info.txt logfile of random's system information tool 1.09 2012-03-21 22:40:40 ======Uninstall list====== @BIOS Ver.2.05-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{B2DC3F08-2EB2-49A5-AA24-15DFC8B1CB83}\setup.exe" -l0x9 -removeonly -->MsiExec /X{DEA314C4-0929-4250-BC92-98E4C105F28D} -->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{17E96A7F-AFE3-4171-87B1-583E376319E8}\setup.exe" -l0x9 -->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{700932B3-A964-4878-82A2-96054622A1F7}\setup.exe" -l0x9 -->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{700932B3-A964-4878-82A2-96054622A1F7}\setup.exe" -l0x9 /remove -->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{88B1984E-36F0-47B8-B8DC-728966807A9C}\setup.exe" -l0x9 -->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{CC3D3A93-C433-4329-AC3A-7EFC52A332C2}\setup.exe" -l0x9 -->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{CC3D3A93-C433-4329-AC3A-7EFC52A332C2}\setup.exe" -l0x9 /remove µTorrent-->"C:\Program Files (x86)\uTorrent\uTorrent.exe" /UNINSTALL AC3Filter (remove only)-->C:\Program Files (x86)\AC3Filter\uninstall.exe Adobe Flash Player 10 ActiveX-->C:\Windows\SysWOW64\Macromed\Flash\FlashUtil10n_ActiveX.exe -maintain activex Adobe Shockwave Player 11.6-->"C:\Windows\system32\Adobe\Shockwave 11\uninstaller.exe" Advanced Disk Catalog-->C:\PROGRA~2\Advanced Disk Catalog\UNWISE.EXE C:\PROGRA~2\Advanced Disk Catalog\INSTALL.LOG AIDA64 Extreme Edition wersja 2.00.1700-->"C:\Program Files (x86)\FinalWire\AIDA64 Extreme Edition\unins000.exe" AIMP2: Audio Tools-->C:\Program Files (x86)\AIMP2 Tools\atUninstall.exe AIMP3-->C:\Program Files (x86)\AIMP3\Uninstall.exe AMD USB Filter Driver-->MsiExec.exe /X{987B04C4-B5AC-4AD6-A7E9-8D681085B850} Apex Video Converter Super 6.44-->"C:\Program Files (x86)\Apex\Apex Video Converter Super\unins000.exe" Application Profiles-->MsiExec.exe /X{C496ED25-F3EC-0CBC-37DB-B31C6E6592C9} Ashampoo Burning Studio 11 v.11.0.4-->"C:\Program Files (x86)\Ashampoo\Ashampoo Burning Studio 11\unins000.exe" Auslogics Disk Defrag-->"C:\Program Files (x86)\Auslogics\Auslogics Disk Defrag\unins000.exe" AviSynth 2.5-->"C:\Program Files (x86)\AviSynth 2.5\Uninstall.exe" BitComet 1.29-->C:\Program Files (x86)\BitComet\uninst.exe BitSpirit v3.6.0.550 Stable-->"C:\Program Files (x86)\BitSpirit\unins000.exe" BitTorrent-->"C:\Program Files (x86)\BitTorrent\BitTorrent.exe" /UNINSTALL Cacheman 7.0-->"C:\Program Files (x86)\Cacheman\Trialpay.exe" Catalyst Control Center - Branding-->MsiExec.exe /I{2ECA81CA-D932-4AD3-AD59-BF5CCF099C83} Cheat Engine 6.1-->"C:\Program Files (x86)\Cheat Engine 6.1\unins000.exe" Complitly-->"C:\Program Files (x86)\Complitly\unins000.exe" Crawler Toolbar with Web Security Guard-->C:\Program Files (x86)\Crawler\Toolbar\CToolbar.exe uninst Creative Audio Console-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{17E96A7F-AFE3-4171-87B1-583E376319E8}\setup.exe" -l0x9 /remove Creative Software AutoUpdate-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{88B1984E-36F0-47B8-B8DC-728966807A9C}\setup.exe" -l0x9 /remove Disktrix UltimateDefrag 3.0-->"C:\Program Files (x86)\Disktrix\UltimateDefrag\unins000.exe" Dragon UnPACKer 5-->"C:\Program Files (x86)\Dragon UnPACKer 5\unins000.exe" DU Meter-->"C:\Program Files (x86)\DU Meter\unins000.exe" Dual-Core Optimizer-->MsiExec.exe /X{9FD6F1A8-5550-46AF-8509-271DF0E768B5} Dziobas Rar Player 0.009.52-->"C:\Program Files (x86)\Dziobas Rar Player\unins000.exe" ESET Online Scanner v3-->C:\Program Files (x86)\ESET\ESET Online Scanner\OnlineScannerUninstaller.exe ExtremeCopy-->MsiExec.exe /I{23D6630B-7538-483B-8B27-6452AE3BA628} FileZilla Client 3.5.1-->C:\Program Files (x86)\FileZilla FTP Client\uninstall.exe FLAC To MP3 V4.0.4-->"c:\FLAC To MP3\unins000.exe" FLVPlayer4Free Free FLV Player 1.4.0.0-->"C:\Program Files (x86)\FLVPlayer4Free\unins000.exe" Foxit Reader 5.1-->"C:\Program Files (x86)\Foxit Software\Foxit Reader\unins000.exe" Fraps (remove only)-->"C:\Fraps\uninstall.exe" Free Download Manager 3.0-->"C:\Program Files (x86)\Free Download Manager\unins000.exe" FreeArc 0.666-->C:\Program Files (x86)\FreeArc\uninst.exe GamersFirst LIVE!-->"C:\Program Files (x86)\GamersFirst\LIVE!\uninstall.exe" GoldWave v5.57-->"C:\Program Files (x86)\GoldWave\unstall.exe" "GoldWave v5.57" "C:\Program Files (x86)\GoldWave\unstall.log" Google Earth-->MsiExec.exe /X{5A3C1721-F8ED-11E0-8AFB-B8AC6F97B88E} Google Update Helper-->MsiExec.exe /I{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)-->C:\Windows\SysWOW64\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall /qb+ REBOOTPROMPT="" IrfanView (remove only)-->C:\Program Files (x86)\IrfanView\iv_uninstall.exe IZArc 4.1.6-->"C:\Program Files (x86)\IZArc\unins000.exe" Java(TM) 6 Update 29-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216027FF} Karen's Replicator-->C:\Program Files (x86)\Karen's Power Tools\Replicator\uninstall.exe Kingdoms of Amalur Reckoning-->"y:\Kingdoms of Amalur Reckoning\unins000.exe" K-Lite Mega Codec Pack 5.9.0-->"C:\Program Files (x86)\K-Lite Codec Pack\unins000.exe" Konnekt-->C:\Program Files (x86)\Konnekt\Uninst.exe LogonStudio-->C:\PROGRA~2\Stardock\Object Desktop\LogonStudio\UNWISE.EXE C:\PROGRA~2\Stardock\Object Desktop\LogonStudio\INSTALL.LOG Microsoft Games for Windows - LIVE Redistributable-->MsiExec.exe /X{1FDA5A37-B22D-43FF-B582-B8964050DC13} Microsoft Games for Windows - LIVE-->MsiExec.exe /X{86A4C6D9-29EE-4719-AFA1-BA3341862B83} Microsoft Visual C++ 2005 Redistributable - KB2467175-->MsiExec.exe /X{a0fe116e-9a8a-466f-aee0-625cb7c207e3} Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d} Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{837b34e3-7c30-493c-8f6a-2b0f04e2912c} Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022-->MsiExec.exe /X{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4} Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17-->MsiExec.exe /X{9A25302D-30C0-39D9-BD6F-21E6EC160475} Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148-->MsiExec.exe /X{1F1C2DFC-2D24-3E06-BCB8-725134ADF989} Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729-->MsiExec.exe /X{527BBE2F-1FED-3D8B-91CB-4DB0F838E69E} Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729-->MsiExec.exe /X{6AFCA4E1-9B78-3640-8F72-A7BF33448200} Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219-->MsiExec.exe /X{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5} Microsoft Windows Media Video 9 VCM-->RunDll32 advpack.dll,LaunchINFSection C:\Windows\INF\wmv9vcm.inf, Uninstall Microsoft WSE 3.0 Runtime-->MsiExec.exe /X{E3E71D07-CD27-46CB-8448-16D4FB29AA13} Microsoft XNA Framework Redistributable 3.1-->MsiExec.exe /I{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20} Microsoft XNA Framework Redistributable 4.0-->MsiExec.exe /I{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9} MiniTool Partition Wizard Home Edition 7.0-->"C:\Program Files (x86)\MiniTool Partition Wizard Home Edition 7.0\unins000.exe" Mozilla Firefox 8.0 (x86 pl)-->C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe Mozilla Thunderbird 11.0 (x86 pl)-->C:\Program Files (x86)\Mozilla Thunderbird\uninstall\helper.exe MSVC80_x86_v2-->MsiExec.exe /I{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6} MSVC90_x86-->MsiExec.exe /I{AF111648-99A1-453E-81DD-80DBBF6DAD0D} NVIDIA PhysX-->MsiExec.exe /X{DEA314C4-0929-4250-BC92-98E4C105F28D} OpenAL-->"C:\Program Files (x86)\OpenAL\oalinst.exe" /U OpenOffice.org 3.2-->MsiExec.exe /I{58B785A2-D2CA-40AA-AE89-FCC49326CDC4} Opera 11.61-->"C:\Program Files (x86)\Opera\Opera.exe" /uninstall Pando Media Booster-->C:\Program Files (x86)\Pando Networks\Media Booster\uninst.exe QuickTime Alternative 3.2.2-->"C:\Program Files (x86)\QuickTime Alternative\unins000.exe" RAD Video Tools-->"C:\Program Files (x86)\RADVideo\uninstall.exe" RAM Kontroler-->MsiExec.exe /I{782B6053-CEF0-432D-94CC-EA2CB5CAF587} Raptr-->"C:\Program Files (x86)\Raptr\uninstall.exe" Real Alternative 2.0.2-->"C:\Program Files (x86)\Real Alternative\unins000.exe" Realtek 8139 and 8139C+ Ethernet Network Card Driver for Windows Vista-->C:\Program Files (x86)\InstallShield Installation Information\{AE46ABD3-D625-467F-B5A7-8D3FFF077F0D}\setup.exe -runfromtemp -l0x0015 -removeonly Realtek Ethernet Controller Driver-->C:\Program Files (x86)\InstallShield Installation Information\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}\setup.exe -runfromtemp -removeonly Rockstar Games Social Club-->C:\Program Files (x86)\Rockstar Games\Social Club\uninstallRGSCRedistributable.exe Rollercoaster Tycoon 3 ZE-->C:\Program Files (x86)\InstallShield Installation Information\{907B4640-266B-4A21-92FB-CD1A86CD0F63}\setup.exe -runfromtemp -l0x0015 -removeonly Sandlot Games Client Services 1.2.2-->"C:\Program Files (x86)\Common Files\Sandlot Shared\unins000.exe" save2pc Ultimate 4.23-->"C:\Program Files (x86)\FDRLab\save2pc\unins000.exe" Settlers 2 Wikingowie-->"C:\Program Files (x86)\InstallShield Installation Information\{C5E60D42-B7EE-44C3-AFC7-BD6C39AAF183}\setup.exe" Spybot - Search & Destroy-->"C:\Program Files (x86)\Spybot - Search & Destroy\unins000.exe" SuperCopier2-->"C:\Program Files (x86)\SuperCopier2\SC2Uninst.exe" Total Commander Ultima Prime 5.3.0.0-->"C:\Program Files (x86)\TC UP\un_TC UP.exe" Ubisoft Game Launcher-->"C:\Program Files (x86)\InstallShield Installation Information\{888F1505-C2B3-4FDE-835D-36353EBD4754}\setup.exe" -runfromtemp -l0x0409 -removeonly Ultra Defragmenter-->C:\Windows\UltraDefrag\uninstall.exe Ultra Video Converter 5.1.0108-->"C:\Program Files (x86)\Ultra Video Converter\unins000.exe" Ultra Video Joiner 6.1.0108-->"C:\Program Files (x86)\Ultra Video Joiner\unins000.exe" Ultra Video Splitter 6.0.1201-->"C:\Program Files (x86)\Ultra Video Splitter\unins000.exe" UltraISO wersja v9.5.1-->"C:\Program Files (x86)\UltraISO\unins000.exe" Uninstall Tool-->"C:\Program Files (x86)\Uninstall Tool\unins001.exe" Universal Extractor 1.6.1-->"C:\Program Files (x86)\Universal Extractor\unins000.exe" VLC media player 1.1.11-->C:\Program Files (x86)\VideoLAN\VLC\uninstall.exe Vuze-->C:\Program Files (x86)\Vuze\uninstall.exe WebRipper 1.33-->C:\Program Files (x86)\WebRipper\uninst.exe Westward Kingdoms 1.00-->C:\Program Files (x86)\Games\Westward Kingdoms\Uninstall.exe Win AVI HelixSDK-->c:\unins000.exe Winamp-->"C:\Program Files (x86)\Winamp\UninstWA.exe" Windows Media Player Firefox Plugin-->MsiExec.exe /I{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4} World of Tanks v.0.6.7-->"y:\World_of_Tanks\unins000.exe" X7 Oscar Mouse Editor-->"C:\Program Files (x86)\InstallShield Installation Information\{7F7241E6-9E79-4E20-ABF6-3BBEDCB2B6C6}\setup.exe" -runfromtemp -l0x0415 -removeonly xrecode II 1.0.0.187-->"C:\Program Files (x86)\xrecode II\unins000.exe" ======Security center information====== AV: Symantec Endpoint Protection FW: Symantec Endpoint Protection AS: Symantec Endpoint Protection AS: Windows Defender ======System event log====== Computer Name: smo-PC Event Code: 537 Message: W tym komputerze nie odnaleziono zgodnego urządzenia zabezpieczeń modułu TPM. Nie można uruchomić usługi TBS. Record Number: 306771 Source Name: Microsoft-Windows-TBS Time Written: 20120321212215.572336-000 Event Type: Informacje User: ZARZĄDZANIE NT\USŁUGA LOKALNA Computer Name: smo-PC Event Code: 10029 Message: Model DCOM uruchomił usługę VSS z argumentami w celu uruchomienia serwera: {E579AB5F-1CC4-44B4-BED9-DE0991FF0623} Record Number: 306772 Source Name: Microsoft-Windows-DistributedCOM Time Written: 20120321212741.000000-000 Event Type: Informacje User: Computer Name: smo-PC Event Code: 10029 Message: Model DCOM uruchomił usługę swprv z argumentami w celu uruchomienia serwera: {65EE1DBA-8FF4-4A58-AC1C-3470EE2F376A} Record Number: 306773 Source Name: Microsoft-Windows-DistributedCOM Time Written: 20120321212742.000000-000 Event Type: Informacje User: Computer Name: smo-PC Event Code: 1050 Message: Rejestrowanie w Menedżerze sterowania usługami w celu monitorowania stanu usługi terminalowej nie powiodło się (kod błędu: Określona usługa nie istnieje jako usługa zainstalowana. ). Ponów próbę za dziesięć minut. Record Number: 306774 Source Name: Microsoft-Windows-TerminalServices-LocalSessionManager Time Written: 20120321212938.000000-000 Event Type: Błąd User: Computer Name: smo-PC Event Code: 1050 Message: Rejestrowanie w Menedżerze sterowania usługami w celu monitorowania stanu usługi terminalowej nie powiodło się (kod błędu: Określona usługa nie istnieje jako usługa zainstalowana. ). Ponów próbę za dziesięć minut. Record Number: 306775 Source Name: Microsoft-Windows-TerminalServices-LocalSessionManager Time Written: 20120321213938.000000-000 Event Type: Błąd User: =====Application event log===== Computer Name: smo-PC Event Code: 8224 Message: Usługa VSS jest zamykana z powodu przekroczenia limitu czasu bezczynności. Record Number: 53190 Source Name: VSS Time Written: 20120321213316.000000-000 Event Type: Informacje User: Computer Name: smo-PC Event Code: 2004 Message: Nie można otworzyć obiektu wydajności usługi Server. Pierwsze cztery bajty (DWORD) sekcji danych Data zawierają kod stanu. Record Number: 53191 Source Name: Microsoft-Windows-PerfNet Time Written: 20120321213733.000000-000 Event Type: Błąd User: Computer Name: smo-PC Event Code: 45 Message: Typ skanowania: skanowanie Ochrona przed naruszeniem integralności Zdarzenie: Wykryto zagrożenie bezpieczeństwa: C:\PROGRAM FILES (X86)\XIMSOFT\RAM KONTROLER\RAMKONTROLER.EXE Plik: C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.671.4971.105\Bin\SavUI.exe Lokalizacja: Usunięto lub zablokowano dostęp Komputer: SMO-PC Użytkownik: smo Podjęte działanie: Data znalezienia: 21 marca 2012 22:40:07 Record Number: 53192 Source Name: Symantec AntiVirus Time Written: 20120321214007.000000-000 Event Type: Błąd User: smo-PC\smo Computer Name: smo-PC Event Code: 51 Message: Znaleziono zagrożenie bezpieczeństwa!Zmiana pliku hosts w pliku: c:\program files (x86)\trend micro\smo.exe przez: SONAR skanowań. Działanie: . Opis działania: Dostęp zabroniony Record Number: 53193 Source Name: Symantec AntiVirus Time Written: 20120321214019.000000-000 Event Type: Błąd User: smo-PC\smo Computer Name: smo-PC Event Code: 51 Message: Znaleziono zagrożenie bezpieczeństwa!Zmiana pliku hosts w pliku: c:\program files (x86)\trend micro\smo.exe przez: SONAR skanowań. Działanie: . Opis działania: Dostęp zabroniony Record Number: 53194 Source Name: Symantec AntiVirus Time Written: 20120321214019.000000-000 Event Type: Błąd User: smo-PC\smo