info.txt logfile of random's system information tool 1.08 2010-11-27 17:53:00

======Uninstall list======

-->MsiExec /X{F9835182-794B-4F24-902A-E2CA9D43380F}
-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{A6B1691A-56DC-4077-B846-A9ACE96B86A0}\Setup.exe" 
Torrent-->"C:\Program Files\uTorrent\uTorrent.exe" /UNINSTALL
2007 Microsoft Office Suite Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0407-0000-0000000FF1CE} /uninstall {A0516415-ED61-419A-981D-93596DA74165}
2007 Microsoft Office Suite Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0409-0000-0000000FF1CE} /uninstall {ABDDE972-355B-4AF1-89A8-DA50B7B5C045}
2007 Microsoft Office Suite Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0419-0000-0000000FF1CE} /uninstall {57A92C5E-E76A-49CC-9EC2-A7B6CE1255EA}
2007 Microsoft Office Suite Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0422-0000-0000000FF1CE} /uninstall {6F177D09-F21D-4F50-9436-353972D1D232}
2007 Microsoft Office Suite Service Pack 2 (SP2)-->msiexec /package {90120000-006E-0419-0000-0000000FF1CE} /uninstall {37317C49-30C4-412C-B0B9-D95090F330D8}
ABBYY FineReader 10 Corporate Edition-->MsiExec.exe /I{F1000000-0001-0000-0000-074957833700}
AcronisTrueImageHome-->MsiExec.exe /X{D1E0E859-F46D-4708-A41D-ED90C0C1822A}
Adobe Flash Player 10 ActiveX-->C:\Windows\system32\Macromed\Flash\FlashUtil10l_ActiveX.exe -maintain activex
Adobe Flash Player 10 Plugin-->C:\Windows\system32\Macromed\Flash\FlashUtil10l_Plugin.exe -maintain plugin
AIMP2-->C:\Program Files\AIMP2\Uninstall.exe
Any Video Converter 3.0.3-->"C:\Program Files\AnvSoft\Any Video Converter\unins000.exe"
AP PDF Password Recovery v3.0.0-->"C:\Program Files\Adultpdf\DecryptPDF\unins000.exe"
Ask Toolbar-->MsiExec.exe /I{86D4B82A-ABED-442A-BE86-96357B70F4FE}
AutoCAD Mechanical 2011-->C:\Program Files\Autodesk\ACADM 2011\Setup\Setup.exe /P {5783F2D7-9005-0419-0002-0060B0CE6BBA} /M ACM /language ru-RU
AutoCAD Mechanical 2011-->C:\Program Files\Autodesk\ACADM 2011\Setup\Setup.exe /P {5783F2D7-9005-0419-0002-0060B0CE6BBA} /M ACM /language ru-RU
Autodesk Design Review 2011-->C:\Program Files\Autodesk\Autodesk Design Review\Setup\Setup.exe /P {8D20B4D7-3422-4099-9332-39F27E617A6F} /M ADR
Autodesk Inventor Content Center Libraries 2011 (Desktop Content)-->MsiExec.exe /X{71F89FF7-C913-4A99-B4D9-C05BAA20790B}
Autodesk Inventor Professional 2011 Russian-->C:\Program Files\Autodesk\Inventor 2011\Setup\Setup.exe /P {7F4DD591-1532-0409-0000-7107D70F3DB4} /M INVENTOR /LANG ru-RU
Autodesk Inventor Professional 2011   -->MsiExec.exe /I{7F4DD591-1532-0409-0001-7107D70F3DB4}
Autodesk Inventor Professional 2011-->MsiExec.exe /I{7F4DD591-1532-0409-0000-7107D70F3DB4}
Autodesk Material Library 2011 Base Image library-->MsiExec.exe /I{CD1E078C-A6B9-47DA-B035-6365C85C7832}
Autodesk Material Library 2011 Medium Image library-->MsiExec.exe /I{975951E7-14D0-49AF-A630-89680D12D7F6}
Autodesk Material Library 2011-->MsiExec.exe /I{9DEABCB6-B759-4D52-92F8-51B34A2B4D40}
Brother MFL-Pro Suite DCP-7030-->"C:\Program Files\InstallShield Installation Information\{46E1B1F2-A279-4356-9B17-029F9CC72EAE}\Setup.exe"  -runfromtemp -l0x0019 UNINSTALL Reg=ALL2FB -removeonly
Canyon 2.0MP PC cam-->C:\Program Files\InstallShield Installation Information\{71A51A91-E7D3-11DB-A386-005056C00008}\setup.exe -runfromtemp -l0x0019 -removeonly
CCleaner-->"C:\Program Files\CCleaner\uninst.exe"
CheMax Rus 9.7-->"C:\Program Files\CheMaxRus\unins000.exe"
DenS-mIRC v3.2(rus)-->"C:\Program Files\DenS-mIRC\unins000.exe"
Download Master version 5.7.5.1227-->"C:\Program Files\Download Master\unins000.exe"
DWG TrueView 2011-->C:\Program Files\Autodesk\DWG TrueView 2011\Setup\Setup.exe /P {5783F2D7-9028-0409-0000-0060B0CE6BBA} /M AOEM /language en-US
DynDNS Updater-->C:\Program Files\DynDNS Updater\Uninstall.exe
Easy GIF Animator 5.1-->"C:\Program Files\Easy GIF Animator\unins000.exe"
EVEREST Ultimate Edition v5.30-->"C:\Program Files\Lavalys\EVEREST Ultimate Edition\unins000.exe"
FARO LS 1.1.406.58-->MsiExec.exe /I{951B0F30-9F1A-4BF6-B3DA-99EB0E917B1C}
File Recover 7.5-->"C:\Program Files\File Recover\unins000.exe"
Foobar 0.9.2 Rialto pack-->"C:\Program Files\Foobar2000\unins000.exe"
foobar2000 v1.1.1-->"C:\Program Files\foobar2000\uninstall.exe" _?=C:\Program Files\foobar2000
Foxit Reader-->C:\Program Files\Foxit Software\Foxit Reader\Uninstall.exe
Google  -->MsiExec.exe /X{CC016F21-3970-11DE-B878-005056806466}
HiJackThis-->MsiExec.exe /X{45A66726-69BC-466B-A7A4-12FCBA4883D7}
HP USB Disk Storage Format Tool-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{0E0DF90C-D0BA-4C89-9262-AD78D1A3DE51}\Setup.exe" -l0x9 
ICQ Lite-->"C:\Program Files\InstallShield Installation Information\{6C13128C-1782-456F-84A4-017CECE259CA}\setup.exe" -runfromtemp -l0x0009 -removeonly
ICQ Toolbar-->C:\Program Files\ICQ6Toolbar\ICQUnToolbar.exe
Intel Matrix Storage Manager-->C:\Program Files\Intel\Intel Matrix Storage Manager\Uninstall\imsmudlg.exe -uninstall
InterVideo DeviceService-->MsiExec.exe /I{521AAD14-5030-44BB-8B0E-5CE65FCE57E0}
IP-TV Player 0.28.1.8811-->C:\Program Files\IP-TV Player\UnInstall.exe
IrfanView (remove only)-->C:\Program Files\IrfanView\iv_uninstall.exe
Java(TM) 6 Update 21-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216020FF}
Kaspersky Internet Security 2010-->MsiExec.exe /I{9D8B0949-7C47-476F-9F06-F900D3B078EA}
Kaspersky Internet Security 2010-->MsiExec.exe /I{9D8B0949-7C47-476F-9F06-F900D3B078EA}
Keyboard & Mouse Driver-->"C:\Program Files\InstallShield Installation Information\{B910DD1A-49B1-4068-9C08-E3C3AEC0C30A}\setup.exe" -runfromtemp -l0x0409 -removeonly
Keyboard & Mouse Driver-->MsiExec.exe /X{B910DD1A-49B1-4068-9C08-E3C3AEC0C30A}
K-Lite Mega Codec Pack 5.6.1-->"C:\Program Files\K-Lite Codec Pack\unins000.exe"
Mafia II (With Shitty Crack)-->"C:\Program Files\Mafia II (With Shitty Crack)\Uninstall\unins000.exe"
Magic FLAC to MP3 Converter 3.72-->"C:\Program Files\FLAC to MP3 Converter\unins000.exe"
Malwarebytes' Anti-Malware-->"C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe"
marvell 61xx-->C:\Program Files\Marvell\61xx\uninst-61xx.exe
Mathcad 15 F000-->MsiExec.exe /I{DC8F6C78-7231-44A2-B66E-6C4FCB3A3364}
Mathcad PDSi viewable support-->msiexec /I {AC76D478-1033-0000-3478-000000000004}
MediaInfo 0.7.35-->C:\Program Files\MediaInfo\uninst.exe
Microsoft Chart Controls for Microsoft .NET Framework 3.5-->MsiExec.exe /X{41785C66-90F2-40CE-8CB5-1C94BFC97280}
Microsoft Office Access MUI (Russian) 2010-->MsiExec.exe /X{90140000-0015-0419-0000-0000000FF1CE}
Microsoft Office Excel MUI (Russian) 2010-->MsiExec.exe /X{90140000-0016-0419-0000-0000000FF1CE}
Microsoft Office Groove MUI (Russian) 2010-->MsiExec.exe /X{90140000-00BA-0419-0000-0000000FF1CE}
Microsoft Office InfoPath MUI (Russian) 2010-->MsiExec.exe /X{90140000-0044-0419-0000-0000000FF1CE}
Microsoft Office OneNote MUI (Russian) 2010-->MsiExec.exe /X{90140000-00A1-0419-0000-0000000FF1CE}
Microsoft Office Outlook MUI (Russian) 2010-->MsiExec.exe /X{90140000-001A-0419-0000-0000000FF1CE}
Microsoft Office PowerPoint MUI (Russian) 2010-->MsiExec.exe /X{90140000-0018-0419-0000-0000000FF1CE}
Microsoft Office Professional Plus 2010-->MsiExec.exe /X{90140000-0011-0000-0000-0000000FF1CE}
Microsoft Office Proof (English) 2007-->MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}
Microsoft Office Proof (English) 2010-->MsiExec.exe /X{90140000-001F-0409-0000-0000000FF1CE}
Microsoft Office Proof (German) 2007-->MsiExec.exe /X{90120000-001F-0407-0000-0000000FF1CE}
Microsoft Office Proof (German) 2010-->MsiExec.exe /X{90140000-001F-0407-0000-0000000FF1CE}
Microsoft Office Proof (Russian) 2007-->MsiExec.exe /X{90120000-001F-0419-0000-0000000FF1CE}
Microsoft Office Proof (Russian) 2010-->MsiExec.exe /X{90140000-001F-0419-0000-0000000FF1CE}
Microsoft Office Proof (Ukrainian) 2007-->MsiExec.exe /X{90120000-001F-0422-0000-0000000FF1CE}
Microsoft Office Proof (Ukrainian) 2010-->MsiExec.exe /X{90140000-001F-0422-0000-0000000FF1CE}
Microsoft Office Proofing (Russian) 2007-->MsiExec.exe /X{90120000-002C-0419-0000-0000000FF1CE}
Microsoft Office Proofing (Russian) 2010-->MsiExec.exe /X{90140000-002C-0419-0000-0000000FF1CE}
Microsoft Office Publisher MUI (Russian) 2010-->MsiExec.exe /X{90140000-0019-0419-0000-0000000FF1CE}
Microsoft Office Shared MUI (Russian) 2007-->MsiExec.exe /X{90120000-006E-0419-0000-0000000FF1CE}
Microsoft Office Shared MUI (Russian) 2010-->MsiExec.exe /X{90140000-006E-0419-0000-0000000FF1CE}
Microsoft Office Visio 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0051-0000-0000-0000000FF1CE} /uninstall {0FD405D3-CAF8-4CA6-8BFD-911D2F8A6585}
Microsoft Office Visio 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0054-0419-0000-0000000FF1CE} /uninstall {8F550765-5265-4CA0-B0A8-0BB2ACCEDF1B}
Microsoft Office Visio MUI (Russian) 2007-->MsiExec.exe /X{90120000-0054-0419-0000-0000000FF1CE}
Microsoft Office Visio Professional 2007-->MsiExec.exe /X{90120000-0051-0000-0000-0000000FF1CE}
Microsoft Office Visio  2007-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall VISPRO /dll OSETUP.DLL
Microsoft Office Word MUI (Russian) 2010-->MsiExec.exe /X{90140000-001B-0419-0000-0000000FF1CE}
Microsoft Office   2010-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Office Setup Controller\setup.exe" /uninstall PROPLUS /dll OSETUP.DLL
Microsoft Report Viewer Redistributable 2005-->C:\Windows\Microsoft.NET\Framework\v2.0.50727\Microsoft Report Viewer Redistributable 2008\install.exe
Microsoft SQL Server 2008 Browser-->MsiExec.exe /X{C688457E-03FD-4941-923B-A27F4D42A7DD}
Microsoft SQL Server 2008 Common Files-->MsiExec.exe /I{196E77C5-F524-4B50-BD1A-2C21EEE9B8F7}
Microsoft SQL Server 2008 Common Files-->MsiExec.exe /I{4A6F34E2-09E5-4616-B227-4A26A488A6F9}
Microsoft SQL Server 2008 Database Engine Services-->MsiExec.exe /I{58721EC3-8D4E-4B79-BC51-1054E2DDCD10}
Microsoft SQL Server 2008 Database Engine Services-->MsiExec.exe /I{B5153233-9AEE-4CD4-9D2C-4FAAC870DBE2}
Microsoft SQL Server 2008 Database Engine Shared-->MsiExec.exe /I{4815BD99-96A4-49FE-A885-DCF06E9E4E78}
Microsoft SQL Server 2008 Database Engine Shared-->MsiExec.exe /I{F3494AB6-6900-41C6-AF57-823626827ED8}
Microsoft SQL Server 2008 Native Client-->MsiExec.exe /I{4F44B5AE-82A6-4A8A-A3E3-E24D489728E3}
Microsoft SQL Server 2008 RsFx Driver-->MsiExec.exe /I{33AE9E89-47C9-4A0D-9E9D-BDD6966A3804}
Microsoft SQL Server 2008 Setup Support Files -->MsiExec.exe /X{BA4DA261-CB60-4690-B202-44998DFC6986}
Microsoft SQL Server 2008-->"C:\Program Files\Microsoft SQL Server\100\Setup Bootstrap\Release\x86\SetupARP.exe" /X86 
Microsoft SQL Server 2008-->"C:\Program Files\Microsoft SQL Server\100\Setup Bootstrap\Release\x86\SetupARP.exe" /x86 
Microsoft SQL Server VSS Writer-->MsiExec.exe /I{B857D868-F8B0-43EE-BC2B-D9E5ED21F237}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{837b34e3-7c30-493c-8f6a-2b0f04e2912c}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{A49F249F-0C91-497F-86DF-B2585E8E76B7}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17-->MsiExec.exe /X{9A25302D-30C0-39D9-BD6F-21E6EC160475}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148-->MsiExec.exe /X{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}
Microsoft WSE 3.0 Runtime-->MsiExec.exe /X{E3E71D07-CD27-46CB-8448-16D4FB29AA13}
Mining and Tunneling-->"C:\Program Files\Mining and Tunneling\uninstall.exe"
mIRC-->"C:\Program Files\DenS-mIRC\mirc.exe" -uninstall
Mp3tag v2.46a-->C:\Program Files\Mp3tag\Mp3tagUninstall.EXE
MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
MSXML 4.0 SP2 (KB973688)-->MsiExec.exe /I{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
MSXML 4.0 SP2 Parser and SDK-->MsiExec.exe /I{716E0306-8318-4364-8B8F-0CC4E9376BAC}
NSIS vgif-->"C:\Program Files\vgif\uninstall.exe"
NVIDIA Drivers-->C:\Windows\system32\nvuninst.exe UninstallGUI
NVIDIA PhysX-->MsiExec.exe /X{F9835182-794B-4F24-902A-E2CA9D43380F}
NVIDIA Stereoscopic 3D Driver-->"C:\Program Files\NVIDIA Corporation\3D Vision\nvStInst.exe" /uninstall /ask
Opera 10.63-->MsiExec.exe /X{87CC8013-56D1-43E1-A0A5-AD406B4EBA95}
Paint.NET v3.5.5-->MsiExec.exe /X{F0E2B312-D7FD-4349-A9B6-E90B36DB1BD0}
Picasa 3-->"C:\Program Files\Google\Picasa3\Uninstall.exe"
PowerISO-->"C:\Program Files\PowerISO\uninstall.exe"
Punto Switcher 3.1-->C:\Program Files\Yandex\Punto Switcher\uninstall.exe
Python 2.6.1-->MsiExec.exe /I{9CC89170-000B-457D-91F1-53691F85B223}
Realtek High Definition Audio Driver-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}\Setup.exe"  -removeonly
Reg Organizer 5.0-->"C:\Program Files\Reg Organizer\unins000.exe"
Service Pack 1 for SQL Server 2008 (KB968369)-->"C:\Program Files\Microsoft SQL Server\100\Setup Bootstrap\Update Cache\KB968369\ServicePack\setup.exe" /Action=RemovePatch /AllInstances 
Skype 4.2-->MsiExec.exe /X{D103C4BA-F905-437A-8049-DB24763BBE36}
Spb Mobile DVD-->MsiExec.exe /X{A958E835-BDF0-473F-9DC1-0D952C941625}
Sql Server Customer Experience Improvement Program-->MsiExec.exe /I{C965F01C-76EA-4BD7-973E-46236AE312D7}
The KMPlayer (remove only)-->"C:\Program Files\The KMPlayer\uninstall.exe"
Transcend JetFlash Recovery Tool-->"C:\Windows\Transcend JetFlash Recovery Tool\uninstall.exe" "/U:C:\Program Files\Transcend JetFlash Recovery Tool\Uninstall\uninstall.xml"
Ultra Mobile 3GP Video Converter 1.6.2-->"C:\Program Files\Ultra Mobile 3GP Video Converter\unins000.exe"
Unlocker 1.8.8-->C:\Program Files\Unlocker\uninst.exe
Update Service-->C:\Program Files\Sony Ericsson\Update Service\uninst.exe
USB Disk Security-->"C:\Program Files\USB Disk Security\unins000.exe"
Vegas Pro 9.0-->MsiExec.exe /X{56415658-366E-4E28-A6BD-68EC63E560E0}
webcam 7-->"C:\Program Files\webcam 7\w7-uninst.exe"
WinDjView 1.0.3-->C:\Program Files\WinDjView\uninstall.exe
Windows Movie Maker 2.6-->MsiExec.exe /X{B3DAF54F-DB25-4586-9EF1-96D24BB14088}
Windows XP Mode-->MsiExec.exe /X{1374CC63-B520-4f3f-98E8-E9020BF01CFF}
XnView 1.97-->"C:\Program Files\XnView\unins000.exe"
 WinRAR-->C:\Program Files\WinRAR\uninstall.exe
  5.2 --->"C:\Program Files\Astra R-Nesting\unins000.exe"
  . 01.09.2010-->MsiExec.exe /X{D4605F7A-41D2-4F3A-9582-26508DE5CD9F}
  . 01.09.2010-->MsiExec.exe /X{2E94109C-61D8-4C8C-B260-F047CA886307}
  . 01.09.2010-->MsiExec.exe /X{F7E22E9B-249B-4ED1-8BED-EDAD9375C584}
  . 01.09.2010-->MsiExec.exe /X{5B4BFD6E-118B-402B-8908-5B92FEF08DF9}
  .-- 01.09.2010-->MsiExec.exe /X{3F277409-6F30-4A1D-ACD1-4C0FCAF29FA3}
  . 01.11.2010-->MsiExec.exe /X{40ED30AB-AD6F-4B46-8792-816133981F8C}
 3.0.8.2-->MsiExec.exe /X{6778170B-1E50-42E5-9810-25F33C7C2E42}
-3D V11 -  -->MsiExec.exe /I{A52CBC4A-E942-4D18-A71D-6F24F0179450}
-3D V11 -  -->MsiExec.exe /I{EC60B43B-2F4E-4E84-8C65-DBA2429A0A76}
-3D V11-->MsiExec.exe /I{B3C85319-F0F7-4018-8397-2C2D7097711F}
 "   "  -->MsiExec.exe /X{9C526150-E196-4528-803C-69545B56B67E}
 Ulead VideoStudio 11-->"C:\Program Files\Ulead Systems\Ulead VideoStudio 11\unins000.exe"
  Windows Mobile-->MsiExec.exe /X{904CCF62-818D-4675-BC76-D37EB399F917}

======System event log======

Computer Name: dogma
Event Code: 51
Message:     \Device\Harddisk4\DR12      .
Record Number: 61900
Source Name: Disk
Time Written: 20100505165224.179200-000
Event Type: 
User: 

Computer Name: dogma
Event Code: 51
Message:     \Device\Harddisk4\DR12      .
Record Number: 61899
Source Name: Disk
Time Written: 20100505165224.179200-000
Event Type: 
User: 

Computer Name: dogma
Event Code: 51
Message:     \Device\Harddisk4\DR12      .
Record Number: 61898
Source Name: Disk
Time Written: 20100505165224.179200-000
Event Type: 
User: 

Computer Name: dogma
Event Code: 51
Message:     \Device\Harddisk4\DR12      .
Record Number: 61897
Source Name: Disk
Time Written: 20100505165224.179200-000
Event Type: 
User: 

Computer Name: dogma
Event Code: 51
Message:     \Device\Harddisk4\DR12      .
Record Number: 61896
Source Name: Disk
Time Written: 20100505165224.179200-000
Event Type: 
User: 

=====Application event log=====

Computer Name: dogma
Event Code: 11729
Message: : -3D V11 -   --   .
Record Number: 5306
Source Name: MsiInstaller
Time Written: 20100306073637.000000-000
Event Type: 
User: dogma\moonis

Computer Name: dogma
Event Code: 10005
Message: : -3D V11 -   --         -3D V11
Record Number: 5305
Source Name: MsiInstaller
Time Written: 20100306073636.000000-000
Event Type: 
User: dogma\moonis

Computer Name: dogma
Event Code: 1033
Message:  Windows   . : -3D V11 -  . : 11.0. : 1049. : .    : 0.
Record Number: 5304
Source Name: MsiInstaller
Time Written: 20100306073630.000000-000
Event Type: 
User: dogma\moonis

Computer Name: dogma
Event Code: 11707
Message: : -3D V11 -   --    .
Record Number: 5303
Source Name: MsiInstaller
Time Written: 20100306073630.000000-000
Event Type: 
User: dogma\moonis

Computer Name: dogma
Event Code: 10001
Message:   0,  ?2010?-?03?-?06T07:35:08.797516600Z.
Record Number: 5302
Source Name: Microsoft-Windows-RestartManager
Time Written: 20100306073549.967871-000
Event Type: 
User: dogma\moonis

=====Security event log=====

Computer Name: dogma
Event Code: 4624
Message:      .

:
	 :		S-1-5-18
	  :		DOGMA$
	  :		WORKGROUP
	 :		0x3e7

 :			5

 :
	 :		S-1-5-18
	  :		
	  :		NT AUTHORITY
	 :		0x3e7
	GUID :		{00000000-0000-0000-0000-000000000000}

  :
	 :		0x390
	 :		C:\Windows\System32\services.exe

  :
	  :	
	  :	-
	 :		-

   :
	 :		Advapi  
	  :	Negotiate
	 :	-
	  ( NTLM):	-
	 :		0

      .    ,    .

 ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.

  " "    .     2 ()  3 ().

 " "    ,      ,     ,    .

 ,    ,      .      ,         .

            .
	- GUID  -   ,        KDC.
	-   " " ,         .
	-  " "   ,    NTLM.
	-  " "     .      "0",     .
Record Number: 4605
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20100223154002.531651-000
Event Type:  
User: 

Computer Name: dogma
Event Code: 4672
Message:      .

:
	 :		S-1-5-21-2939141328-2559280672-3847236033-1000
	  :		moonis
	  :		dogma
	 :		0x1b463

:		SeSecurityPrivilege
			SeTakeOwnershipPrivilege
			SeLoadDriverPrivilege
			SeBackupPrivilege
			SeRestorePrivilege
			SeDebugPrivilege
			SeSystemEnvironmentPrivilege
			SeImpersonatePrivilege
Record Number: 4604
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20100223154000.815648-000
Event Type:  
User: 

Computer Name: dogma
Event Code: 4624
Message:      .

:
	 :		S-1-5-18
	  :		DOGMA$
	  :		WORKGROUP
	 :		0x3e7

 :			2

 :
	 :		S-1-5-21-2939141328-2559280672-3847236033-1000
	  :		moonis
	  :		dogma
	 :		0x1b463
	GUID :		{00000000-0000-0000-0000-000000000000}

  :
	 :		0x3ec
	 :		C:\Windows\System32\winlogon.exe

  :
	  :	DOGMA
	  :	127.0.0.1
	 :		0

   :
	 :		User32 
	  :	Negotiate
	 :	-
	  ( NTLM):	-
	 :		0

      .    ,    .

 ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.

  " "    .     2 ()  3 ().

 " "    ,      ,     ,    .

 ,    ,      .      ,         .

            .
	- GUID  -   ,        KDC.
	-   " " ,         .
	-  " "   ,    NTLM.
	-  " "     .      "0",     .
Record Number: 4603
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20100223154000.815648-000
Event Type:  
User: 

Computer Name: dogma
Event Code: 4648
Message:          .

:
	 :		S-1-5-18
	  :		DOGMA$
	  :		WORKGROUP
	 :		0x3e7
	GUID :		{00000000-0000-0000-0000-000000000000}

      :
	  :		moonis
	  :		dogma
	GUID :		{00000000-0000-0000-0000-000000000000}

 :
	  :	localhost
	 :	localhost

  :
	 :		0x3ec
	 :		C:\Windows\System32\winlogon.exe

  :
	 :	127.0.0.1
	:			0

  ,        ,     .         , ,  ,    RUNAS.
Record Number: 4602
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20100223154000.815648-000
Event Type:  
User: 

Computer Name: dogma
Event Code: 4672
Message:      .

:
	 :		S-1-5-18
	  :		
	  :		NT AUTHORITY
	 :		0x3e7

:		SeAssignPrimaryTokenPrivilege
			SeTcbPrivilege
			SeSecurityPrivilege
			SeTakeOwnershipPrivilege
			SeLoadDriverPrivilege
			SeBackupPrivilege
			SeRestorePrivilege
			SeDebugPrivilege
			SeAuditPrivilege
			SeSystemEnvironmentPrivilege
			SeImpersonatePrivilege
Record Number: 4601
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20100223153959.770446-000
Event Type:  
User: 

======Environment variables======

"ComSpec"=%SystemRoot%\system32\cmd.exe
"FP_NO_HOST_CHECK"=NO
"OS"=Windows_NT
"Path"=C:\Program Files\NVIDIA Corporation\PhysX\Common;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files\Common Files\Acronis\SnapAPI\;C:\Program Files\Common Files\Ulead Systems\MPEG;C:\Program Files\Microsoft SQL Server\100\Tools\Binn\;C:\Program Files\Microsoft SQL Server\100\DTS\Binn\
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
"PROCESSOR_ARCHITECTURE"=x86
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"USERNAME"=SYSTEM
"windir"=%SystemRoot%
"PSModulePath"=%SystemRoot%\system32\WindowsPowerShell\v1.0\Modules\
"NUMBER_OF_PROCESSORS"=2
"PROCESSOR_LEVEL"=6
"PROCESSOR_IDENTIFIER"=x86 Family 6 Model 23 Stepping 6, GenuineIntel
"PROCESSOR_REVISION"=1706
"OMP_NUM_THREADS"=2

-----------------EOF-----------------
