info.txt logfile of random's system information tool 1.10 2014-09-15 23:48:25 ======MBR====== 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ninstall list====== -->MsiExec /X{80407BA7-7763-4395-AB98-5233F1B34E65} Adobe Flash Player 10 ActiveX-->C:\windows\SysWOW64\Macromed\Flash\uninstall_activeX.exe Adobe Reader 9.1 - Nederlands-->MsiExec.exe /I{AC76BA86-7AD7-1043-7B44-A91000000001} Apple Application Support-->MsiExec.exe /I{21ECABC3-40B2-42DF-8E21-ACF3A4D0D95A} Apple Mobile Device Support-->MsiExec.exe /I{6AF2AC2A-3532-43FD-9F4D-BDC9C0D724C7} Apple Software Update-->MsiExec.exe /I{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE} Atheros Client Installation Program-->"C:\Program Files (x86)\InstallShield Installation Information\{D1434266-0486-4469-B338-A60082CC04E1}\setup.exe" -runfromtemp -l0x0009 -removeonly BatteryLifeExtender-->MsiExec.exe /I{74A579FB-EB06-497D-B194-01590D6FE51A} Bonjour-->MsiExec.exe /X{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D} CCleaner-->"C:\Program Files\CCleaner\uninst.exe" ChampionDeals-->"C:\ProgramData\ChampionDeals\ChampionDeals.exe" /progname=ChampionDeals /progver=3.4.2 /progpub=ChampionDeals /proguninstallurl=asdahjka.com /deleteappfolder=0 /deletefile1="C:\Users\OKLAHOMA\AppData\RoamingappdataFr2.bin" /deletefile2="C:\Users\OKLAHOMA\AppData\Local\Google\Chrome\Applicationupdate.dll" /deletefile3="C:\Users\OKLAHOMA\AppData\Local\Google\Chrome\Applicationchrome.dll" /VERYSILENT ChargeableUSB-->"C:\Program Files (x86)\InstallShield Installation Information\{92D50865-FC60-4EA8-BA7A-5581B0D13EFB}\Setup.exe" -runfromtemp -l0x0009Remove -removeonly CyberLink DVD Suite-->"C:\Program Files (x86)\InstallShield Installation Information\{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}\Setup.exe" /z-uninstall CyberLink DVD Suite-->"C:\Program Files (x86)\InstallShield Installation Information\{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}\Setup.exe" /z-uninstall CyberLink LabelPrint-->"C:\Program Files (x86)\InstallShield Installation Information\{C59C179C-668D-49A9-B6EA-0121CCFC1243}\Setup.exe" /z-uninstall CyberLink LabelPrint-->"C:\Program Files (x86)\InstallShield Installation Information\{C59C179C-668D-49A9-B6EA-0121CCFC1243}\Setup.exe" /z-uninstall CyberLink Power2Go-->"C:\Program Files (x86)\InstallShield Installation Information\{40BF1E83-20EB-11D8-97C5-0009C5020658}\Setup.exe" /z-uninstall CyberLink Power2Go-->"C:\Program Files (x86)\InstallShield Installation Information\{40BF1E83-20EB-11D8-97C5-0009C5020658}\Setup.exe" /z-uninstall CyberLink PowerDirector-->"C:\Program Files (x86)\InstallShield Installation Information\{CB099890-1D5F-11D5-9EA9-0050BAE317E1}\Setup.exe" /z-uninstall CyberLink PowerDirector-->"C:\Program Files (x86)\InstallShield Installation Information\{CB099890-1D5F-11D5-9EA9-0050BAE317E1}\Setup.exe" /z-uninstall CyberLink PowerDVD 8-->"C:\Program Files (x86)\InstallShield Installation Information\{2BF2E31F-B8BB-40A7-B650-98D28E0F7D47}\Setup.exe" /z-uninstall CyberLink PowerDVD 8-->"C:\Program Files (x86)\InstallShield Installation Information\{2BF2E31F-B8BB-40A7-B650-98D28E0F7D47}\Setup.exe" /z-uninstall CyberLink PowerProducer-->"C:\Program Files (x86)\InstallShield Installation Information\{B7A0CE06-068E-11D6-97FD-0050BACBF861}\Setup.exe" /z-uninstall CyberLink PowerProducer-->"C:\Program Files (x86)\InstallShield Installation Information\{B7A0CE06-068E-11D6-97FD-0050BACBF861}\Setup.exe" /z-uninstall CyberLink YouCam-->"C:\Program Files (x86)\InstallShield Installation Information\{01FB4998-33C4-4431-85ED-079E3EEFE75D}\setup.exe" /z-uninstall CyberLink YouCam-->"C:\Program Files (x86)\InstallShield Installation Information\{01FB4998-33C4-4431-85ED-079E3EEFE75D}\setup.exe" /z-uninstall Easy Display Manager-->"C:\Program Files (x86)\InstallShield Installation Information\{17283B95-21A8-4996-97DA-547A48DB266F}\setup.exe" -runfromtemp -l0x0009 -removeonly Easy Network Manager-->MsiExec.exe /I{F9557866-B4C8-4CE5-8508-0E386BDC20B2} Easy SpeedUp Manager-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{EF367AA4-070B-493C-9575-85BE59D789C9}\setup.exe" -l0x9 Remove EasyBatteryManager-->"C:\Program Files (x86)\InstallShield Installation Information\{4A331D24-A9E8-484F-835E-1BA7B139689C}\setup.exe" -runfromtemp -l0x0009 -removeonly HD Tune Pro 5.50-->"C:\Program Files (x86)\HD Tune Pro\unins000.exe" Intel PROSet Wireless-->Intel PROSet Wireless Intel(R) Rapid Storage Technology-->C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\Uninstall\setup.exe -uninstall Intel(R) Turbo Boost Technology Driver-->C:\Program Files (x86)\Intel\Intel(R) Turbo Boost Technology Driver\Uninstall\setup.exe -uninstall -iips Intel® Turbo Boost Technologie monitor-->MsiExec.exe /X{39F4C6F9-618A-4E5B-8FB2-6BD661174E32} iTunes-->MsiExec.exe /I{33E28B58-7BA0-47B7-AA01-9225ABA2B8A9} Java 7 Update 65 (64-bit)-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F06417065FF} Java 7 Update 65-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F03217065FF} Junk Mail filter update-->MsiExec.exe /I{8E5233E1-7495-44FB-8DEB-4BE906D59619} Marvell Miniport Driver-->C:\Program Files (x86)\Marvell\Miniport Driver\Uninst.exe McAfee SecurityCenter-->C:\Program Files (x86)\McAfee\MSC\mcuninst.exe Microsoft .NET Framework 4.5.1-->C:\windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\v4.5.50938\\Setup.exe /repair /x86 /x64 Microsoft .NET Framework 4.5.1-->MsiExec.exe /X{7DEBE4EB-6B40-3766-BB35-5CBBC385DA37} Microsoft Choice Guard-->MsiExec.exe /X{F0E12BBA-AD66-4022-A453-A1C8A0C4D570} Microsoft Office 2010-->MsiExec.exe /X{95140000-0070-0000-0000-0000000FF1CE} Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} Microsoft SQL Server 2005 Compact Edition [ENU]-->MsiExec.exe /I{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8} Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d} MSVCRT-->MsiExec.exe /I{22B775E7-6C42-4FC5-8E10-9A5E3257BD94} NVIDIA Grafisch stuurprogramma 337.88-->"C:\windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.{9BE203B9-231E-41AF-A267-C4AD9321C6EE}\NVI2.DLL",UninstallPackage Display.Driver NVIDIA HD Audio-stuurprogramma 1.3.30.1-->"C:\windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.{9BE203B9-231E-41AF-A267-C4AD9321C6EE}\NVI2.DLL",UninstallPackage HDAudio.Driver NVIDIA PhysX systeemsoftware 9.13.1220-->"C:\windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.{9BE203B9-231E-41AF-A267-C4AD9321C6EE}\NVI2.DLL",UninstallPackage Display.PhysX NVIDIA PhysX-->MsiExec.exe /I{80407BA7-7763-4395-AB98-5233F1B34E65} Realtek High Definition Audio Driver-->C:\Program Files\Realtek\Audio\HDA\RtlUpd64.exe -r -m -nrg2709 REALTEK Wireless LAN Software-->C:\Program Files (x86)\InstallShield Installation Information\{0F796312-289C-40CA-856C-9FBCF5E83342}\Install.exe -uninst -l0x9 RuneScape Launcher 1.2.3-->MsiExec.exe /X{FAE99C85-0732-4C58-9C6B-10B5B12FA2E9} Samsung Recovery Solution 4-->"C:\Program Files (x86)\InstallShield Installation Information\{145DE957-0679-4A2A-BB5C-1D3E9808FAB2}\setup.exe" -runfromtemp -l0x0009 -removeonly Samsung R-Series-->MsiExec.exe /X{3EED7541-55F8-4DC6-B9CD-28762D71310E} Samsung Support Center-->MsiExec.exe /I{F687E657-F636-44DF-8125-9FEEA2C362F5} Samsung Update Plus-->"C:\Program Files (x86)\InstallShield Installation Information\{D3F2FAA5-FEC4-42AA-9ABA-1F763919A2B5}\setup.exe" -runfromtemp -l0x0009 -removeonly Security Update for Microsoft .NET Framework 4.5.1 (KB2894854v2)-->C:\windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\v4.5.50938\setup.exe /uninstallpatch {F7CBA1C7-E5B5-39E9-9631-459E1FE08C45} Security Update for Microsoft .NET Framework 4.5.1 (KB2898869)-->C:\windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\v4.5.50938\setup.exe /uninstallpatch {BD0F9F7E-62B2-3971-9E2E-B87B832CE89D} Security Update for Microsoft .NET Framework 4.5.1 (KB2901126)-->C:\windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\v4.5.50938\setup.exe /uninstallpatch {513BC47F-0560-33C2-A029-C5387642233A} Security Update for Microsoft .NET Framework 4.5.1 (KB2972216)-->C:\windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\v4.5.50938\setup.exe /uninstallpatch {47FA5DCB-D13C-331E-BC32-65E53BDD949C} Skype™ 6.18-->MsiExec.exe /X{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7} Speccy-->"C:\Program Files\Speccy\uninst.exe" Synaptics Pointing Device Driver-->rundll32.exe "%ProgramFiles%\Synaptics\SynTP\SynISDLL.dll",standAloneUninstall TeamViewer 9-->C:\Program Files (x86)\TeamViewer\Version9\uninstall.exe The Battle for Middle-earth™ II-->C:\Program Files (x86)\Electronic Arts\The Battle for Middle-earth II\EAUninstall.exe User Guide-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{BAE68339-B0F6-4D33-9554-5A3DB2DFF5DA}\setup.exe" -l0x9 Remove VLC media player-->C:\Program Files (x86)\VideoLAN\VLC\uninstall.exe WIDCOMM Bluetooth Software-->MsiExec.exe /X{9E9D49A4-1DF4-4138-B7DB-5D87A893088E} Windows Driver Package - Broadcom Bluetooth (07/30/2009 6.2.0.9405)-->C:\PROGRA~1\DIFX\84B2E36983483FEB\DPInst.exe /u C:\windows\System32\DriverStore\FileRepository\bcbtums-vistax64-brcm.inf_amd64_neutral_669857059b361c7a\bcbtums-vistax64-brcm.inf Windows Driver Package - Broadcom Bluetooth (09/11/2009 6.2.0.9407)-->C:\PROGRA~1\DIFX\84B2E36983483FEB\DPInst.exe /u C:\windows\System32\DriverStore\FileRepository\bcbtums-win7x64-brcm.inf_amd64_neutral_ad3816735aa49a30\bcbtums-win7x64-brcm.inf Windows Driver Package - Broadcom HIDClass (07/28/2009 6.2.0.9800)-->C:\PROGRA~1\DIFX\84B2E36983483FEB\DPInst.exe /u C:\windows\System32\DriverStore\FileRepository\bcbthid64.inf_amd64_neutral_737f347105a3e66a\bcbthid64.inf Windows Live - Hulpprogramma voor uploaden-->MsiExec.exe /I{205C6BDD-7B73-42DE-8505-9A093F35A238} Windows Live Call-->MsiExec.exe /I{C20C2630-B3A7-44BA-BDD0-31E256AE490E} Windows Live Communications Platform-->MsiExec.exe /I{3175E049-F9A9-4A3D-8F19-AC9FB04514D1} Windows Live Essentials-->C:\Program Files (x86)\Windows Live\Installer\wlarp.exe Windows Live Essentials-->MsiExec.exe /I{EB5A3E9D-91CF-4C97-B816-72DE0625ACA3} Windows Live Family Safety-->MsiExec.exe /X{316F89B3-40A7-4986-BE4F-27258B1DEBCB} Windows Live ID Sign-in Assistant-->MsiExec.exe /X{9B48B0AC-C813-4174-9042-476A887592C7} Windows Live Mail-->MsiExec.exe /I{2869F5EA-93C3-48E5-80DF-DB696BC84A91} Windows Live Messenger-->MsiExec.exe /X{CC38A00D-7EED-46CE-9281-D1D97B81F22A} Windows Live Movie Maker-->MsiExec.exe /X{32061277-9F45-4C3B-8299-D106D5A502ED} Windows Live Photo Gallery-->MsiExec.exe /X{6FEC9863-5EF2-4A07-9D0B-CA81B47E3F59} Windows Live Sync-->MsiExec.exe /X{E34F703A-1C9D-4B1F-ABBE-D7E8800B860D} Windows Live Writer-->MsiExec.exe /X{35CA031C-D3CD-4A28-8D9B-C71466C4F045} ======System event log====== Computer Name: WIN-U9C0GDG9PBB Event Code: 7036 Message: De Windows Search-service heeft nu de status stopped. Record Number: 3657 Source Name: Service Control Manager Time Written: 20100805012147.742189-000 Event Type: Informatie User: Computer Name: WIN-U9C0GDG9PBB Event Code: 7040 Message: Het opstarttype van de service Windows Search is gewijzigd van auto start in disabled. Record Number: 3656 Source Name: Service Control Manager Time Written: 20100805012146.852987-000 Event Type: Informatie User: OKLAHOMA-PC\Administrator Computer Name: WIN-U9C0GDG9PBB Event Code: 104 Message: Logboekbestand Setup is gewist. Record Number: 3655 Source Name: Microsoft-Windows-Eventlog Time Written: 20100805012133.936164-000 Event Type: Informatie User: OKLAHOMA-PC\Administrator Computer Name: WIN-U9C0GDG9PBB Event Code: 104 Message: Logboekbestand Application is gewist. Record Number: 3654 Source Name: Microsoft-Windows-Eventlog Time Written: 20100805012133.889364-000 Event Type: Informatie User: OKLAHOMA-PC\Administrator Computer Name: WIN-U9C0GDG9PBB Event Code: 104 Message: Logboekbestand System is gewist. Record Number: 3653 Source Name: Microsoft-Windows-Eventlog Time Written: 20100805012133.826964-000 Event Type: Informatie User: OKLAHOMA-PC\Administrator =====Application event log===== Computer Name: OKLAHOMA-PC Event Code: 4625 Message: Het EventSystem-subsysteem onderdrukt gedurende 86400 seconden dubbele vermeldingen in het gebeurtenislogboek. De time-out voor onderdrukking kan worden ingesteld met de REG_DWORD-waarde SuppressDuplicateDuration in de volgende registersleutel: HKLM\Software\Microsoft\EventSystem\EventLog. Record Number: 888 Source Name: Microsoft-Windows-EventSystem Time Written: 20140728082726.000000-000 Event Type: Informatie User: Computer Name: WIN-U9C0GDG9PBB Event Code: 1532 Message: De User Profile-service is gestopt. Record Number: 887 Source Name: Microsoft-Windows-User Profiles Service Time Written: 20100805012154.949401-000 Event Type: Informatie User: NT AUTHORITY\SYSTEM Computer Name: WIN-U9C0GDG9PBB Event Code: 1003 Message: De Windows Search-service is gestart. Record Number: 886 Source Name: Microsoft-Windows-Search Time Written: 20100805012150.000000-000 Event Type: Informatie User: Computer Name: WIN-U9C0GDG9PBB Event Code: 1013 Message: De Windows Search-service is normaal gestopt. Record Number: 885 Source Name: Microsoft-Windows-Search Time Written: 20100805012147.000000-000 Event Type: Informatie User: Computer Name: WIN-U9C0GDG9PBB Event Code: 103 Message: Windows (1048) Windows: De database-engine heeft een nieuwe sessie (0) stopgezet. Record Number: 884 Source Name: ESENT Time Written: 20100805012147.000000-000 Event Type: Informatie User: =====Security event log===== Computer Name: WIN-U9C0GDG9PBB Event Code: 4672 Message: Speciale bevoegdheden toegewezen aan nieuwe aanmelding. Onderwerp: Beveiligings-id: S-1-5-18 Accountnaam: SYSTEM Accountdomein: NT AUTHORITY Aanmeldings-id: 0x3e7 Bevoegdheden: SeAssignPrimaryTokenPrivilege SeTcbPrivilege SeSecurityPrivilege SeTakeOwnershipPrivilege SeLoadDriverPrivilege SeBackupPrivilege SeRestorePrivilege SeDebugPrivilege SeAuditPrivilege SeSystemEnvironmentPrivilege SeImpersonatePrivilege Record Number: 997 Source Name: Microsoft-Windows-Security-Auditing Time Written: 20100805012150.082193-000 Event Type: Controle geslaagd User: Computer Name: WIN-U9C0GDG9PBB Event Code: 4624 Message: Er is een account aangemeld. Onderwerp: Beveiligings-id: S-1-5-18 Accountnaam: WIN-U9C0GDG9PBB$ Accountdomein: WORKGROUP Aanmeldings-id: 0x3e7 Aanmeldingstype: 5 Nieuwe aanmelding: Beveiligings-id: S-1-5-18 Accountnaam: SYSTEM Accountdomein: NT AUTHORITY Aanmeldings-id: 0x3e7 Aanmeldings-GUID: {00000000-0000-0000-0000-000000000000} Procesgegevens: Proces-id: 0x250 Naam proces: C:\Windows\System32\services.exe Netwerkgegevens: Naam van werkstation: Netwerkadres van bron: - Poort van bron: - Gedetailleerde verificatiegegevens: Aanmeldingsproces: Advapi Verificatiepakket: Negotiate Doorgezette services: - Pakketnaam (alleen NTLM): - Sleutellengte: 0 Deze gebeurtenis wordt gegenereerd wanneer een aanmeldingssessie wordt gemaakt. De gebeurtenis wordt gegenereerd op de computer waartoe toegang wordt verkregen. De velden Onderwerp bevatten de account op het lokale systeem waardoor de aanmelding is aangevraagd. Dit is meestal een service zoals de Server-service, of een lokaal proces zoals Winlogon.exe of Services.exe. In het veld Aanmeldingstype ziet u het type aanmelding. De meest algemene typen zijn 2 (interactief) en 3 (netwerk). Het veld Nieuwe aanmelding bevat de account waarvoor de nieuwe aanmelding is gemaakt. Dit is de account waarmee is aangemeld. In de netwerkvelden ziet u de bron van een externe aanmeldingsaanvraag. Naam van werkstation is niet altijd beschikbaar en kan in sommige gevallen leeg zijn. De velden met verificatiegegevens bevatten gedetailleerde informatie over deze aanmeldingsaanvraag. - Aanmeldings-GUID is een unieke id die kan worden gebruikt om deze gebeurtenis af te stemmen met een KDC-gebeurtenis. - In Doorgezette services ziet u welke tussentijdse services voor deze aanmeldingsaanvraag zijn gebruikt. - Pakketnaam geeft aan welk subprotocol van de NTLM-protocollen is gebruikt. - Sleutellengte geeft de lengte van de gegenereerde sessiesleutel aan. Dit veld is 0 als er geen sessiesleutel is aangevraagd. Record Number: 996 Source Name: Microsoft-Windows-Security-Auditing Time Written: 20100805012150.082193-000 Event Type: Controle geslaagd User: Computer Name: WIN-U9C0GDG9PBB Event Code: 4738 Message: Er is een gebruikersaccount gewijzigd. Onderwerp: Beveiligings-id: S-1-5-21-2909146845-170575590-1500306530-500 Accountnaam: Administrator Accountdomein: WIN-U9C0GDG9PBB Aanmeldings-id: 0x2f404 Doelaccount: Beveiligings-id: S-1-5-21-2909146845-170575590-1500306530-500 Accountnaam: Administrator Accountdomein: WIN-U9C0GDG9PBB Gewijzigde kenmerken: SAM-accountnaam: - Weergavenaam: - Principal-naam van gebruiker: - Basismap: - Basisstation: - Pad naar script: - Pad naar profiel: - Gebruikerswerkstations: - Wachtwoord voor het laatst ingesteld: - Account verloopt op: - Primaire groeps-id: - Mag overdragen aan: - Oude UAC-waarde: 0x210 Nieuwe UAC-waarde: 0x211 Gebruikersaccountbeheer: Account uitgeschakeld Gebruikersparameters: - SID-geschiedenis: - Aantal uren aangemeld: - Aanvullende gegevens: Bevoegdheden: - Record Number: 995 Source Name: Microsoft-Windows-Security-Auditing Time Written: 20100805012145.355384-000 Event Type: Controle geslaagd User: Computer Name: WIN-U9C0GDG9PBB Event Code: 4725 Message: Er is een gebruikersaccount uitgeschakeld. Onderwerp: Beveiligings-id: S-1-5-21-2909146845-170575590-1500306530-500 Accountnaam: Administrator Accountdomein: WIN-U9C0GDG9PBB Aanmeldings-id: 0x2f404 Doelaccount: Beveiligings-id: S-1-5-21-2909146845-170575590-1500306530-500 Accountnaam: Administrator Accountdomein: WIN-U9C0GDG9PBB Record Number: 994 Source Name: Microsoft-Windows-Security-Auditing Time Written: 20100805012145.355384-000 Event Type: Controle geslaagd User: Computer Name: WIN-U9C0GDG9PBB Event Code: 1102 Message: Het controlelogboek is gewist. Onderwerp: Beveiligings-id: S-1-5-21-2909146845-170575590-1500306530-500 Accountnaam: Administrator Domeinnaam: WIN-U9C0GDG9PBB Aanmeldings-id: 0x2f404 Record Number: 993 Source Name: Microsoft-Windows-Eventlog Time Written: 20100805012133.904964-000 Event Type: Controle geslaagd User: ======Environment variables====== "ComSpec"=%SystemRoot%\system32\cmd.exe "FP_NO_HOST_CHECK"=NO "OS"=Windows_NT "Path"=C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live;C:\windows\system32;C:\windows;C:\windows\System32\Wbem;C:\windows\System32\WindowsPowerShell\v1.0\;C:\Program Files\WIDCOMM\Bluetooth Software\;C:\Program Files\WIDCOMM\Bluetooth Software\syswow64; "PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC "PROCESSOR_ARCHITECTURE"=AMD64 "TEMP"=%SystemRoot%\TEMP "TMP"=%SystemRoot%\TEMP "USERNAME"=SYSTEM "windir"=%SystemRoot% "PSModulePath"=%SystemRoot%\system32\WindowsPowerShell\v1.0\Modules\ "NUMBER_OF_PROCESSORS"=4 "PROCESSOR_LEVEL"=6 "PROCESSOR_IDENTIFIER"=Intel64 Family 6 Model 37 Stepping 5, GenuineIntel "PROCESSOR_REVISION"=2505 "asl.log"=Destination=file -----------------EOF-----------------