              969 /
    2x Core 2 Extreme X6800    2933   Abit AB9                                                                P965                  Dual DDR2-800         5-5-5-18 CR2              925 /
    Celeron J1900           2000   Gigabyte GA-J1900N-D3V                                                  BayTrailD Int.        Dual DDR3-1333        9-9-9-24 CR1              911 /
    2x Pentium EE 955 HT    3466   Intel D955XBK                                                           i955X                 Dual DDR2-667         4-4-4-11                  828 /
    2x Xeon HT              3400   Intel SE7320SP2                                                         iE7320                Dual DDR333R          2.5-3-3-7                 809 /
    2x Core 2 Duo P8400     2266   MSI MegaBook PR201                                                      GM45 Int.             Dual DDR2-667         5-5-5-15                  730 /
    2x Athlon64 X2 4000+    2100   ASRock ALiveNF7G-HDready                                                nForce7050-630a Int.  Dual DDR2-700         5-5-5-18 CR2              641 /
    2x Pentium D 820        2800   Abit Fatal1ty F-I90HD                                                   RS600 Int.            Dual DDR2-800         5-5-5-18 CR2              548 /
    Nano L2200              1600   VIA VB8001                                                              CN896 Int.            DDR2-667 SDRAM        5-5-5-15 CR2              489 /
    P4EE HT                 3733   Intel SE7230NH1LX                                                       iE7230                Dual DDR2-667         5-5-5-15                  443 /
    2x Opteron 240          1400   MSI K8D Master3-133 FS                                                  AMD8100               Dual DDR400R          3-4-4-8 CR1               427 /
    2x Atom D2500           1866   Intel D2500CC                                                           NM10 Int.             DDR3-1066 SDRAM       7-7-7-20 CR2              350 /
    Opteron 248             2200   MSI K8T Master1-FAR                                                     K8T800                Dual DDR266R          2-3-3-6 CR1               336 /
    2x E-350                1600   ASRock E350M1                                                           A50M Int.             DDR3-1066 SDRAM       8-8-8-20 CR1              326 /
    Athlon64 3200+          2000   ASRock 939S56-M                                                         SiS756                Dual DDR400           2.5-3-3-8 CR2              306 /
    Celeron 420             1600   Intel DQ965GF                                                           Q965 Int.             Dual DDR2-667         5-5-5-15                  251 /
    Celeron D 326           2533   ASRock 775Twins-HDTV                                                    RC410 Ext.            DDR2-533 SDRAM        4-4-4-11                  246 /
    Sempron 2600+           1600   ASRock K8NF4G-SATA2                                                     GeForce6100 Int.      DDR400 SDRAM          2.5-3-3-8 CR2              245 /
    Atom 230 HT             1600   Intel D945GCLF                                                          i945GC Int.           DDR2-533 SDRAM        4-4-4-12                  162 /


--------[ FPU VP8 ]-----------------------------------------------------------------------------------------------------

    6x Core i7-4930K HT     3400   Gigabyte GA-X79-UD3                                                     X79                   Quad DDR3-1866        9-10-9-27 CR2                  6751
    4x Core i7-4770 HT      3400   Intel DZ87KLT-75K                                                       Z87 Int.              Dual DDR3-1600        9-9-9-27 CR2                  6391
    6x Core i7-3960X Extreme HT    3300   Intel DX79SI                                                            X79                   Quad DDR3-1600        9-9-9-24 CR2                  6381
    4x Xeon E3-1245 v3 HT    3400   Supermicro X10SAE                                                       C226 Int.             Dual DDR3-1600        11-11-11-28 CR1                  6367
    16x Xeon E5-2670 HT     2600   Supermicro X9DR6-F                                                      C600                  Quad DDR3-1333        9-9-9-24                      6350
    4x Core i7-3770K HT     3500   MSI Z77A-GD55                                                           Z77 Int.              Dual DDR3-1600        9-9-9-24 CR2                  6307
    6x Core i7-990X Extreme HT    3466   Intel DX58SO2                                                           X58                   Triple DDR3-1333      9-9-9-24 CR1                  5592
    4x Core i7-2600 HT      3400   Asus P8P67                                                              P67                   Dual DDR3-1333        9-9-9-24 CR1                  5279
    8x Xeon E5462           2800   Intel S5400SF                                                           i5400                 Quad DDR2-640FB       5-5-5-15                      4981
    8x FX-8350              4000   Asus M5A99X Evo R2.0                                                    AMD990X               Dual DDR3-1866        9-10-9-27 CR2                  4943
    4x Core i7-965 Extreme HT    3200   Asus P6T Deluxe                                                         X58                   Triple DDR3-1333      9-9-9-24 CR1                  4777
    8x Xeon X5550 HT        2666   Supermicro X8DTN+                                                       i5520                 Triple DDR3-1333      9-9-9-24 CR1                  4589
    6x Phenom II X6 Black 1100T    3300   Gigabyte GA-890GPA-UD3H v2                                              AMD890GX Int.         Unganged Dual DDR3-1333  9-9-9-24 CR2                  4583
    8x FX-8150              3600   Asus M5A97                                                              AMD970                Dual DDR3-1866        9-10-9-27 CR2                  3973
    12x Opteron 2431        2400   Supermicro H8DI3+-F                                                     SR5690                Unganged Dual DDR2-800R  6-6-6-18 CR1                  3920
    4x Core 2 Extreme QX9650    3000   Gigabyte GA-EP35C-DS3R                                                  P35                   Dual DDR3-1066        8-8-8-20 CR2                  3864
    4x Xeon X3430           2400   Supermicro X8SIL-F                                                      i3420                 Dual DDR3-1333        9-9-9-24 CR1                  3766
    8x Opteron 2378         2400   Tyan Thunder n3600R                                                     nForcePro-3600        Unganged Dual DDR2-800R  6-6-6-18 CR1                  3654
    4x A10-7850K            3700   Gigabyte GA-F2A88XM-D3H                                                 A88X Int.             Dual DDR3-2133        9-11-10-31 CR2                  3623
    2x Core i5-650 HT       3200   Supermicro C7SIM-Q                                                      Q57 Int.              Dual DDR3-1333        9-9-9-24 CR1                  3304
    4x Phenom II X4 Black 940    3000   Asus M3N78-EM                                                           GeForce8300 Int.      Ganged Dual DDR2-800  5-5-5-18 CR2                  3294
    4x A8-3850              2900   Gigabyte GA-A75M-UD2H                                                   A75 Int.              Dual DDR3-1333        9-9-9-24 CR1                  3238
    2x Core i5-2450M HT     2900   Acer Aspire 5750G                                                       HM65 Int.             Dual DDR3-1333        9-9-9-24 CR1                  3167
    4x A10-5800K            3800   Asus F2A55-M                                                            A55 Int.              Dual DDR3-1866        9-10-9-27 CR2                  3166
    8x Atom C2750           2400   Supermicro A1SAi-2750F                                                  Avoton                Dual DDR3-1600        11-11-11-28 CR1                  3145
    4x A10-6800K            4100   Gigabyte GA-F2A85X-UP4                                                  A85X Int.             Dual DDR3-2133        9-11-10-27 CR2                  3141
    32x Opteron 6274        2200   Supermicro H8DGI-F                                                      SR5690                Dual DDR3-1600R       11-11-11-28 CR1                  3070
    4x Core 2 Extreme QX6700    2666   Intel D975XBX2                                                          i975X                 Dual DDR2-667         5-5-5-15                      2707
    8x Xeon L5320           1866   Intel S5000VCL                                                          i5000V                Dual DDR2-533FB       4-4-4-12                      2499
    8x Opteron 2344 HE      1700   Supermicro H8DME-2                                                      nForcePro-3600        Unganged Dual DDR2-667R  5-5-5-15 CR1                  2448
    4x Athlon 5350          2050   ASRock AM1B-ITX                                                         Yangtze Int.          DDR3-1600 SDRAM       11-11-11-28 CR2                  2402
    4x Phenom X4 9500       2200   Asus M3A                                                                AMD770                Ganged Dual DDR2-800  5-5-5-18 CR2                  2382
    4x Xeon 5140            2333   Intel S5000VSA                                                          i5000V                Dual DDR2-667FB       5-5-5-15                      2369
    Celeron J1900           2000   Gigabyte GA-J1900N-D3V                                                  BayTrailD Int.        Dual DDR3-1333        9-9-9-24 CR1                  2112
    2x Athlon64 X2 Black 6400+    3200   MSI K9N SLI Platinum                                                    nForce570SLI          Dual DDR2-800         4-4-4-11 CR1                  1816
    2x Core 2 Extreme X6800    2933   Abit AB9                                                                P965                  Dual DDR2-800         5-5-5-18 CR2                  1786
    2x Core 2 Duo P8400     2266   MSI MegaBook PR201                                                      GM45 Int.             Dual DDR2-667         5-5-5-15                      1779
    4x Opteron 2210 HE      1800   Tyan Thunder h2000M                                                     BCM5785               Dual DDR2-600R        5-5-5-15 CR1                  1687
    2x Athlon64 X2 4000+    2100   ASRock ALiveNF7G-HDready                                                nForce7050-630a Int.  Dual DDR2-700         5-5-5-18 CR2                  1352
    2x Pentium EE 955 HT    3466   Intel D955XBK                                                           i955X                 Dual DDR2-667         4-4-4-11                      1215
    2x Xeon HT              3400   Intel SE7320SP2                                                         iE7320                Dual DDR333R          2.5-3-3-7                     1189
    Nano X2 L4350           1600   VIA EPIA-M900                                                           VX900H Int.           DDR3-1066 SDRAM       7-7-7-20 CR2                  1108
    2x Pentium D 820        2800   Abit Fatal1ty F-I90HD                                                   RS600 Int.            Dual DDR2-800         5-5-5-18 CR2                  1057
    P4EE HT                 3733   Intel SE7230NH1LX                                                       iE7230                Dual DDR2-667         5-5-5-15                       954
    2x E-350                1600   ASRock E350M1                                                           A50M Int.             DDR3-1066 SDRAM       8-8-8-20 CR1                   850
    Athlon64 3200+          2000   ASRock 939S56-M                                                         SiS756                Dual DDR400           2.5-3-3-8 CR2                   803
    2x Atom D2500           1866   Intel D2500CC                                                           NM10 Int.             DDR3-1066 SDRAM       7-7-7-20 CR2                   796
    2x Opteron 240          1400   MSI K8D Master3-133 FS                                                  AMD8100               Dual DDR400R          3-4-4-8 CR1                    689
    Celeron 420             1600   Intel DQ965GF                                                           Q965 Int.             Dual DDR2-667         5-5-5-15                       685
    Sempron 2600+           1600   ASRock K8NF4G-SATA2                                                     GeForce6100 Int.      DDR400 SDRAM          2.5-3-3-8 CR2                   661
    Opteron 248             2200   MSI K8T Master1-FAR                                                     K8T800                Dual DDR266R          2-3-3-6 CR1                    613
    Celeron D 326           2533   ASRock 775Twins-HDTV                                                    RC410 Ext.            DDR2-533 SDRAM        4-4-4-11                       586
    Atom 230 HT             1600   Intel D945GCLF                                                          i945GC Int.           DDR2-533 SDRAM        4-4-4-12                       511
    Nano L2200              1600   VIA VB8001                                                              CN896 Int.            DDR2-667 SDRAM        5-5-5-15 CR2                   487


--------[ FPU Julia ]---------------------------------------------------------------------------------------------------

    16x Xeon E5-2670 HT     2600   Supermicro X9DR6-F                                                      C600                  Quad DDR3-1333        9-9-9-24             62590
    32x Opteron 6274        2200   Supermicro H8DGI-F                                                      SR5690                Dual DDR3-1600R       11-11-11-28 CR1         30193
    6x Core i7-4930K HT     3400   Gigabyte GA-X79-UD3                                                     X79                   Quad DDR3-1866        9-10-9-27 CR2         28480
    4x Core i7-4770 HT      3400   Intel DZ87KLT-75K                                                       Z87 Int.              Dual DDR3-1600        9-9-9-27 CR2         26953
    4x Xeon E3-1245 v3 HT    3400   Supermicro X10SAE                                                       C226 Int.             Dual DDR3-1600        11-11-11-28 CR1         26917
    6x Core i7-3960X Extreme HT    3300   Intel DX79SI                                                            X79                   Quad DDR3-1600        9-9-9-24 CR2         26898
    4x Core i7-3770K HT     3500   MSI Z77A-GD55                                                           Z77 Int.              Dual DDR3-1600        9-9-9-24 CR2         19516
    4x Core i7-2600 HT      3400   Asus P8P67                                                              P67                   Dual DDR3-1333        9-9-9-24 CR1         18457
    12x Opteron 2431        2400   Supermicro H8DI3+-F                                                     SR5690                Unganged Dual DDR2-800R  6-6-6-18 CR1         18309
    6x Core i7-990X Extreme HT    3466   Intel DX58SO2                                                           X58                   Triple DDR3-1333      9-9-9-24 CR1         17993
    8x Xeon X5550 HT        2666   Supermicro X8DTN+                                                       i5520                 Triple DDR3-1333      9-9-9-24 CR1         17671
    8x Xeon E5462           2800   Intel S5400SF                                                           i5400                 Quad DDR2-640FB       5-5-5-15             15300
    8x FX-8350              4000   Asus M5A99X Evo R2.0                                                    AMD990X               Dual DDR3-1866        9-10-9-27 CR2         13504
    6x Phenom II X6 Black 1100T    3300   Gigabyte GA-890GPA-UD3H v2                                              AMD890GX Int.         Unganged Dual DDR3-1333  9-9-9-24 CR2         12634
    8x Opteron 2378         2400   Tyan Thunder n3600R                                                     nForcePro-3600        Unganged Dual DDR2-800R  6-6-6-18 CR1         12208
    8x FX-8150              3600   Asus M5A97                                                              AMD970                Dual DDR3-1866        9-10-9-27 CR2         11912
    4x Core i7-965 Extreme HT    3200   Asus P6T Deluxe                                                         X58                   Triple DDR3-1333      9-9-9-24 CR1         11125
    8x Xeon L5320           1866   Intel S5000VCL                                                          i5000V                Dual DDR2-533FB       4-4-4-12              8956
    8x Atom C2750           2400   Supermicro A1SAi-2750F                                                  Avoton                Dual DDR3-1600        11-11-11-28 CR1          8747
    8x Opteron 2344 HE      1700   Supermicro H8DME-2                                                      nForcePro-3600        Unganged Dual DDR2-667R  5-5-5-15 CR1          8681
    4x Core 2 Extreme QX9650    3000   Gigabyte GA-EP35C-DS3R                                                  P35                   Dual DDR3-1066        8-8-8-20 CR2          8201
    4x Xeon X3430           2400   Supermicro X8SIL-F                                                      i3420                 Dual DDR3-1333        9-9-9-24 CR1          8070
    4x Phenom II X4 Black 940    3000   Asus M3N78-EM                                                           GeForce8300 Int.      Ganged Dual DDR2-800  5-5-5-18 CR2          7608
    2x Core i5-2450M HT     2900   Acer Aspire 5750G                                                       HM65 Int.             Dual DDR3-1333        9-9-9-24 CR1          7487
    4x A8-3850              2900   Gigabyte GA-A75M-UD2H                                                   A75 Int.              Dual DDR3-1333        9-9-9-24 CR1          7438
    4x A10-6800K            4100   Gigabyte GA-F2A85X-UP4                                                  A85X Int.             Dual DDR3-2133        9-11-10-27 CR2          6999
    4x A10-5800K            3800   Asus F2A55-M                                                            A55 Int.              Dual DDR3-1866        9-10-9-27 CR2          6474
    4x Core 2 Extreme QX6700    2666   Intel D975XBX2                                                          i975X                 Dual DDR2-667         5-5-5-15              6411
    4x A10-7850K            3700   Gigabyte GA-F2A88XM-D3H                                                 A88X Int.             Dual DDR3-2133        9-11-10-31 CR2          6207
    4x Xeon 5140            2333   Intel S5000VSA                                                          i5000V                Dual DDR2-667FB       5-5-5-15              5587
    4x Phenom X4 9500       2200   Asus M3A                                                                AMD770                Ganged Dual DDR2-800  5-5-5-18 CR2          5579
    2x Core i5-650 HT       3200   Supermicro C7SIM-Q                                                      Q57 Int.              Dual DDR3-1333        9-9-9-24 CR1          5551
    4x Athlon 5350          2050   ASRock AM1B-ITX                                                         Yangtze Int.          DDR3-1600 SDRAM       11-11-11-28 CR2          5235
    Celeron J1900           2000   Gigabyte GA-J1900N-D3V                                                  BayTrailD Int.        Dual DDR3-1333        9-9-9-24 CR1          4059
    2x Core 2 Extreme X6800    2933   Abit AB9                                                                P965                  Dual DDR2-800         5-5-5-18 CR2          3534
    2x Core 2 Duo P8400     2266   MSI MegaBook PR201                                                      GM45 Int.             Dual DDR2-667         5-5-5-15              3079
    2x Pentium EE 955 HT    3466   Intel D955XBK                                                           i955X                 Dual DDR2-667         4-4-4-11              2440
    2x Xeon HT              3400   Intel SE7320SP2                                                         iE7320                Dual DDR333R          2.5-3-3-7             2393
    4x Opteron 2210 HE      1800   Tyan Thunder h2000M                                                     BCM5785               Dual DDR2-600R        5-5-5-15 CR1          2309
    2x Athlon64 X2 Black 6400+    3200   MSI K9N SLI Platinum                                                    nForce570SLI          Dual DDR2-800         4-4-4-11 CR1          2053
    2x Pentium D 820        2800   Abit Fatal1ty F-I90HD                                                   RS600 Int.            Dual DDR2-800         5-5-5-18 CR2          1988
    Nano X2 L4350           1600   VIA EPIA-M900                                                           VX900H Int.           DDR3-1066 SDRAM       7-7-7-20 CR2          1865
    2x Athlon64 X2 4000+    2100   ASRock ALiveNF7G-HDready                                                nForce7050-630a Int.  Dual DDR2-700         5-5-5-18 CR2          1342
    P4EE HT                 3733   Intel SE7230NH1LX                                                       iE7230                Dual DDR2-667         5-5-5-15              1308
    2x Atom D2500           1866   Intel D2500CC                                                           NM10 Int.             DDR3-1066 SDRAM       7-7-7-20 CR2          1117
    Celeron 420             1600   Intel DQ965GF                                                           Q965 Int.             Dual DDR2-667         5-5-5-15               958
    2x E-350                1600   ASRock E350M1                                                           A50M Int.             DDR3-1066 SDRAM       8-8-8-20 CR1           911
    2x Opteron 240          1400   MSI K8D Master3-133 FS                                                  AMD8100               Dual DDR400R          3-4-4-8 CR1            896
    Celeron D 326           2533   ASRock 775Twins-HDTV                                                    RC410 Ext.            DDR2-533 SDRAM        4-4-4-11               893
    Nano L2200              1600   VIA VB8001                                                              CN896 Int.            DDR2-667 SDRAM        5-5-5-15 CR2           792
    Opteron 248             2200   MSI K8T Master1-FAR                                                     K8T800                Dual DDR266R          2-3-3-6 CR1            702
    Athlon64 3200+          2000   ASRock 939S56-M                                                         SiS756                Dual DDR400           2.5-3-3-8 CR2           641
    Atom 230 HT             1600   Intel D945GCLF                                                          i945GC Int.           DDR2-533 SDRAM        4-4-4-12               589
    Sempron 2600+           1600   ASRock K8NF4G-SATA2                                                     GeForce6100 Int.      DDR400 SDRAM          2.5-3-3-8 CR2           513


--------[ FPU Mandel ]--------------------------------------------------------------------------------------------------

    16x Xeon E5-2670 HT     2600   Supermicro X9DR6-F                                                      C600                  Quad DDR3-1333        9-9-9-24             33143
    32x Opteron 6274        2200   Supermicro H8DGI-F                                                      SR5690                Dual DDR3-1600R       11-11-11-28 CR1         15402
    6x Core i7-4930K HT     3400   Gigabyte GA-X79-UD3                                                     X79                   Quad DDR3-1866        9-10-9-27 CR2         15100
    4x Core i7-4770 HT      3400   Intel DZ87KLT-75K                                                       Z87 Int.              Dual DDR3-1600        9-9-9-27 CR2         14429
    4x Xeon E3-1245 v3 HT    3400   Supermicro X10SAE                                                       C226 Int.             Dual DDR3-1600        11-11-11-28 CR1         14418
    6x Core i7-3960X Extreme HT    3300   Intel DX79SI                                                            X79                   Quad DDR3-1600        9-9-9-24 CR2         14253
    4x Core i7-3770K HT     3500   MSI Z77A-GD55                                                           Z77 Int.              Dual DDR3-1600        9-9-9-24 CR2         10344
    4x Core i7-2600 HT      3400   Asus P8P67                                                              P67                   Dual DDR3-1333        9-9-9-24 CR1          9777
    12x Opteron 2431        2400   Supermicro H8DI3+-F                                                     SR5690                Unganged Dual DDR2-800R  6-6-6-18 CR1          9318
    6x Core i7-990X Extreme HT    3466   Intel DX58SO2                                                           X58                   Triple DDR3-1333      9-9-9-24 CR1          8672
    8x Xeon X5550 HT        2666   Supermicro X8DTN+                                                       i5520                 Triple DDR3-1333      9-9-9-24 CR1          8614
    8x Xeon E5462           2800   Intel S5400SF                                                           i5400                 Quad DDR2-640FB       5-5-5-15              8066
    8x FX-8350              4000   Asus M5A99X Evo R2.0                                                    AMD990X               Dual DDR3-1866        9-10-9-27 CR2          6901
    6x Phenom II X6 Black 1100T    3300   Gigabyte GA-890GPA-UD3H v2                                              AMD890GX Int.         Unganged Dual DDR3-1333  9-9-9-24 CR2          6434
    8x Opteron 2378         2400   Tyan Thunder n3600R                                                     nForcePro-3600        Unganged Dual DDR2-800R  6-6-6-18 CR1          6211
    8x FX-8150              3600   Asus M5A97                                                              AMD970                Dual DDR3-1866        9-10-9-27 CR2          6094
    4x Core i7-965 Extreme HT    3200   Asus P6T Deluxe                                                         X58                   Triple DDR3-1333      9-9-9-24 CR1          5395
    8x Xeon L5320           1866   Intel S5000VCL                                                          i5000V                Dual DDR2-533FB       4-4-4-12              4626
    8x Opteron 2344 HE      1700   Supermicro H8DME-2                                                      nForcePro-3600        Unganged Dual DDR2-667R  5-5-5-15 CR1          4418
    4x Core 2 Extreme QX9650    3000   Gigabyte GA-EP35C-DS3R                                                  P35                   Dual DDR3-1066        8-8-8-20 CR2          4333
    4x Xeon X3430           2400   Supermicro X8SIL-F                                                      i3420                 Dual DDR3-1333        9-9-9-24 CR1          4179
    2x Core i5-2450M HT     2900   Acer Aspire 5750G                                                       HM65 Int.             Dual DDR3-1333        9-9-9-24 CR1          3974
    4x A8-3850              2900   Gigabyte GA-A75M-UD2H                                                   A75 Int.              Dual DDR3-1333        9-9-9-24 CR1          3973
    4x Phenom II X4 Black 940    3000   Asus M3N78-EM                                                           GeForce8300 Int.      Ganged Dual DDR2-800  5-5-5-18 CR2          3874
    4x A10-6800K            4100   Gigabyte GA-F2A85X-UP4                                                  A85X Int.             Dual DDR3-2133        9-11-10-27 CR2          3474
    4x Core 2 Extreme QX6700    2666   Intel D975XBX2                                                          i975X                 Dual DDR2-667         5-5-5-15              3308
    4x A10-5800K            3800   Asus F2A55-M                                                            A55 Int.              Dual DDR3-1866        9-10-9-27 CR2          3228
    4x A10-7850K            3700   Gigabyte GA-F2A88XM-D3H                                                 A88X Int.             Dual DDR3-2133        9-11-10-31 CR2          3176
    8x Atom C2750           2400   Supermicro A1SAi-2750F                                                  Avoton                Dual DDR3-1600        11-11-11-28 CR1          2982
    4x Xeon 5140            2333   Intel S5000VSA                                                          i5000V                Dual DDR2-667FB       5-5-5-15              2889
    4x Phenom X4 9500       2200   Asus M3A                                                                AMD770                Ganged Dual DDR2-800  5-5-5-18 CR2          2840
    2x Core i5-650 HT       3200   Supermicro C7SIM-Q                                                      Q57 Int.              Dual DDR3-1333        9-9-9-24 CR1          2676
    4x Athlon 5350          2050   ASRock AM1B-ITX                                                         Yangtze Int.          DDR3-1600 SDRAM       11-11-11-28 CR2          2335
    2x Core 2 Extreme X6800    2933   Abit AB9                                                                P965                  Dual DDR2-800         5-5-5-18 CR2          1823
    2x Core 2 Duo P8400     2266   MSI MegaBook PR201                                                      GM45 Int.             Dual DDR2-667         5-5-5-15              1626
    2x Pentium EE 955 HT    3466   Intel D955XBK                                                           i955X                 Dual DDR2-667         4-4-4-11              1482
    2x Xeon HT              3400   Intel SE7320SP2                                                         iE7320                Dual DDR333R          2.5-3-3-7             1449
    Celeron J1900           2000   Gigabyte GA-J1900N-D3V                                                  BayTrailD Int.        Dual DDR3-1333        9-9-9-24 CR1          1383
    4x Opteron 2210 HE      1800   Tyan Thunder h2000M                                                     BCM5785               Dual DDR2-600R        5-5-5-15 CR1          1182
    2x Pentium D 820        2800   Abit Fatal1ty F-I90HD                                                   RS600 Int.            Dual DDR2-800         5-5-5-18 CR2          1062
    2x Athlon64 X2 Black 6400+    3200   MSI K9N SLI Platinum                                                    nForce570SLI          Dual DDR2-800         4-4-4-11 CR1          1051
    Nano X2 L4350           1600   VIA EPIA-M900                                                           VX900H Int.           DDR3-1066 SDRAM       7-7-7-20 CR2           856
    P4EE HT                 3733   Intel SE7230NH1LX                                                       iE7230                Dual DDR2-667         5-5-5-15               795
    2x Athlon64 X2 4000+    2100   ASRock ALiveNF7G-HDready                                                nForce7050-630a Int.  Dual DDR2-700         5-5-5-18 CR2           688
    Celeron 420             1600   Intel DQ965GF                                                           Q965 Int.             Dual DDR2-667         5-5-5-15               494
    Celeron D 326           2533   ASRock 775Twins-HDTV                                                    RC410 Ext.            DDR2-533 SDRAM        4-4-4-11               476
    2x Opteron 240          1400   MSI K8D Master3-133 FS                                                  AMD8100               Dual DDR400R          3-4-4-8 CR1            458
    2x E-350                1600   ASRock E350M1                                                           A50M Int.             DDR3-1066 SDRAM       8-8-8-20 CR1           427
    Nano L2200              1600   VIA VB8001                                                              CN896 Int.            DDR2-667 SDRAM        5-5-5-15 CR2           404
    2x Atom D2500           1866   Intel D2500CC                                                           NM10 Int.             DDR3-1066 SDRAM       7-7-7-20 CR2           402
    Opteron 248             2200   MSI K8T Master1-FAR                                                     K8T800                Dual DDR266R          2-3-3-6 CR1            359
    Athlon64 3200+          2000   ASRock 939S56-M                                                         SiS756                Dual DDR400           2.5-3-3-8 CR2           328
    Sempron 2600+           1600   ASRock K8NF4G-SATA2                                                     GeForce6100 Int.      DDR400 SDRAM          2.5-3-3-8 CR2           263
    Atom 230 HT             1600   Intel D945GCLF                                                          i945GC Int.           DDR2-533 SDRAM        4-4-4-12               193


--------[ FPU SinJulia ]------------------------------------------------------------------------------------------------

    16x Xeon E5-2670 HT     2600   Supermicro X9DR6-F                                                      C600                  Quad DDR3-1333        9-9-9-24             16035
    6x Core i7-990X Extreme HT    3466   Intel DX58SO2                                                           X58                   Triple DDR3-1333      9-9-9-24 CR1          7471
    6x Core i7-4930K HT     3400   Gigabyte GA-X79-UD3                                                     X79                   Quad DDR3-1866        9-10-9-27 CR2          7274
    6x Core i7-3960X Extreme HT    3300   Intel DX79SI                                                            X79                   Quad DDR3-1600        9-9-9-24 CR2          7214
    8x Xeon X5550 HT        2666   Supermicro X8DTN+                                                       i5520                 Triple DDR3-1333      9-9-9-24 CR1          6993
    32x Opteron 6274        2200   Supermicro H8DGI-F                                                      SR5690                Dual DDR3-1600R       11-11-11-28 CR1          6822
    4x Core i7-3770K HT     3500   MSI Z77A-GD55                                                           Z77 Int.              Dual DDR3-1600        9-9-9-24 CR2          4984
    4x Core i7-4770 HT      3400   Intel DZ87KLT-75K                                                       Z87 Int.              Dual DDR3-1600        9-9-9-27 CR2          4716
    4x Core i7-2600 HT      3400   Asus P8P67                                                              P67                   Dual DDR3-1333        9-9-9-24 CR1          4679
    12x Opteron 2431        2400   Supermicro H8DI3+-F                                                     SR5690                Unganged Dual DDR2-800R  6-6-6-18 CR1          4658
    4x Core i7-965 Extreme HT    3200   Asus P6T Deluxe                                                         X58                   Triple DDR3-1333      9-9-9-24 CR1          4587
    4x Xeon E3-1245 v3 HT    3400   Supermicro X10SAE                                                       C226 Int.             Dual DDR3-1600        11-11-11-28 CR1          4583
    8x Xeon E5462           2800   Intel S5400SF                                                           i5400                 Quad DDR2-640FB       5-5-5-15              4132
    6x Phenom II X6 Black 1100T    3300   Gigabyte GA-890GPA-UD3H v2                                              AMD890GX Int.         Unganged Dual DDR3-1333  9-9-9-24 CR2          3213
    8x Opteron 2378         2400   Tyan Thunder n3600R                                                     nForcePro-3600        Unganged Dual DDR2-800R  6-6-6-18 CR1          3101
    8x FX-8350              4000   Asus M5A99X Evo R2.0                                                    AMD990X               Dual DDR3-1866        9-10-9-27 CR2          2833
    8x FX-8150              3600   Asus M5A97                                                              AMD970                Dual DDR3-1866        9-10-9-27 CR2          2645
    8x Xeon L5320           1866   Intel S5000VCL                                                          i5000V                Dual DDR2-533FB       4-4-4-12              2590
    2x Core i5-650 HT       3200   Supermicro C7SIM-Q                                                      Q57 Int.              Dual DDR3-1333        9-9-9-24 CR1          2306
    4x Xeon X3430           2400   Supermicro X8SIL-F                                                      i3420                 Dual DDR3-1333        9-9-9-24 CR1          2268
    4x Core 2 Extreme QX9650    3000   Gigabyte GA-EP35C-DS3R                                                  P35                   Dual DDR3-1066        8-8-8-20 CR2          2219
    8x Opteron 2344 HE      1700   Supermicro H8DME-2                                                      nForcePro-3600        Unganged Dual DDR2-667R  5-5-5-15 CR1          2210
    8x Atom C2750           2400   Supermicro A1SAi-2750F                                                  Avoton                Dual DDR3-1600        11-11-11-28 CR1          2042
    4x Phenom II X4 Black 940    3000   Asus M3N78-EM                                                           GeForce8300 Int.      Ganged Dual DDR2-800  5-5-5-18 CR2          1934
    2x Core i5-2450M HT     2900   Acer Aspire 5750G                                                       HM65 Int.             Dual DDR3-1333        9-9-9-24 CR1          1877
    4x A8-3850              2900   Gigabyte GA-A75M-UD2H                                                   A75 Int.              Dual DDR3-1333        9-9-9-24 CR1          1872
    4x Core 2 Extreme QX6700    2666   Intel D975XBX2                                                          i975X                 Dual DDR2-667         5-5-5-15              1856
    4x Xeon 5140            2333   Intel S5000VSA                                                          i5000V                Dual DDR2-667FB       5-5-5-15              1618
    4x A10-7850K            3700   Gigabyte GA-F2A88XM-D3H                                                 A88X Int.             Dual DDR3-2133        9-11-10-31 CR2          1481
    4x A10-6800K            4100   Gigabyte GA-F2A85X-UP4                                                  A85X Int.             Dual DDR3-2133        9-11-10-27 CR2          1480
    4x Phenom X4 9500       2200   Asus M3A                                                                AMD770                Ganged Dual DDR2-800  5-5-5-18 CR2          1421
    4x A10-5800K            3800   Asus F2A55-M                                                            A55 Int.              Dual DDR3-1866        9-10-9-27 CR2          1377
    4x Athlon 5350          2050   ASRock AM1B-ITX                                                         Yangtze Int.          DDR3-1600 SDRAM       11-11-11-28 CR2          1260
    4x Opteron 2210 HE      1800   Tyan Thunder h2000M                                                     BCM5785               Dual DDR2-600R        5-5-5-15 CR1          1178
    2x Athlon64 X2 Black 6400+    3200   MSI K9N SLI Platinum                                                    nForce570SLI          Dual DDR2-800         4-4-4-11 CR1          1049
    2x Core 2 Extreme X6800    2933   Abit AB9                                                                P965                  Dual DDR2-800         5-5-5-18 CR2          1021
    2x Pentium EE 955 HT    3466   Intel D955XBK                                                           i955X                 Dual DDR2-667         4-4-4-11               960
    Celeron J1900           2000   Gigabyte GA-J1900N-D3V                                                  BayTrailD Int.        Dual DDR3-1333        9-9-9-24 CR1           948
    2x Xeon HT              3400   Intel SE7320SP2                                                         iE7320                Dual DDR333R          2.5-3-3-7              942
    2x Core 2 Duo P8400     2266   MSI MegaBook PR201                                                      GM45 Int.             Dual DDR2-667         5-5-5-15               835
    2x Athlon64 X2 4000+    2100   ASRock ALiveNF7G-HDready                                                nForce7050-630a Int.  Dual DDR2-700         5-5-5-18 CR2           685
    P4EE HT                 3733   Intel SE7230NH1LX                                                       iE7230                Dual DDR2-667         5-5-5-15               516
    2x E-350                1600   ASRock E350M1                                                           A50M Int.             DDR3-1066 SDRAM       8-8-8-20 CR1           505
    2x Opteron 240          1400   MSI K8D Master3-133 FS                                                  AMD8100               Dual DDR400R          3-4-4-8 CR1            457
    2x Pentium D 820        2800   Abit Fatal1ty F-I90HD                                                   RS600 Int.            Dual DDR2-800         5-5-5-18 CR2           452
    Opteron 248             2200   MSI K8T Master1-FAR                                                     K8T800                Dual DDR266R          2-3-3-6 CR1            359
    Athlon64 3200+          2000   ASRock 939S56-M                                                         SiS756                Dual DDR400           2.5-3-3-8 CR2           327
    Nano X2 L4350           1600   VIA EPIA-M900                                                           VX900H Int.           DDR3-1066 SDRAM       7-7-7-20 CR2           284
    Celeron 420             1600   Intel DQ965GF                                                           Q965 Int.             Dual DDR2-667         5-5-5-15               277
    Sempron 2600+           1600   ASRock K8NF4G-SATA2                                                     GeForce6100 Int.      DDR400 SDRAM          2.5-3-3-8 CR2           262
    2x Atom D2500           1866   Intel D2500CC                                                           NM10 Int.             DDR3-1066 SDRAM       7-7-7-20 CR2           262
    Atom 230 HT             1600   Intel D945GCLF                                                          i945GC Int.           DDR2-533 SDRAM        4-4-4-12               205
    Celeron D 326           2533   ASRock 775Twins-HDTV                                                    RC410 Ext.            DDR2-533 SDRAM        4-4-4-11               203
    Nano L2200              1600   VIA VB8001                                                              CN896 Int.            DDR2-667 SDRAM        5-5-5-15 CR2           131


--------[ Debug - PCI ]-------------------------------------------------------------------------------------------------

    B00 D00 F00:  Intel Sandy Bridge-MB - Host Bridge/DRAM Controller
                  
      Offset 000:  86 80 04 01  06 00 90 20  09 00 00 06  00 00 00 00 
      Offset 010:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  00 00 00 00  00 00 00 00  00 00 00 00  25 10 04 05 
      Offset 030:  00 00 00 00  E0 00 00 00  00 00 00 00  00 00 00 00 
      Offset 040:  01 90 D1 FE  00 00 00 00  01 00 D1 FE  00 00 00 00 
      Offset 050:  21 02 00 00  19 00 00 00  0F 00 90 9F  00 00 00 97 
      Offset 060:  01 00 00 E0  00 00 00 00  01 80 D1 FE  00 00 00 00 
      Offset 070:  00 00 80 FF  00 00 00 00  00 0C 80 FF  7F 00 00 00 
      Offset 080:  10 11 11 11  11 33 33 00  1A 00 00 00  00 00 00 00 
      Offset 090:  01 00 00 00  01 00 00 00  01 00 D0 5F  01 00 00 00 
      Offset 0A0:  01 00 00 00  01 00 00 00  01 00 E0 5F  01 00 00 00 
      Offset 0B0:  01 00 A0 97  01 00 80 97  01 00 00 97  01 00 A0 9F 
      Offset 0C0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 FF 
      Offset 0E0:  09 00 0C 01  9E 61 80 E2  90 00 00 14  00 00 00 00 
      Offset 0F0:  00 00 00 01  00 00 00 00  B8 0F 06 00  00 00 00 00 

    B00 D01 F00:  Intel Sandy Bridge - PCI Express Controller
                  
      Offset 000:  86 80 01 01  07 00 10 00  09 00 04 06  10 00 81 00 
      Offset 010:  00 00 00 00  00 00 00 00  00 01 01 00  20 20 00 20 
      Offset 020:  00 D0 00 D1  01 A0 F1 B1  00 00 00 00  00 00 00 00 
      Offset 030:  00 00 00 00  88 00 00 00  00 00 00 00  10 01 00 00 
      Offset 040:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 050:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 060:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 0A 
      Offset 080:  01 90 03 C8  08 00 00 00  0D 80 00 00  25 10 04 05 
      Offset 090:  05 A0 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0A0:  10 00 42 01  00 80 00 00  00 00 00 00  02 2D 21 02 
      Offset 0B0:  53 00 01 11  80 25 0C 00  00 00 48 00  00 00 00 00 
      Offset 0C0:  00 00 00 00  00 08 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  42 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 01 00  00 00 00 00  00 00 10 00 

    B00 D02 F00:  Intel Sandy Bridge-MB - Integrated Graphics Controller (MB GT2 1.3GHz+)
                  
      Offset 000:  86 80 26 01  07 04 90 00  09 00 00 03  00 00 00 00 
      Offset 010:  04 00 40 D1  00 00 00 00  0C 00 00 C0  00 00 00 00 
      Offset 020:  01 30 00 00  00 00 00 00  00 00 00 00  25 10 04 05 
      Offset 030:  00 00 00 00  90 00 00 00  00 00 00 00  00 01 00 00 
      Offset 040:  09 00 0C 01  9E 61 80 E2  90 00 00 14  00 00 00 00 
      Offset 050:  21 02 00 00  19 00 00 00  00 00 00 00  01 00 A0 97 
      Offset 060:  00 00 02 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 090:  05 D0 01 00  0C F0 E0 FE  B2 49 00 00  00 00 00 00 
      Offset 0A0:  00 00 00 00  13 00 06 03  00 00 00 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  01 A4 22 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 80 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  00 00 06 00  18 50 F6 96 

    B00 D16 F00:  Intel Cougar Point PCH - Manageability Engine Interface 1 [B-2]
                  
      Offset 000:  86 80 3A 1C  06 00 10 00  04 00 80 07  00 00 80 00 
      Offset 010:  04 40 A0 D1  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  00 00 00 00  00 00 00 00  00 00 00 00  25 10 04 05 
      Offset 030:  00 00 00 00  50 00 00 00  00 00 00 00  10 01 00 00 
      Offset 040:  45 02 00 1E  08 00 01 80  06 00 00 66  F8 0F 00 10 
      Offset 050:  01 8C 03 C8  08 00 00 00  00 00 00 00  00 00 00 00 
      Offset 060:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  00 00 00 00  00 00 00 00  00 00 00 00  05 00 80 00 
      Offset 090:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0A0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  02 00 00 C0 
      Offset 0C0:  66 07 AE 2E  5C 76 FA 9C  F8 2E 7B 11  A1 15 4A 43 
      Offset 0D0:  CF 3F 37 BA  7E 3A 29 98  39 37 1D F5  82 C2 4B 5E 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 

    B00 D1A F00:  Intel Cougar Point PCH - USB EHCI #2 Controller [B-2]
                  
      Offset 000:  86 80 2D 1C  06 00 90 02  04 20 03 0C  00 00 00 00 
      Offset 010:  00 A0 A0 D1  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  00 00 00 00  00 00 00 00  00 00 00 00  25 10 04 05 
      Offset 030:  00 00 00 00  50 00 00 00  00 00 00 00  10 01 00 00 
      Offset 040:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 050:  01 58 C2 C9  00 00 00 00  0A 98 A0 20  00 00 00 00 
      Offset 060:  20 20 FF 07  00 00 00 00  01 00 00 01  00 20 00 00 
      Offset 070:  00 00 DF 3F  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  00 00 80 00  11 88 0C 93  30 0D 00 24  00 00 00 00 
      Offset 090:  00 00 00 00  00 00 00 00  13 00 06 03  00 00 00 00 
      Offset 0A0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 AA FF 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  84 50 B2 96 
      Offset 0F0:  00 00 00 00  88 85 80 00  87 0F 06 08  08 17 5B 20 

    B00 D1B F00:  Intel Cougar Point PCH - High Definition Audio Controller [B-2]
                  
      Offset 000:  86 80 20 1C  06 00 10 00  04 00 03 04  10 00 00 00 
      Offset 010:  04 00 A0 D1  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  00 00 00 00  00 00 00 00  00 00 00 00  25 10 04 05 
      Offset 030:  00 00 00 00  50 00 00 00  00 00 00 00  16 01 00 00 
      Offset 040:  01 00 00 45  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 050:  01 60 42 C8  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 060:  05 70 80 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  10 00 91 00  00 00 00 10  00 08 10 00  00 00 00 00 
      Offset 080:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 090:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0A0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 04 00 01  02 24 00 40  00 0C A3 82  10 00 33 02 
      Offset 0D0:  00 0C A3 02  10 00 33 02  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  87 0F 06 08  00 00 00 00 

    B00 D1C F00:  Intel Cougar Point PCH - PCI Express Port 1 [B-2]
                  
      Offset 000:  86 80 10 1C  06 00 10 00  B4 00 04 06  10 00 81 00 
      Offset 010:  00 00 00 00  00 00 00 00  00 02 02 00  F0 00 00 20 
      Offset 020:  F0 FF 00 00  81 D1 81 D1  00 00 00 00  00 00 00 00 
      Offset 030:  00 00 00 00  40 00 00 00  00 00 00 00  11 01 00 00 
      Offset 040:  10 80 42 01  00 80 00 00  00 00 10 00  12 3C 12 01 
      Offset 050:  42 00 11 70  00 B2 04 00  00 00 40 01  00 00 00 00 
      Offset 060:  00 00 00 00  16 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  02 00 01 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  05 90 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 090:  0D A0 00 00  25 10 04 05  00 00 00 00  00 00 00 00 
      Offset 0A0:  01 00 02 C8  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  00 00 00 01  02 0B 00 00  00 80 11 81  00 00 00 00 
      Offset 0E0:  00 3F 00 00  00 00 00 00  01 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  87 0F 06 08  00 00 00 00 

    B00 D1C F01:  Intel Cougar Point PCH - PCI Express Port 2 [B-2]
                  
      Offset 000:  86 80 12 1C  06 00 10 00  B4 00 04 06  10 00 81 00 
      Offset 010:  00 00 00 00  00 00 00 00  00 03 03 00  F0 00 00 00 
      Offset 020:  90 D1 90 D1  F1 FF 01 00  00 00 00 00  00 00 00 00 
      Offset 030:  00 00 00 00  40 00 00 00  00 00 00 00  10 02 00 00 
      Offset 040:  10 80 42 01  00 80 00 00  00 00 10 00  12 3C 12 02 
      Offset 050:  42 00 11 70  00 B2 0C 00  00 00 40 01  00 00 00 00 
      Offset 060:  00 00 00 00  16 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  02 00 01 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  05 90 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 090:  0D A0 00 00  25 10 04 05  00 00 00 00  00 00 00 00 
      Offset 0A0:  01 00 02 C8  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  00 00 00 01  02 0B 00 00  00 80 11 81  00 00 00 00 
      Offset 0E0:  00 03 00 00  00 00 00 00  01 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  87 0F 06 08  00 00 00 00 

    B00 D1D F00:  Intel Cougar Point PCH - USB EHCI #1 Controller [B-2]
                  
      Offset 000:  86 80 26 1C  06 00 90 02  04 20 03 0C  00 00 00 00 
      Offset 010:  00 90 A0 D1  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  00 00 00 00  00 00 00 00  00 00 00 00  25 10 04 05 
      Offset 030:  00 00 00 00  50 00 00 00  00 00 00 00  17 01 00 00 
      Offset 040:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 050:  01 58 C2 C9  00 00 00 00  0A 98 A0 20  00 00 00 00 
      Offset 060:  20 20 01 06  00 00 00 00  01 00 00 01  00 20 00 00 
      Offset 070:  00 00 DF 3F  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  00 00 80 00  11 88 0C 93  30 0D 00 24  00 00 00 00 
      Offset 090:  00 00 00 00  00 00 00 00  13 00 06 03  00 01 00 00 
      Offset 0A0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 AA FF 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  84 50 78 96 
      Offset 0F0:  00 00 00 00  88 85 80 00  87 0F 06 08  08 17 5B 20 

    B00 D1F F00:  Intel HM65 PCH - LPC Interface Controller [B-2]
                  
      Offset 000:  86 80 49 1C  07 00 10 02  04 00 01 06  00 00 80 00 
      Offset 010:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  00 00 00 00  00 00 00 00  00 00 00 00  25 10 04 05 
      Offset 030:  00 00 00 00  E0 00 00 00  00 00 00 00  00 00 00 00 
      Offset 040:  01 04 00 00  80 00 00 00  01 05 00 00  10 00 00 00 
      Offset 050:  F8 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 060:  8A 87 8B 8A  D0 00 00 00  80 8B 8B 87  F8 F0 00 00 
      Offset 070:  78 F0 79 F0  7A F0 7B F0  7C F0 7D F0  7E F0 7F F0 
      Offset 080:  10 00 03 3F  00 00 00 00  2D FF 04 00  69 00 04 00 
      Offset 090:  00 00 00 00  00 0F 00 00  00 00 00 00  00 00 00 00 
      Offset 0A0:  10 0E A0 00  09 18 06 00  00 47 00 00  00 00 00 80 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 A0 81 00  00 00 00 00 
      Offset 0C0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  33 22 11 00  67 45 00 00  CF FF 00 00  00 00 00 00 
      Offset 0E0:  09 00 0C 10  00 00 00 00  13 06 64 0E  00 00 00 00 
      Offset 0F0:  01 C0 D1 FE  00 00 00 00  87 0F 06 08  00 00 00 00 

    B00 D1F F02:  Intel Cougar Point-M PCH - SATA AHCI 6-Port Controller [B-2]
                  
      Offset 000:  86 80 03 1C  07 04 B0 02  04 01 06 01  00 00 00 00 
      Offset 010:  99 30 00 00  BD 30 00 00  91 30 00 00  B9 30 00 00 
      Offset 020:  61 30 00 00  00 80 A0 D1  00 00 00 00  25 10 04 05 
      Offset 030:  00 00 00 00  80 00 00 00  00 00 00 00  00 02 00 00 
      Offset 040:  00 80 00 80  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 050:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 060:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  01 A8 03 40  08 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  05 70 01 00  0C F0 E0 FE  91 49 00 00  00 00 00 00 
      Offset 090:  60 3C 03 83  83 01 00 3C  08 42 5C 01  00 00 00 00 
      Offset 0A0:  E0 00 00 00  39 00 39 00  12 B0 10 00  48 00 00 00 
      Offset 0B0:  13 00 06 03  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  87 0F 06 08  00 00 00 00 

    B00 D1F F03:  Intel Cougar Point PCH - SMBus Controller [B-2]
                  
      Offset 000:  86 80 22 1C  03 00 80 02  04 00 05 0C  00 00 00 00 
      Offset 010:  04 60 A0 D1  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  41 30 00 00  00 00 00 00  00 00 00 00  25 10 04 05 
      Offset 030:  00 00 00 00  00 00 00 00  00 00 00 00  0A 03 00 00 
      Offset 040:  01 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 050:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 060:  03 04 04 00  00 00 08 08  00 00 00 00  00 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  04 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 090:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0A0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  87 0F 06 08  00 00 00 00 

    B00 D1F F06:  Intel Cougar Point PCH - Thermal Management Controller [B-2]
                  
      Offset 000:  86 80 24 1C  00 00 10 00  04 00 80 11  00 00 00 00 
      Offset 010:  04 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  00 00 00 00  00 00 00 00  00 00 00 00  25 10 04 05 
      Offset 030:  00 00 00 00  50 00 00 00  00 00 00 00  0B 01 00 00 
      Offset 040:  05 00 A0 9F  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 050:  01 00 23 00  08 00 00 00  00 00 00 00  00 00 00 00 
      Offset 060:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  05 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 090:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0A0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  87 0F 06 08  00 00 00 00 

    B02 D00 F00:  Broadcom NetLink BCM57785 PCI-E Gigabit Ethernet Controller
                  
      Offset 000:  E4 14 B5 16  06 04 10 00  10 00 00 02  10 00 80 00 
      Offset 010:  0C 00 83 D1  00 00 00 00  0C 00 84 D1  00 00 00 00 
      Offset 020:  00 00 00 00  00 00 00 00  00 00 00 00  25 10 04 05 
      Offset 030:  00 00 00 00  48 00 00 00  00 00 00 00  00 01 00 00 
      Offset 040:  00 00 00 00  00 00 00 01  01 58 03 C8  08 20 00 08 
      Offset 050:  03 00 00 00  00 00 00 00  05 A0 86 00  00 00 00 00 
      Offset 060:  00 00 00 00  00 00 00 00  98 02 00 F1  50 00 D8 01 
      Offset 070:  92 10 00 00  00 00 00 00  2C 00 00 00  F0 0D 00 00 
      Offset 080:  25 10 04 05  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 090:  00 00 00 00  00 00 00 00  00 00 00 00  C8 00 00 00 
      Offset 0A0:  11 AC 04 80  02 00 00 00  22 01 00 00  10 00 02 00 
      Offset 0B0:  80 8D 90 05  00 50 19 00  11 5C 07 00  42 01 11 10 
      Offset 0C0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  1F 00 00 00  00 00 00 00  00 00 00 00  01 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  00 00 00 00  00 51 78 57 

    B02 D00 F01:  Broadcom SD Card Reader
                  
      Offset 000:  E4 14 BC 16  06 00 10 00  10 01 05 08  10 00 80 00 
      Offset 010:  0C 00 80 D1  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  00 00 00 00  00 00 00 00  00 00 00 00  25 10 04 05 
      Offset 030:  00 00 00 00  48 00 00 00  00 00 00 00  11 02 00 00 
      Offset 040:  00 00 00 00  00 00 00 00  01 58 03 C8  08 20 00 00 
      Offset 050:  03 00 00 00  00 00 00 00  05 AC 80 00  00 00 00 00 
      Offset 060:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 090:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0A0:  11 00 05 00  02 00 00 00  22 01 00 00  10 00 02 00 
      Offset 0B0:  80 8D 90 05  10 5C 19 00  11 CC 04 00  42 01 11 10 
      Offset 0C0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  1F 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  00 00 00 00  00 51 78 57 

    B02 D00 F02:  Broadcom Memory Stick Card Reader
                  
      Offset 000:  E4 14 BE 16  06 00 10 00  10 00 80 08  10 00 80 00 
      Offset 010:  0C 00 81 D1  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  00 00 00 00  00 00 00 00  00 00 00 00  25 10 04 05 
      Offset 030:  00 00 00 00  48 00 00 00  00 00 00 00  11 02 00 00 
      Offset 040:  00 00 00 00  00 00 00 00  01 58 03 C8  08 20 00 00 
      Offset 050:  03 00 00 00  00 00 00 00  05 AC 80 00  00 00 00 00 
      Offset 060:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 090:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0A0:  11 00 05 00  02 00 00 00  22 01 00 00  10 00 02 00 
      Offset 0B0:  80 8D 90 05  10 5C 19 00  11 CC 04 00  42 01 11 10 
      Offset 0C0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  1F 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  00 00 00 00  00 51 78 57 

    B02 D00 F03:  Broadcom xD Card Reader
                  
      Offset 000:  E4 14 BF 16  06 00 10 00  10 00 80 08  10 00 80 00 
      Offset 010:  0C 00 82 D1  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  00 00 00 00  00 00 00 00  00 00 00 00  25 10 04 05 
      Offset 030:  00 00 00 00  48 00 00 00  00 00 00 00  11 02 00 00 
      Offset 040:  00 00 00 00  00 00 00 00  01 58 03 C8  08 20 00 00 
      Offset 050:  03 00 00 00  00 00 00 00  05 AC 80 00  00 00 00 00 
      Offset 060:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 090:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0A0:  11 00 05 00  02 00 00 00  22 01 00 00  10 00 02 00 
      Offset 0B0:  80 8D 90 05  10 5C 19 00  11 CC 04 00  42 01 11 10 
      Offset 0C0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  1F 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  00 00 00 00  00 51 78 57 

    B03 D00 F00:  Broadcom BCM43227 802.11b/g/n Wireless Network Adapter
                  
      Offset 000:  E4 14 58 43  06 00 10 00  00 00 80 02  10 00 00 00 
      Offset 010:  04 00 90 D1  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  00 00 00 00  00 00 00 00  00 00 00 00  5B 10 40 E0 
      Offset 030:  00 00 00 00  40 00 00 00  00 00 00 00  11 01 00 00 
      Offset 040:  01 58 03 CE  08 40 00 00  05 D0 80 00  00 00 00 00 
      Offset 050:  00 00 00 00  00 00 00 00  09 48 78 00  12 00 00 00 
      Offset 060:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  00 10 00 18  00 00 00 00  80 00 00 00  03 00 00 00 
      Offset 090:  00 00 00 00  00 03 00 00  00 00 00 00  00 00 00 00 
      Offset 0A0:  00 00 00 00  00 00 00 00  00 00 01 00  00 10 10 18 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  10 00 01 00  A0 8F 90 05  00 00 10 00  11 68 17 00 
      Offset 0E0:  42 01 11 30  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 

    PCI-8086-0104:  Intel SNB/IVB/HSW/CRW/BDW MCHBAR
                  
      Offset 4000:  99 79 18 00  54 54 14 0A  20 22 02 0A  90 56 00 00 
      Offset 4010:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 4020:  05 00 10 10  22 22 20 20  22 00 0E 00  00 00 00 00 

    PCI-8086-0104:  Intel SNB/IVB/HSW/CRW/BDW MCHBAR
                  
      Offset 4280:  00 00 00 00  00 00 04 00  00 00 00 00  44 00 00 00 
      Offset 4290:  80 40 00 00  0F 98 00 00  4F 14 4A 5A  50 02 00 00 
      Offset 42A0:  03 10 00 00  00 72 90 41  00 00 00 00  00 00 00 00 

    PCI-8086-0104:  Intel SNB/IVB/HSW/CRW/BDW MCHBAR
                  
      Offset 4400:  99 79 18 00  54 54 14 0A  20 32 02 0A  90 56 00 00 
      Offset 4410:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 4420:  05 00 10 10  21 20 20 20  00 00 0E 00  00 00 00 00 

    PCI-8086-0104:  Intel SNB/IVB/HSW/CRW/BDW MCHBAR
                  
      Offset 4680:  00 00 00 00  00 00 04 00  00 00 00 00  44 00 00 00 
      Offset 4690:  80 40 00 00  0F 98 00 00  4F 14 6B 5A  10 02 00 00 
      Offset 46A0:  01 10 00 00  00 72 90 41  00 00 00 00  00 00 00 00 

    PCI-8086-0104:  Intel SNB/IVB/HSW/CRW/BDW MCHBAR
                  
      Offset 4800:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 4810:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 

    PCI-8086-0104:  Intel SNB/IVB/HSW/CRW/BDW MCHBAR
                  
      Offset 4A80:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 4A90:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 

    PCI-8086-0104:  Intel SNB/IVB/HSW/CRW/BDW MCHBAR
                  
      Offset 5000:  24 00 00 00  08 00 62 00  08 00 60 00  00 00 60 00 
      Offset 5010:  00 00 00 00  00 00 10 08  00 00 00 00  00 00 00 00 

    PCI-8086-0104:  Intel SNB/IVB/HSW/CRW/BDW MCHBAR
                  
      Offset 5880:  E7 71 91 CA  00 00 00 00  D0 DA E4 00  00 00 00 00 
      Offset 5890:  B5 5B 3B 2F  E2 7F 8D 29  00 00 00 00  00 00 00 00 
      Offset 58A0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 58B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 58C0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 58D0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 58E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 58F0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 5900:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 5910:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 5920:  00 00 00 00  18 00 00 00  09 69 52 B0  AA 77 09 11 
      Offset 5930:  18 01 C0 00  C0 01 10 00  03 10 0A 00  03 B7 47 A4 
      Offset 5940:  26 CB 12 5C  67 61 CA 11  0B 0D 00 00  00 00 00 00 
      Offset 5950:  00 00 00 00  00 00 10 00  00 19 01 60  00 08 00 00 
      Offset 5960:  72 44 81 9C  80 5B C0 66  82 E9 5E CE  56 76 14 96 
      Offset 5970:  C6 12 DD 04  C4 12 DD 04  3C 00 00 00  3B 00 00 00 
      Offset 5980:  3C 00 00 00  99 D4 08 A7  00 00 00 00  00 00 00 00 
      Offset 5990:  FF 00 00 00  FF 00 00 00  1A 0D 0D 00  00 0E 64 00 
      Offset 59A0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 59B0:  0C 03 00 80  94 14 14 18  04 01 00 80  94 14 14 18 
      Offset 59C0:  00 00 28 88  00 00 00 00  00 00 00 00  00 00 00 00 

    PCI-8086-0104:  Intel SNB/IVB/HSW/CRW/BDW MCHBAR
                  
      Offset 5E00:  05 00 00 00  05 00 00 00  00 00 00 00  00 00 00 00 
      Offset 5E10:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 

    PCI-8086-1C24:  Intel 5/6/7/8/9-series PCH TBARB
                  
      Offset 00:  00 BA 00 E3  2B 3A 00 00  00 00 00 00  00 00 40 00 
      Offset 10:  00 00 00 19  87 DE 8C 80  00 00 30 10  00 00 00 00 
      Offset 20:  00 00 99 02  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 30:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 40:  00 02 00 FF  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 50:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 60:  00 00 00 00  00 00 00 00  00 00 00 00  16 1B 20 05 
      Offset 70:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 80:  00 00 00 00  64 64 00 FF  00 00 00 00  00 00 00 00 
      Offset 90:  76 2E 42 82  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset A0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset C0:  00 00 00 00  00 00 00 FF  00 00 00 00  00 00 00 00 
      Offset D0:  00 00 00 00  00 00 00 00  3C 00 73 00  00 00 00 00 
      Offset E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset F0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 


--------[ Debug - Video BIOS ]------------------------------------------------------------------------------------------

    C000:0000  U.t...000000000000.$.%#.@...00IBM VGA Compatible BIOS. .n.~.....
    C000:0040  PCIR..&.........................&.V.f.v.....n...................
    C000:0080  ..........7............................................DH.....DH
    C000:00C0  .....DH....0DH.....DI.....DI.....DJ.....DJ....0DJ.....DI....0DI.
    C000:0100  ....DJ.....DK.....DK.....DK....0.L......L......L....0.L......M..
    C000:0140  ....M.....0.D..2.h..4....8....:....<....A.D..C.h..E....I....K...
    C000:0180  .M....P D..R h..T ...X ...Z ...\ ...`....a....b ...c....d....e .
    C000:01C0  ..f....g....h ...i.'..j.'..k '..l.A..m.A..n A..o.[..p.[..q [..}.
    C000:0200  ...~.... ........ .-..`............ .1..l...........rQ.. n(U...
    C000:0240  !....... ....`"........... ....@.......... .1X. (.........V. .1X
    C000:0280  . .P........d..@A.&0..6.......... A. 0.`........0*..Q.*@0p......
    C000:02C0  ...4..Q.*@..........H?@0b.2@@.........h[..r.<P..................
    C000:0300  ..E............................................E................
    C000:0340  ...................For Evaluation Use Only....(........c-'(.+...
    C000:0380  ..............................................(........c-'(.+...
    C000:03C0  ..............................................P........c_OP.U...


--------[ Debug - Unknown ]---------------------------------------------------------------------------------------------

    Optical         PIONEER DVD-RW DVRTD11RS


------------------------------------------------------------------------------------------------------------------------

The names of actual companies and products mentioned herein may be the trademarks of their respective owners.
