info.txt logfile of random's system information tool 1.10 2014-08-18 18:58:27 ======MBR====== 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ninstall list====== -->"C:\Program Files (x86)\InstallShield Installation Information\{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}\Setup.exe" /z-uninstall -->"C:\Program Files (x86)\InstallShield Installation Information\{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}\Setup.exe" /z-uninstall -->"C:\Program Files (x86)\InstallShield Installation Information\{8F14AA37-5193-4A14-BD5B-BDF9B361AEF7}\setup.exe" /z-uninstall -->"C:\Program Files (x86)\InstallShield Installation Information\{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}\Setup.exe" /z-uninstall -->"C:\Program Files (x86)\InstallShield Installation Information\{C59C179C-668D-49A9-B6EA-0121CCFC1243}\Setup.exe" /z-uninstall -->"C:\Program Files (x86)\InstallShield Installation Information\{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}\Setup.exe" /z-uninstall -->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-0057-0000-1000-0000000FF1CE}" "{B62F9266-8F7F-49AE-8F86-C168D8F338B3}" "1043" "0" -->C:\Program Files\CONEXANT\cMaxxPreset\SETUP64.EXE -U -IcMaxxPreset ,16 -->C:\Program Files\Conexant\SA3\SETUP64.EXE -U -ISA3 -SM=SmartAudio3.EXE,1801 Adobe AIR-->C:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Resources\Adobe AIR Updater.exe -arp:uninstall Adobe AIR-->MsiExec.exe /I{0A3925EA-5B0E-401B-A189-7419149747B2} Age of Empires III-->C:\Program Files (x86)\InstallShield Installation Information\{70F8B183-99EB-4304-BA35-080E2DFFD2A3}\setup.exe -runfromtemp -l0x0409 AMD Accelerated Video Transcoding-->MsiExec.exe /X{41F22D89-7F71-E83A-08E7-7E7473F4A55D} AMD APP SDK Runtime-->MsiExec.exe /I{503F672D-6C84-448A-8F8F-4BC35AC83441} AMD AVIVO64 Codecs-->MsiExec.exe /X{3A240E51-20C7-6019-D279-6195BC6B2CD0} AMD Catalyst Install Manager-->msiexec /q/x{3FAEEEBE-48F4-84C1-2B49-96AE73E67E3E} REBOOT=ReallySuppress Amnesia: A Machine for Pigs-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/239200 Amnesia: The Dark Descent-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/57300 Arma 2: DayZ Mod-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/224580 Arma 2: Operation Arrowhead-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/33930 Arma 2-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/33910 Assassin's Creed II-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/33230 AVG 2014-->"C:\Program Files (x86)\AVG\AVG2014\avgmfapx.exe" /AppMode=SETUP /Uninstall AVG 2014-->MsiExec.exe /I{6C9778CB-2167-402E-B37E-10431C01F4C4} AVG 2014-->MsiExec.exe /I{FBEE8270-48A4-4C27-9A52-23997142E3E7} Banished-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/242920 Battlefield 3™-->"C:\Program Files (x86)\Common Files\EAInstaller\Battlefield 3\Cleanup.exe" uninstall_game -autologging Battlefield 4™-->"C:\Program Files (x86)\Common Files\EAInstaller\Battlefield 4\Cleanup.exe" uninstall_game -autologging Battlefield: Bad Company 2-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/24960 Battlefield™ Hardline Beta-->"C:\Program Files (x86)\Common Files\EAInstaller\BFH Beta\Cleanup.exe" uninstall_game -autologging Battlelog Web Plugins-->C:\Program Files (x86)\Battlelog Web Plugins\uninstall.exe BattlEye for OA Uninstall-->C:\Program Files (x86)\Steam\steamapps\common\Arma 2 Operation Arrowhead\Expansion\BattlEye\UnInstallBE.exe Canon MP550 series MP Drivers-->"C:\WINDOWS\system32\CanonIJ Uninstaller Information\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP550_series\DelDrv64.exe" /U:{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP550_series Catalyst Control Center - Branding-->MsiExec.exe /I{25A3B953-1423-3F15-640E-B620DD0F419A} CCleaner-->"C:\Program Files\CCleaner\uninst.exe" Command & Conquer Generals-->C:\PROGRA~2\COMMON~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{06F80017-8F98-4C94-B868-52358569FC32} Command and ConquerTM Generals Zero Hour-->C:\PROGRA~2\COMMON~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{F3E9C243-122E-4D6B-ACC1-E1FEC02F6CA1} Company of Heroes (New Steam Version)-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/228200 Company of Heroes 2-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/231430 Company of Heroes: Opposing Fronts-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/9340 Company of Heroes: Tales of Valor-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/20540 Conexant HD Audio-->C:\Program Files (x86)\InstallShield Installation Information\{F0A37341-D692-11D4-A984-009027EC0A9C}\setup.exe -runfromtemp -l0x0013 -removeonly Conexant SmartAudio HD-->C:\Program Files\CONEXANT\CNXT_AUDIO_HDA\UIU64a.exe -U -G -Ichdrt.inf Counter-Strike: Global Offensive-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/730 Counter-Strike: Source-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/240 CyberLink LabelPrint 2.5-->"C:\Program Files (x86)\InstallShield Installation Information\{C59C179C-668D-49A9-B6EA-0121CCFC1243}\Setup.exe" /z-uninstall CyberLink Media Suite 10-->"C:\Program Files (x86)\InstallShield Installation Information\{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}\Setup.exe" /z-uninstall CyberLink Media Suite Essentials-->"C:\Program Files (x86)\InstallShield Installation Information\{8F14AA37-5193-4A14-BD5B-BDF9B361AEF7}\setup.exe" /z-uninstall CyberLink Power2Go 8-->"C:\Program Files (x86)\InstallShield Installation Information\{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}\Setup.exe" /z-uninstall CyberLink PowerDirector 10-->"C:\Program Files (x86)\InstallShield Installation Information\{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}\Setup.exe" /z-uninstall CyberLink PowerDVD 10-->"C:\Program Files (x86)\InstallShield Installation Information\{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}\Setup.exe" /z-uninstall DayZ-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/221100 Dead Space™-->"C:\Program Files (x86)\Common Files\EAInstaller\Dead Space\Cleanup.exe" uninstall_game -autologging Definition Update for Microsoft Office 2010 (KB982726) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-0057-0000-1000-0000000FF1CE}" "{2A07A3D4-F6CA-4EEB-9576-3A6AC8A736CE}" "1043" "0" Dell Backup and Recovery - Support Software-->"C:\Program Files (x86)\InstallShield Installation Information\{0ED7EE95-6A97-47AA-AD73-152C08A15B04}\setup.exe" -runfromtemp -l0x0413 -removeonly /z"dsu" Dell Backup and Recovery-->"C:\Program Files (x86)\InstallShield Installation Information\{0ED7EE95-6A97-47AA-AD73-152C08A15B04}\setup.exe" -runfromtemp -l0x0413 -removeonly Dell Digital Delivery-->MsiExec.exe /I{D850CB7E-72BC-4510-BA4F-48932BFAB295} Dell Support Center-->C:\Program Files\Dell Support Center\uninstaller.exe /arp Dell Touchpad-->%ProgramFiles%\Elantech\ETDUn_inst.exe Dell Update-->MsiExec.exe /I{D9D0E75C-F791-402A-98E2-A2F43E7B0CE3} DSC/AA Factory Installer-->MsiExec.exe /I{F7A70D00-F283-45C8-B163-49EC365D7E27} ESN Sonar-->C:\Program Files (x86)\Battlelog Web Plugins\Sonar\esnsonar_uninstall.exe Garry's Mod-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/4000 Google Chrome-->"C:\Program Files (x86)\Google\Chrome\Application\36.0.1985.143\Installer\setup.exe" --uninstall --multi-install --chrome --system-level Google Update Helper-->MsiExec.exe /I{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} Grand Theft Auto IV-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/12210 Grand Theft Auto: Episodes from Liberty City-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/12220 Gyazo 2.0.2-->"C:\Program Files (x86)\Gyazo\unins000.exe" HydraVision-->MsiExec.exe /X{89CE7F9B-B4DF-8585-638B-6BD807ADE9C7} Intel PROSet Wireless-->Intel PROSet Wireless Intel(R) Control Center-->C:\Program Files (x86)\Intel\Intel Control Center\uninstaller\SetupICC.exe -uninstall -force -confirm Intel(R) Management Engine Components-->C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\Uninstall\setup.exe -uninstall Intel(R) Processor Graphics-->C:\Program Files (x86)\Intel\Intel(R) Processor Graphics\Uninstall\setup.exe -uninstall Intel(R) PROSet/Wireless for Bluetooth(R) + High Speed-->MsiExec.exe /X{E77289CF-12B9-4CAB-A49E-FEAE947F4D95} Intel(R) Rapid Storage Technology-->"C:\ProgramData\Intel\Package Cache\{409CB30E-E457-4008-9B1A-ED1B9EA21140}\Setup.exe" -uninstall Intel(R) Rapid Storage Technology-->MsiExec.exe /I{93F692D4-0C4D-4EED-9BFE-657C1D5959FE} Intel(R) WiDi-->MsiExec.exe /X{6097158B-0184-4140-BEC3-7885794D2571} Intel® PROSet/Wireless WiFi Software-->MsiExec.exe /I{1593C708-5535-47A4-8C0F-F8D4BE2B4560} Intel® Trusted Connect Service Client-->MsiExec.exe /I{89AFB053-A343-46EF-97E4-D593AD7184E6} Intel® Turbo Boost Technologie monitor 2.6-->MsiExec.exe /X{6C9365EB-1F9E-4893-9196-3EC77C88D0C5} Java 7 Update 51 (64-bit)-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F86417051FF} Java 7 Update 67-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F03217067FF} Just Cause 2: Multiplayer Mod-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/259080 Just Cause 2-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/8190 Microsoft Games for Windows - LIVE Redistributable-->MsiExec.exe /X{42AA4CA8-DCD8-4308-BCAB-0B6D75856A9D} Microsoft Games for Windows Marketplace-->MsiExec.exe /X{67F42018-F647-4D3C-BE62-F8CB4FE2FCD5} Microsoft Office Office 32-bit Components 2010-->MsiExec.exe /X{90140000-0043-0000-1000-0000000FF1CE} Microsoft Office Proof (Dutch) 2010-->MsiExec.exe /X{90140000-001F-0413-1000-0000000FF1CE} Microsoft Office Proof (English) 2010-->MsiExec.exe /X{90140000-001F-0409-1000-0000000FF1CE} Microsoft Office Proof (French) 2010-->MsiExec.exe /X{90140000-001F-040C-1000-0000000FF1CE} Microsoft Office Proof (German) 2010-->MsiExec.exe /X{90140000-001F-0407-1000-0000000FF1CE} Microsoft Office Proofing (Dutch) 2010-->MsiExec.exe /X{90140000-002C-0413-1000-0000000FF1CE} Microsoft Office Shared 32-bit MUI (Dutch) 2010-->MsiExec.exe /X{90140000-0043-0413-1000-0000000FF1CE} Microsoft Office Shared MUI (Dutch) 2010-->MsiExec.exe /X{90140000-006E-0413-1000-0000000FF1CE} Microsoft Office Visio 2010-->MsiExec.exe /X{90140000-0057-0000-1000-0000000FF1CE} Microsoft Office Visio MUI (Dutch) 2010-->MsiExec.exe /X{90140000-0054-0413-1000-0000000FF1CE} Microsoft Office-->MsiExec.exe /X{95140000-0070-0000-0000-0000000FF1CE} Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} Microsoft Visio Premium 2010-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Office Setup Controller\setup.exe" /uninstall VISIO /dll OSETUP.DLL Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{710f4c1c-cc18-4c49-8cbf-51240c89a1a2} Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d} Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{837b34e3-7c30-493c-8f6a-2b0f04e2912c} Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161-->MsiExec.exe /X{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4} Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17-->MsiExec.exe /X{9A25302D-30C0-39D9-BD6F-21E6EC160475} Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161-->MsiExec.exe /X{9BE518E6-ECC6-35A9-88E4-87755C07200F} Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219-->MsiExec.exe /X{1D8E6291-B0D5-35EC-8441-6616F567A0F7} Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219-->MsiExec.exe /X{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5} Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727-->"C:\ProgramData\Package Cache\{15134cb0-b767-4960-a911-f2d16ae54797}\vcredist_x64.exe" /uninstall Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610-->"C:\ProgramData\Package Cache\{a1909659-0a08-4554-8af1-2175904903a1}\vcredist_x64.exe" /uninstall Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727-->"C:\ProgramData\Package Cache\{22154f09-719a-4619-bb71-5b3356999fbf}\vcredist_x86.exe" /uninstall Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610-->"C:\ProgramData\Package Cache\{95716cce-fc71-413f-8ad5-56c2892d4b3a}\vcredist_x86.exe" /uninstall Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727-->MsiExec.exe /X{AC53FC8B-EE18-3F9C-9B59-60937D0B182C} Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610-->MsiExec.exe /X{764384C5-BCA9-307C-9AAC-FD443662686A} Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727-->MsiExec.exe /X{A2CB1ACB-94A2-32BA-A15E-7D80319F7589} Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610-->MsiExec.exe /X{2EDC2FA3-1F34-34E5-9085-588C9EFD1CC6} Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727-->MsiExec.exe /X{FDB30193-FDA0-3DAA-ACCA-A75EEFE53607} Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.60610-->MsiExec.exe /X{3D6AD258-61EA-35F5-812C-B7A02152996E} Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727-->MsiExec.exe /X{2F73A7B2-E50E-39A6-9ABC-EF89E4C62E36} Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.60610-->MsiExec.exe /X{E7D4E834-93EB-351F-B8FB-82CDAE623003} OpenOffice 4.0.1-->MsiExec.exe /I{EA9BAE1A-2D68-4160-81E6-14B712435D66} Origin-->C:\Program Files (x86)\Origin\OriginUninstall.exe ORION: Dino Horde-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/104900 paint.net-->MsiExec.exe /X{3F5F509B-E226-417C-8CD1-CAAE756C328A} Peggle-->"C:\Program Files (x86)\Common Files\EAInstaller\Peggle\Cleanup.exe" uninstall_game -autologging Plants vs. Zombies™-->"C:\Program Files (x86)\Common Files\EAInstaller\PlantsvsZombies\Cleanup.exe" uninstall_game -autologging -keepMaintenanceLog PunkBuster Services-->C:\Program Files (x86)\Origin Games\BFH Beta\pbsvc.exe -u Quickset64-->MsiExec.exe /I{87CF757E-C1F1-4D22-865C-00C6950B5258} Realtek Card Reader-->"C:\Program Files (x86)\InstallShield Installation Information\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}\Setup.exe" -runfromtemp -removeonly Realtek Ethernet Controller All-In-One Windows Driver-->C:\Program Files (x86)\InstallShield Installation Information\{F7E7F0CB-AA41-4D5A-B6F2-8E6738EB063F}\Setup.exe -runfromtemp -removeonly Security Update for Microsoft Office 2010 (KB2553284) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-006E-0413-1000-0000000FF1CE}" "{0603FCBC-6AAD-42CE-BF3C-B41ADDCE864E}" "1043" "0" Security Update for Microsoft Office 2010 (KB2687423) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-0057-0000-1000-0000000FF1CE}" "{A2F2E3C4-887C-4A3B-B73A-576984420D12}" "1043" "0" Security Update for Microsoft Office 2010 (KB2850016) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-0057-0000-1000-0000000FF1CE}" "{DEE523DB-C590-45D3-B658-73F93062D7B3}" "1043" "0" Security Update for Microsoft Office 2010 (KB2880971) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-0057-0000-1000-0000000FF1CE}" "{C7B639A9-54A9-4B30-87AA-45BD4F06E1A6}" "1043" "0" Security Update for Microsoft Office 2010 (KB2881071) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-0057-0000-1000-0000000FF1CE}" "{D458143D-EEDA-486F-8985-F16BF87AA315}" "1043" "0" Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001F-0407-1000-0000000FF1CE}" "{EE3A99C9-FD8F-4923-9F82-27365DA4B873}" "1043" "0" Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001F-0409-1000-0000000FF1CE}" "{C814F7D9-CE9D-45AA-BA7C-88BDD0E1EB7C}" "1043" "0" Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001F-040C-1000-0000000FF1CE}" "{77A8B979-11B0-4774-8003-574EE8A4BC22}" "1043" "0" Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001F-0413-1000-0000000FF1CE}" "{C281A20E-A7DE-4950-8656-13E31F2DF194}" "1043" "0" Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-002C-0413-1000-0000000FF1CE}" "{8601DE11-B4B1-47B6-BA5F-C98AF303A1DD}" "1043" "0" Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-0043-0000-1000-0000000FF1CE}" "{F3FAAB68-7697-4B1F-A23A-72312565AEAB}" "1043" "0" Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-0043-0413-1000-0000000FF1CE}" "{040AFD12-179F-4557-8412-017A830C60A3}" "1043" "0" Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-0054-0413-1000-0000000FF1CE}" "{FF15B3C9-0953-4428-9BE7-27543F11F3E6}" "1043" "0" Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-0057-0000-1000-0000000FF1CE}" "{3C578F10-F74F-4655-B2A6-9F88A6C415E8}" "1043" "0" Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-006E-0413-1000-0000000FF1CE}" "{B063C2D2-FD29-44E9-A6EF-19BA4B62381B}" "1043" "0" Shared C Run-time for x64-->MsiExec.exe /I{EF79C448-6946-4D71-8134-03407888C054} Sid Meier's Civilization V-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/8930 SimCity™-->"C:\Program Files (x86)\Common Files\EAInstaller\SimCity\Cleanup.exe" uninstall_game -autologging Sniper Elite V2-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/63380 Spore: Creepy & Cute Parts Pack-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/17440 Spore: Galactic Adventures-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/24720 Spore-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/17390 Steam-->C:\Program Files (x86)\Steam\uninstall.exe SteelSeries Engine 3.2.6-->C:\Program Files\SteelSeries\SteelSeries Engine 3\uninst.exe System Requirements Lab CYRI-->MsiExec.exe /I{F3FCB08B-E752-444D-86A0-0634A4F3B23D} Team Fortress 2-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/440 TeamSpeak 3 Client-->"C:\Program Files (x86)\TeamSpeak 3 Client\uninstall.exe" TuxGuitar 1.2-->C:\Program Files (x86)\TuxGuitar-Jet\Uninstall.exe Ubisoft Game Launcher-->"C:\Program Files (x86)\InstallShield Installation Information\{888F1505-C2B3-4FDE-835D-36353EBD4754}\setup.exe" -runfromtemp -l0x0409 -removeonly Update for Microsoft Filter Pack 2.0 (KB2878281) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-0057-0000-1000-0000000FF1CE}" "{84B191B5-5319-463A-A305-8C4D53B1D20A}" "1043" "0" Update for Microsoft Office 2010 (KB2589298) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-0057-0000-1000-0000000FF1CE}" "{79C725A1-3964-421C-A528-78C1C083C7C7}" "1043" "0" Update for Microsoft Office 2010 (KB2589352) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-0043-0000-1000-0000000FF1CE}" "{95BE5D45-A3DD-4CB1-8C35-D75DD7B4D862}" "1043" "0" Update for Microsoft Office 2010 (KB2589352) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-0057-0000-1000-0000000FF1CE}" "{95BE5D45-A3DD-4CB1-8C35-D75DD7B4D862}" "1043" "0" Update for Microsoft Office 2010 (KB2589375) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-0057-0000-1000-0000000FF1CE}" "{EBD18DE5-BC84-4B57-9A30-097044871F9A}" "1043" "0" Update for Microsoft Office 2010 (KB2597087) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-0043-0000-1000-0000000FF1CE}" "{4AD36582-256B-433D-8593-F31773A15CA4}" "1043" "0" Update for Microsoft Office 2010 (KB2597087) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-0057-0000-1000-0000000FF1CE}" "{4AD36582-256B-433D-8593-F31773A15CA4}" "1043" "0" Update for Microsoft Office 2010 (KB2687502) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001F-0409-1000-0000000FF1CE}" "{B114A387-8A14-4C43-AE51-82F17EB81D49}" "1043" "0" Update for Microsoft Office 2010 (KB2760598) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-0043-0000-1000-0000000FF1CE}" "{F216169C-2B40-429B-8370-B5BA06EC5423}" "1043" "0" Update for Microsoft Office 2010 (KB2760598) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-0057-0000-1000-0000000FF1CE}" "{F216169C-2B40-429B-8370-B5BA06EC5423}" "1043" "0" Update for Microsoft Office 2010 (KB2794737) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-0057-0000-1000-0000000FF1CE}" "{07DC9C6C-E916-4F42-8677-716930ED0393}" "1043" "0" Update for Microsoft Office 2010 (KB2837581) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-0057-0000-1000-0000000FF1CE}" "{D1F3B526-7EB2-4701-92DB-0784988D78DE}" "1043" "0" Update for Microsoft Office 2010 (KB2863818) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001F-0413-1000-0000000FF1CE}" "{2182D10B-62FD-47BB-8313-1DF9C4454275}" "1043" "0" Update for Microsoft Office 2010 (KB2878252) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-0043-0000-1000-0000000FF1CE}" "{56551B9F-2FE1-4705-ACF0-8FA920535E18}" "1043" "0" Update for Microsoft Office 2010 (KB2878252) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-0057-0000-1000-0000000FF1CE}" "{56551B9F-2FE1-4705-ACF0-8FA920535E18}" "1043" "0" Update for Microsoft Office 2010 (KB2881028) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001F-0407-1000-0000000FF1CE}" "{8F699D53-05FB-488E-B7D3-E4E47257BE5D}" "1043" "0" Update for Microsoft Office 2010 (KB2881028) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001F-040C-1000-0000000FF1CE}" "{4B9B2BAF-EE1F-4B60-A4D9-17B7BEEB13A1}" "1043" "0" Update for Microsoft OneNote 2010 (KB2837595) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-0043-0000-1000-0000000FF1CE}" "{3029C408-1DD1-4273-8E58-87CB1B638FC8}" "1043" "0" Update for Microsoft SharePoint Workspace 2010 (KB2760601) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-0043-0000-1000-0000000FF1CE}" "{77374F16-2DC6-4EEF-AFAD-C59FDA2E010D}" "1043" "0" Update for Microsoft Visio 2010 (KB2553444) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-0054-0413-1000-0000000FF1CE}" "{1DE3301B-EF61-4934-8243-A49AA6DF9C33}" "1043" "0" Update for Microsoft Visio 2010 (KB2880526) 64-Bit Edition-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-0057-0000-1000-0000000FF1CE}" "{F6F342A1-530B-4D48-A468-1E3F70928984}" "1043" "0" Visual Studio 2012 x64 Redistributables-->MsiExec.exe /I{8C775E70-A791-4DA8-BCC3-6AB7136F4484} Visual Studio 2012 x86 Redistributables-->MsiExec.exe /I{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8} VLC media player 2.1.3-->C:\Program Files\VideoLAN\VLC\uninstall.exe War Thunder Launcher 1.0.1.322-->"C:\Program Files (x86)\WarThunder\unins000.exe" War Thunder-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/236390 Wargame: AirLand Battle-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/222750 Wargame: European Escalation-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/58610 Wargame: Red Dragon-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/251060 WinRAR 5.01 (64-bit)-->C:\Program Files\WinRAR\uninstall.exe ======System event log====== Computer Name: DH5P40X1 Event Code: 7040 Message: Het opstarttype van de service Windows Search is gewijzigd van uitgeschakeld in automatisch starten. Record Number: 824 Source Name: Service Control Manager Time Written: 20130416144957.524222-000 Event Type: Informatie User: MATHIEU\Administrator Computer Name: DH5P40X1 Event Code: 7040 Message: Het opstarttype van de service Windows Search is gewijzigd van automatisch starten in uitgeschakeld. Record Number: 823 Source Name: Service Control Manager Time Written: 20130416144956.449559-000 Event Type: Informatie User: MATHIEU\Administrator Computer Name: DH5P40X1 Event Code: 104 Message: Logboekbestand Setup is gewist. Record Number: 822 Source Name: Microsoft-Windows-Eventlog Time Written: 20130416144941.058150-000 Event Type: Informatie User: MATHIEU\Administrator Computer Name: DH5P40X1 Event Code: 104 Message: Logboekbestand Application is gewist. Record Number: 821 Source Name: Microsoft-Windows-Eventlog Time Written: 20130416144940.730009-000 Event Type: Informatie User: MATHIEU\Administrator Computer Name: DH5P40X1 Event Code: 104 Message: Logboekbestand System is gewist. Record Number: 820 Source Name: Microsoft-Windows-Eventlog Time Written: 20130416144940.636263-000 Event Type: Informatie User: MATHIEU\Administrator =====Application event log===== Computer Name: DH5P40X1 Event Code: 1013 Message: De Windows Search-service is normaal gestopt. Record Number: 753 Source Name: Microsoft-Windows-Search Time Written: 20130416145004.000000-000 Event Type: Informatie User: Computer Name: DH5P40X1 Event Code: 6000 Message: De kennisgevingssubscriber van winlogon was niet beschikbaar om een kennisgevingsgebeurtenis te verwerken. Record Number: 752 Source Name: Microsoft-Windows-Winlogon Time Written: 20130416145004.000000-000 Event Type: Informatie User: Computer Name: DH5P40X1 Event Code: 1003 Message: De Windows Search-service is gestart. Record Number: 751 Source Name: Microsoft-Windows-Search Time Written: 20130416144957.000000-000 Event Type: Informatie User: Computer Name: DH5P40X1 Event Code: 1013 Message: De Windows Search-service is normaal gestopt. Record Number: 750 Source Name: Microsoft-Windows-Search Time Written: 20130416144956.000000-000 Event Type: Informatie User: Computer Name: DH5P40X1 Event Code: 103 Message: SearchIndexer (3252) Windows: De database-engine heeft de sessie (0) stopgezet. Dirty Shutdown: 0 Internal Timing Sequence: [1] 0.000, [2] 0.015, [3] 0.000, [4] 0.000, [5] 0.031, [6] 0.000, [7] 0.000, [8] 0.000, [9] 0.047, [10] 0.000, [11] 0.000, [12] 0.000, [13] 0.000, [14] 0.000, [15] 0.000. Record Number: 749 Source Name: ESENT Time Written: 20130416144956.000000-000 Event Type: Informatie User: =====Security event log===== Computer Name: Mathieu Event Code: 4672 Message: Speciale bevoegdheden toegewezen aan nieuwe aanmelding. Onderwerp: Beveiligings-id: S-1-5-18 Accountnaam: SYSTEM Accountdomein: NT AUTHORITY Aanmeldings-id: 0x3E7 Bevoegdheden: SeAssignPrimaryTokenPrivilege SeTcbPrivilege SeSecurityPrivilege SeTakeOwnershipPrivilege SeLoadDriverPrivilege SeBackupPrivilege SeRestorePrivilege SeDebugPrivilege SeAuditPrivilege SeSystemEnvironmentPrivilege SeImpersonatePrivilege Record Number: 23378 Source Name: Microsoft-Windows-Security-Auditing Time Written: 20140328140006.488922-000 Event Type: Controle geslaagd User: Computer Name: Mathieu Event Code: 4624 Message: Er is een account aangemeld. Onderwerp: Beveiligings-id: S-1-5-18 Accountnaam: MATHIEU$ Accountdomein: WORKGROUP Aanmeldings-id: 0x3E7 Aanmeldingstype: 5 Imitatieniveau: Imitatie Nieuwe aanmelding: Beveiligings-id: S-1-5-18 Accountnaam: SYSTEM Accountdomein: NT AUTHORITY Aanmeldings-id: 0x3E7 Aanmeldings-GUID: {00000000-0000-0000-0000-000000000000} Procesgegevens: Proces-id: 0x3f8 Naam proces: C:\Windows\System32\services.exe Netwerkgegevens: Naam van werkstation: Netwerkadres van bron: - Poort van bron: - Gedetailleerde verificatiegegevens: Aanmeldingsproces: Advapi Verificatiepakket: Negotiate Doorgezette services: - Pakketnaam (alleen NTLM): - Sleutellengte: 0 Deze gebeurtenis wordt gegenereerd wanneer een aanmeldingssessie wordt gemaakt. De gebeurtenis wordt gegenereerd op de computer waartoe toegang wordt verkregen. De velden Onderwerp bevatten de account op het lokale systeem waardoor de aanmelding is aangevraagd. Dit is meestal een service zoals de Server-service, of een lokaal proces zoals Winlogon.exe of Services.exe. In het veld Aanmeldingstype ziet u het type aanmelding. De meest algemene typen zijn 2 (interactief) en 3 (netwerk). Het veld Nieuwe aanmelding bevat de account waarvoor de nieuwe aanmelding is gemaakt. Dit is de account waarmee is aangemeld. In de netwerkvelden ziet u de bron van een externe aanmeldingsaanvraag. Naam van werkstation is niet altijd beschikbaar en kan in sommige gevallen leeg zijn. De velden met authenticatiegegevens bevatten gedetailleerde informatie over deze aanmeldingsaanvraag. - Aanmeldings-GUID is een unieke id die kan worden gebruikt om deze gebeurtenis af te stemmen met een KDC-gebeurtenis. - In Doorgezette services ziet u welke tussentijdse services voor deze aanmeldingsaanvraag zijn gebruikt. - Pakketnaam geeft aan welk subprotocol van de NTLM-protocollen is gebruikt. - Sleutellengte geeft de lengte van de gegenereerde sessiesleutel aan. Dit veld is 0 als er geen sessiesleutel is aangevraagd. Record Number: 23377 Source Name: Microsoft-Windows-Security-Auditing Time Written: 20140328140006.488922-000 Event Type: Controle geslaagd User: Computer Name: Mathieu Event Code: 4672 Message: Speciale bevoegdheden toegewezen aan nieuwe aanmelding. Onderwerp: Beveiligings-id: S-1-5-18 Accountnaam: SYSTEM Accountdomein: NT AUTHORITY Aanmeldings-id: 0x3E7 Bevoegdheden: SeAssignPrimaryTokenPrivilege SeTcbPrivilege SeSecurityPrivilege SeTakeOwnershipPrivilege SeLoadDriverPrivilege SeBackupPrivilege SeRestorePrivilege SeDebugPrivilege SeAuditPrivilege SeSystemEnvironmentPrivilege SeImpersonatePrivilege Record Number: 23376 Source Name: Microsoft-Windows-Security-Auditing Time Written: 20140328140004.088082-000 Event Type: Controle geslaagd User: Computer Name: Mathieu Event Code: 4624 Message: Er is een account aangemeld. Onderwerp: Beveiligings-id: S-1-5-18 Accountnaam: MATHIEU$ Accountdomein: WORKGROUP Aanmeldings-id: 0x3E7 Aanmeldingstype: 5 Imitatieniveau: Imitatie Nieuwe aanmelding: Beveiligings-id: S-1-5-18 Accountnaam: SYSTEM Accountdomein: NT AUTHORITY Aanmeldings-id: 0x3E7 Aanmeldings-GUID: {00000000-0000-0000-0000-000000000000} Procesgegevens: Proces-id: 0x3f8 Naam proces: C:\Windows\System32\services.exe Netwerkgegevens: Naam van werkstation: Netwerkadres van bron: - Poort van bron: - Gedetailleerde verificatiegegevens: Aanmeldingsproces: Advapi Verificatiepakket: Negotiate Doorgezette services: - Pakketnaam (alleen NTLM): - Sleutellengte: 0 Deze gebeurtenis wordt gegenereerd wanneer een aanmeldingssessie wordt gemaakt. De gebeurtenis wordt gegenereerd op de computer waartoe toegang wordt verkregen. De velden Onderwerp bevatten de account op het lokale systeem waardoor de aanmelding is aangevraagd. Dit is meestal een service zoals de Server-service, of een lokaal proces zoals Winlogon.exe of Services.exe. In het veld Aanmeldingstype ziet u het type aanmelding. De meest algemene typen zijn 2 (interactief) en 3 (netwerk). Het veld Nieuwe aanmelding bevat de account waarvoor de nieuwe aanmelding is gemaakt. Dit is de account waarmee is aangemeld. In de netwerkvelden ziet u de bron van een externe aanmeldingsaanvraag. Naam van werkstation is niet altijd beschikbaar en kan in sommige gevallen leeg zijn. De velden met authenticatiegegevens bevatten gedetailleerde informatie over deze aanmeldingsaanvraag. - Aanmeldings-GUID is een unieke id die kan worden gebruikt om deze gebeurtenis af te stemmen met een KDC-gebeurtenis. - In Doorgezette services ziet u welke tussentijdse services voor deze aanmeldingsaanvraag zijn gebruikt. - Pakketnaam geeft aan welk subprotocol van de NTLM-protocollen is gebruikt. - Sleutellengte geeft de lengte van de gegenereerde sessiesleutel aan. Dit veld is 0 als er geen sessiesleutel is aangevraagd. Record Number: 23375 Source Name: Microsoft-Windows-Security-Auditing Time Written: 20140328140004.088082-000 Event Type: Controle geslaagd User: Computer Name: Mathieu Event Code: 4672 Message: Speciale bevoegdheden toegewezen aan nieuwe aanmelding. Onderwerp: Beveiligings-id: S-1-5-18 Accountnaam: SYSTEM Accountdomein: NT AUTHORITY Aanmeldings-id: 0x3E7 Bevoegdheden: SeAssignPrimaryTokenPrivilege SeTcbPrivilege SeSecurityPrivilege SeTakeOwnershipPrivilege SeLoadDriverPrivilege SeBackupPrivilege SeRestorePrivilege SeDebugPrivilege SeAuditPrivilege SeSystemEnvironmentPrivilege SeImpersonatePrivilege Record Number: 23374 Source Name: Microsoft-Windows-Security-Auditing Time Written: 20140328140002.538858-000 Event Type: Controle geslaagd User: ======Environment variables====== "FP_NO_HOST_CHECK"=NO "USERNAME"=SYSTEM "ComSpec"=%SystemRoot%\system32\cmd.exe "TMP"=%SystemRoot%\TEMP "OS"=Windows_NT "windir"=%SystemRoot% "PROCESSOR_ARCHITECTURE"=AMD64 "TEMP"=%SystemRoot%\TEMP "PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC "PSModulePath"=%SystemRoot%\system32\WindowsPowerShell\v1.0\Modules\ "NUMBER_OF_PROCESSORS"=4 "PROCESSOR_LEVEL"=6 "PROCESSOR_IDENTIFIER"=Intel64 Family 6 Model 58 Stepping 9, GenuineIntel "PROCESSOR_REVISION"=3a09 "Path"=c:\Program Files (x86)\Intel\iCLS Client\;c:\Program Files\Intel\iCLS Client\;c:\Program Files (x86)\AMD APP\bin\x86_64;c:\Program Files (x86)\AMD APP\bin\x86;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;c:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static;C:\Program Files\Intel\WiFi\bin\;C:\Program Files\Common Files\Intel\WirelessCommon\;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT "AMDAPPSDKROOT"=c:\Program Files (x86)\AMD APP\ -----------------EOF-----------------