info.txt logfile of random's system information tool 1.10 2014-09-27 16:52:31 ======MBR====== 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ninstall list====== -->C:\ProgramData\{7707EA53-E29B-48FC-B28B-C8EE171EA0EB}\Traktor 2 Setup PC.exe -->C:\ProgramData\{95B4F0ED-951F-4D36-B068-5EC1C4C19C14}\Service Center Setup PC.exe -->C:\ProgramData\{A2A4D724-2D08-46E4-BAA8-EC9EE875D133}\Controller Editor Setup PC.exe Aangifte inkomstenbelasting 2011-->C:\Program Files (x86)\Belastingdienst\Aangifte inkomstenbelasting\2011\ib2011u.exe Aangifte inkomstenbelasting 2012-->C:\Program Files (x86)\Belastingdienst\Aangifte inkomstenbelasting\2012\ib2012u.exe ABBYY FineReader 9.0 Sprint-->MsiExec.exe /I {F9000000-0018-0000-0000-074957833700} ABBYY FineReader 9.0 Sprint-->MsiExec.exe /X{F9000000-0018-0000-0000-074957833700} Adobe Digital Editions-->"C:\Program Files (x86)\Adobe\Adobe Digital Editions\uninstall.exe" Adobe Flash Player 15 ActiveX-->C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_15_0_0_167_ActiveX.exe -maintain activex Adobe Flash Player 15 Plugin-->C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_15_0_0_152_Plugin.exe -maintain plugin Adobe Reader X (10.1.12) - Nederlands-->MsiExec.exe /I{AC76BA86-7AD7-1043-7B44-AA1000000001} AIMP3-->C:\Program Files (x86)\AIMP3\Uninstall.exe avast! Free Antivirus-->C:\Program Files\AVAST Software\Avast\Setup\Instup.exe /control_panel /instop:uninstall ConvertXtoDVD 4.0.9.322-->"E:\Programs\VSO\ConvertX\4\unins000.exe" DirPrinting-->MsiExec.exe /I{5035918F-2813-44B6-AABE-9143CE5743B2} Download Navigator-->MsiExec.exe /X{E728441A-7820-4B1C-87C9-DE7BE37B2953} Epson Easy Photo Print 2-->"C:\Program Files (x86)\InstallShield Installation Information\{02A312B5-1542-47B6-BFE9-F51358C39E86}\SETUP.EXE" -runfromtemp -l0x0413 UNINST -removeonly Epson Easy Photo Print Plug-in for PMB(Picture Motion Browser)-->"C:\Program Files (x86)\InstallShield Installation Information\{B2D55EB8-32C5-4B43-9006-9E97DECBA178}\setup.exe" -runfromtemp -l0x0413 -removeonly Epson Event Manager-->MsiExec.exe /X{BECE9CCD-83F6-4BAA-9B26-227DF7D2E932} EPSON Scan-->C:\Program Files (x86)\epson\escndv\setup\setup.exe /r EpsonNet Print-->"C:\Program Files (x86)\InstallShield Installation Information\{3E31400D-274E-4647-916C-2CACC3741799}\ENPSETUP.EXE" -runfromtemp -l0x0409 -EPSON -removeonly FormatFactory 3.0.1-->C:\Program Files (x86)\FreeTime\FormatFactory\uninst.exe Google Chrome-->"C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.124\Installer\setup.exe" --uninstall --multi-install --chrome --system-level Google Update Helper-->MsiExec.exe /I{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} HD Tune 2.55-->"C:\Program Files (x86)\HD Tune\unins000.exe" HPDiagnosticAlert-->MsiExec.exe /I{846B5DED-DC8C-4E1A-B5B4-9F5B39A0CACE} ICY Thermostat Assistant v2.0-->"E:\Programs\ICY Thermostat Assistant\unins000.exe" JavaFX 2.1.1-->MsiExec.exe /X{1111706F-666A-4037-7777-211328764D10} Medion GoPal Assistant 4.00.0003-->E:\Programs\Medion GoPal Assistant\Uninstall.exe Microsoft Office Klik-en-Klaar 2010-->"C:\PROGRA~2\COMMON~1\MICROS~1\VIRTUA~1\CVHBS.EXE" /removeall Microsoft Office Starter 2010 - Nederlands-->C:\Program Files (x86)\Common Files\microsoft shared\virtualization handler\cvhbs.exe /uninstall {90140011-0066-0413-0000-0000000FF1CE} Microsoft PowerPoint Viewer-->MsiExec.exe /X{95140000-00AF-0413-0000-0000000FF1CE} Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{710f4c1c-cc18-4c49-8cbf-51240c89a1a2} Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17-->MsiExec.exe /X{9A25302D-30C0-39D9-BD6F-21E6EC160475} Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161-->MsiExec.exe /X{9BE518E6-ECC6-35A9-88E4-87755C07200F} Mp3 Editor For Free v6.2.1-->"E:\Programs\Mp3 Editor For Free\unins000.exe" MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71} MSXML 4.0 SP2 (KB973688)-->MsiExec.exe /I{F662A8E6-F4DC-41A2-901E-8C11F044BDEC} Paragon Backup & Recovery™ 2013 Free-->MsiExec.exe /I{C268B5E1-A5DA-11DF-A289-005056C00008} Picasa 3-->"C:\Program Files (x86)\Picasa3\Uninstall.exe" SAMSUNG PC Share Manager-->"C:\Program Files (x86)\InstallShield Installation Information\{2A2E822B-3B0E-46C1-9E3B-ACD7D1E95139}\setup.exe" -runfromtemp -l0x0413 -removeonly SAMSUNG PC Share Manager-->MsiExec.exe /I{2A2E822B-3B0E-46C1-9E3B-ACD7D1E95139} Security Update for Microsoft .NET Framework 4.5.1 (KB2894854v2)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\v4.5.50938\setup.exe /uninstallpatch {F7CBA1C7-E5B5-39E9-9631-459E1FE08C45} Security Update for Microsoft .NET Framework 4.5.1 (KB2898869)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\v4.5.50938\setup.exe /uninstallpatch {BD0F9F7E-62B2-3971-9E2E-B87B832CE89D} Security Update for Microsoft .NET Framework 4.5.1 (KB2901126)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\v4.5.50938\setup.exe /uninstallpatch {513BC47F-0560-33C2-A029-C5387642233A} Security Update for Microsoft .NET Framework 4.5.1 (KB2931368)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\v4.5.50938\setup.exe /uninstallpatch {599EC629-2679-30CE-B28B-7432EF5FC126} Security Update for Microsoft .NET Framework 4.5.1 (KB2972216)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\v4.5.50938\setup.exe /uninstallpatch {47FA5DCB-D13C-331E-BC32-65E53BDD949C} Skype™ 6.11-->MsiExec.exe /X{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D} TeamViewer 9-->C:\Program Files (x86)\TeamViewer\Version9\uninstall.exe TP-LINK 300Mbps Wireless USB Adapter Stuurprogramma-->"C:\Program Files (x86)\InstallShield Installation Information\{852E893E-E4FD-45BB-8B17-72ADDF686974}\setup.exe" -runfromtemp -l0x0013 -removeonly DriverOnly TP-LINK Draadloos configuratie hulpprogramma-->"C:\Program Files (x86)\InstallShield Installation Information\{319D91C6-3D44-436C-9F79-36C0D22372DC}\setup.exe" -runfromtemp -l0x0013 -removeonly VC80CRTRedist - 8.0.50727.6195-->MsiExec.exe /I{933B4015-4618-4716-A828-5289FC03165F} VLC media player-->C:\Program Files (x86)\VideoLAN\VLC\uninstall.exe Winmx Community 1-->C:\Program Files (x86)\Winmx\Remove1.exe ======System event log====== Computer Name: CPU-PC Event Code: 7036 Message: De Windows Modules Installer-service heeft nu de status gestopt. Record Number: 175166 Source Name: Service Control Manager Time Written: 20130205164846.903237-000 Event Type: Informatie User: Computer Name: CPU-PC Event Code: 7040 Message: Het opstarttype van de service Windows Modules Installer is gewijzigd van automatisch starten in starten op aanvraag. Record Number: 175165 Source Name: Service Control Manager Time Written: 20130205164846.369206-000 Event Type: Informatie User: NT AUTHORITY\SYSTEM Computer Name: CPU-PC Event Code: 7040 Message: Het opstarttype van de service Windows Modules Installer is gewijzigd van starten op aanvraag in automatisch starten. Record Number: 175164 Source Name: Service Control Manager Time Written: 20130205164844.978126-000 Event Type: Informatie User: NT AUTHORITY\SYSTEM Computer Name: CPU-PC Event Code: 7036 Message: De Multimedia Class Scheduler-service heeft nu de status gestopt. Record Number: 175163 Source Name: Service Control Manager Time Written: 20130205164650.047553-000 Event Type: Informatie User: Computer Name: CPU-PC Event Code: 7036 Message: De Problem Reports and Solutions Control Panel Support-service heeft nu de status gestopt. Record Number: 175162 Source Name: Service Control Manager Time Written: 20130205164645.345284-000 Event Type: Informatie User: =====Application event log===== Computer Name: CPU-PC Event Code: 100 Message: Alleen informatie. CurrentSoftGridPrereq: Click2Run installation (version = 14.0.4763.1000) is found on the machine; skipping installation... Record Number: 135178 Source Name: CVHSVC Time Written: 20120730231352.000000-000 Event Type: Waarschuwing User: Computer Name: CPU-PC Event Code: 100 Message: Alleen informatie. C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE is trusted. Record Number: 135177 Source Name: CVHSVC Time Written: 20120730231352.000000-000 Event Type: Waarschuwing User: Computer Name: CPU-PC Event Code: 903 Message: De Software Protection-service is gestopt. Record Number: 135176 Source Name: Microsoft-Windows-Security-SPP Time Written: 20120730231032.000000-000 Event Type: Informatie User: Computer Name: CPU-PC Event Code: 5000 Message: Record Number: 135175 Source Name: McLogEvent Time Written: 20120730230628.000000-000 Event Type: Informatie User: NT AUTHORITY\SYSTEM Computer Name: CPU-PC Event Code: 1003 Message: The Software Protection service has completed licensing status check. Application Id=59a52881-a989-479d-af46-f275c6370663 Licensing Status= 1: 2beb303e-66c6-4422-b2ec-5aea48b75ee5, 1, 1 [(0 )(1 )(2 [0x00000000, 0, 0], [( 5 0xC004F009 60 0)( 5 0xC004F009 60 0)( 1 0x00000000 0 0 msft:rm/algorithm/flags/1.0 0x00000000 0)(?)(?)( 9 0x00000000 0xC004F009)])] Record Number: 135174 Source Name: Office Software Protection Platform Service Time Written: 20120730230552.000000-000 Event Type: Informatie User: =====Security event log===== Computer Name: CPU-PC Event Code: 5061 Message: Cryptografische bewerking. Onderwerp: Beveiligings-id: S-1-5-18 Accountnaam: CPU-PC$ Accountdomein: WORKGROUP Aanmeldings-id: 0x3e7 Cryptografieparameters: Naam provider: Microsoft Software Key Storage Provider Naam algoritme: RSA Sleutelnaam: {2492E827-1F10-436D-998B-5B573C8F156F} Sleuteltype: Computersleutel. Cryptografische bewerking: Bewerking: Sleutel openen. Retourcode: 0x0 Record Number: 73553 Source Name: Microsoft-Windows-Security-Auditing Time Written: 20130426053853.949178-000 Event Type: Controle geslaagd User: Computer Name: CPU-PC Event Code: 5058 Message: Bewerking sleutelbestand. Onderwerp: Beveiligings-id: S-1-5-18 Accountnaam: CPU-PC$ Accountdomein: WORKGROUP Aanmeldings-id: 0x3e7 Cryptografieparameters: Naam provider: Microsoft Software Key Storage Provider Naam algoritme: Niet beschikbaar Sleutelnaam: {2492E827-1F10-436D-998B-5B573C8F156F} Sleuteltype: Computersleutel. Gegevens over bewerking: Pad naar bestand: C:\ProgramData\Microsoft\Crypto\Keys\8fe004c8f85cf73fc91ff2ae7b1450d4_78c99fd1-a117-43dc-9e3a-54b0b10ec9ab Bewerking: Blijvende sleutel uit bestand lezen. Retourcode: 0x0 Record Number: 73552 Source Name: Microsoft-Windows-Security-Auditing Time Written: 20130426053853.949178-000 Event Type: Controle geslaagd User: Computer Name: CPU-PC Event Code: 5061 Message: Cryptografische bewerking. Onderwerp: Beveiligings-id: S-1-5-19 Accountnaam: LOCAL SERVICE Accountdomein: NT AUTHORITY Aanmeldings-id: 0x3e5 Cryptografieparameters: Naam provider: Microsoft Software Key Storage Provider Naam algoritme: RSA Sleutelnaam: f8c3917f-bfbb-430e-9f4a-79a363819fc6 Sleuteltype: Computersleutel. Cryptografische bewerking: Bewerking: Sleutel openen. Retourcode: 0x0 Record Number: 73551 Source Name: Microsoft-Windows-Security-Auditing Time Written: 20130426053838.908318-000 Event Type: Controle geslaagd User: Computer Name: CPU-PC Event Code: 5058 Message: Bewerking sleutelbestand. Onderwerp: Beveiligings-id: S-1-5-19 Accountnaam: LOCAL SERVICE Accountdomein: NT AUTHORITY Aanmeldings-id: 0x3e5 Cryptografieparameters: Naam provider: Microsoft Software Key Storage Provider Naam algoritme: Niet beschikbaar Sleutelnaam: f8c3917f-bfbb-430e-9f4a-79a363819fc6 Sleuteltype: Computersleutel. Gegevens over bewerking: Pad naar bestand: C:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\7f21e12e4b7a57bb8f637c3cf030f132_78c99fd1-a117-43dc-9e3a-54b0b10ec9ab Bewerking: Blijvende sleutel uit bestand lezen. Retourcode: 0x0 Record Number: 73550 Source Name: Microsoft-Windows-Security-Auditing Time Written: 20130426053838.908318-000 Event Type: Controle geslaagd User: Computer Name: CPU-PC Event Code: 4672 Message: Speciale bevoegdheden toegewezen aan nieuwe aanmelding. Onderwerp: Beveiligings-id: S-1-5-18 Accountnaam: SYSTEM Accountdomein: NT AUTHORITY Aanmeldings-id: 0x3e7 Bevoegdheden: SeAssignPrimaryTokenPrivilege SeTcbPrivilege SeSecurityPrivilege SeTakeOwnershipPrivilege SeLoadDriverPrivilege SeBackupPrivilege SeRestorePrivilege SeDebugPrivilege SeAuditPrivilege SeSystemEnvironmentPrivilege SeImpersonatePrivilege Record Number: 73549 Source Name: Microsoft-Windows-Security-Auditing Time Written: 20130426053726.104154-000 Event Type: Controle geslaagd User: ======Environment variables====== "ComSpec"=%SystemRoot%\system32\cmd.exe "FP_NO_HOST_CHECK"=NO "OS"=Windows_NT "Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\ "PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC "PROCESSOR_ARCHITECTURE"=AMD64 "TEMP"=%SystemRoot%\TEMP "TMP"=%SystemRoot%\TEMP "USERNAME"=SYSTEM "windir"=%SystemRoot% "PSModulePath"=%SystemRoot%\system32\WindowsPowerShell\v1.0\Modules\ "NUMBER_OF_PROCESSORS"=4 "PROCESSOR_LEVEL"=6 "PROCESSOR_IDENTIFIER"=Intel64 Family 6 Model 23 Stepping 10, GenuineIntel "PROCESSOR_REVISION"=170a -----------------EOF-----------------