--------[ EVEREST Corporate Edition ]-----------------------------------------------------------------------------------

                                                EVEREST v5.30.1900/ru
                                        2.4.273.0
                                      http://www.lavalys.com/
                                               [ TRIAL VERSION ]
                                             AJEKC-PC
                                             AJEKC
                                   Microsoft Windows 7 Ultimate 6.1.7600 (Win7 RTM)
                                                  2010-03-17
                                                 11:43


--------[   ]----------------------------------------------------------------------------------------

    :
                                           ACPI x64-based PC
                                     Microsoft Windows 7 Ultimate
                                       [ TRIAL VERSION ]
      Internet Explorer                                 8.0.7600.16385
      DirectX                                           DirectX 11.0
                                           AJEKC-PC
                                         AJEKC
                                              [ TRIAL VERSION ]
       /                                       2010-03-17 / 11:43

     :
                                                   QuadCore Intel Core i7 920, 2833 MHz (21 x 135)
                                          Gigabyte GA-EX58-UD4  (3 PCI, 1 PCI-E x1, 1 PCI-E x4, 2 PCI-E x16, 6 DDR3 DIMM, Audio, Gigabit LAN, IEEE-1394)
                                    Intel Tylersburg X58, Intel Nehalem
                                         [ TRIAL VERSION ]
       BIOS                                          Award Modular (12/11/08)
                                    Communications Port (COM1)

    :
                                            NVIDIA GeForce 9800 GT  (1024 )
                                            NVIDIA GeForce 9800 GT  (1024 )
      3D-                                    nVIDIA GeForce 9800 GT
                                                 Samsung SyncMaster 940N/MagicSyncMaster CX915N/CX916N/CX917N  [19" LCD]  (HS4P418472)

    :
                                         Realtek ALC888/1200 @ Intel 82801JB ICH10 - High Definition Audio Controller

     :
       IDE                                    Intel(R) ICH10 Family 2 port Serial ATA Storage Controller 2 - 3A26
       IDE                                    Intel(R) ICH10 Family 4 port Serial ATA Storage Controller 1 - 3A20
                                GIGABYTE GBB36X Controller
      -                                 
                                      SAMSUNG HD753LJ ATA Device  (750 , 7200 RPM, SATA-II)
                                    TSSTcorp CDDVDW SH-S202N SCSI CdRom Device  (DVD+R9:16x, DVD-R9:12x, DVD+RW:20x/8x, DVD-RW:20x/6x, DVD-RAM:12x, DVD-ROM:16x, CD:48x/32x/48x DVD+RW/DVD-RW/DVD-RAM)
       SMART                         OK

    :
      C: (NTFS)                                         [ TRIAL VERSION ]
      D: (NTFS)                                         664193  (57584  )
                                              [ TRIAL VERSION ]

    :
                                                PS/2
                                                    HID- 
                                                    Microsoft USB Wireless IntelliMouse Explorer

    :
        IP                                [ TRIAL VERSION ]
        MAC                               00-1F-D0-DB-E9-F1
                                          Realtek RTL8168D/8111D Family PCI-E Gigabit Ethernet NIC (NDIS 6.20)  (192. [ TRIAL VERSION ])

     :
                                                 Fax
                                                 Microsoft XPS Document Writer
       FireWire                               Texas Instruments TSB43AB23 1394A-2000 OHCI PHY/Link-Layer Controller (PHY: TI TSB43AB23)
       USB1                                   Intel 82801JB ICH10 - USB Universal Host Controller
       USB1                                   Intel 82801JB ICH10 - USB Universal Host Controller
       USB1                                   Intel 82801JB ICH10 - USB Universal Host Controller
       USB1                                   Intel 82801JB ICH10 - USB Universal Host Controller
       USB1                                   Intel 82801JB ICH10 - USB Universal Host Controller
       USB1                                   Intel 82801JB ICH10 - USB Universal Host Controller
       USB2                                   Intel 82801JB ICH10 - USB2 Enhanced Host Controller
       USB2                                   Intel 82801JB ICH10 - USB2 Enhanced Host Controller
      USB-                                    Microsoft USB Wireless IntelliMouse Explorer
      USB-                                    USB- 
      USB-                                    USB- 
      USB-                                     USB 

    DMI:
      DMI  BIOS                                Award Software International, Inc.
      DMI  BIOS                                   F2
      DMI                           Gigabyte Technology Co., Ltd.
      DMI                                        EX58-UD4
      DMI                                
      DMI                         [ TRIAL VERSION ]
      DMI  UUID                                [ TRIAL VERSION ]
      DMI                    Gigabyte Technology Co., Ltd.
      DMI                                 EX58-UD4
      DMI                           
      DMI                    [ TRIAL VERSION ]
      DMI                             Gigabyte Technology Co., Ltd.
      DMI                                    
      DMI                             [ TRIAL VERSION ]
      DMI Asset-                                [ TRIAL VERSION ]
      DMI                                       Desktop Case
      DMI  /                 6 / 4


--------[   ]----------------------------------------------------------------------------------------------

          
     NetBIOS                 AJEKC-PC
      DNS               AJEKC-PC
      DNS              
      DNS              AJEKC-PC
     NetBIOS                 AJEKC-PC
      DNS               AJEKC-PC
      DNS              
      DNS              AJEKC-PC


--------[ DMI ]---------------------------------------------------------------------------------------------------------

  [ BIOS ]

     BIOS:
                                           Award Software International, Inc.
                                                  F2
                                             12/11/2008
                                                  1024 
                                   Floppy Disk, Hard Disk, CD-ROM, ATAPI ZIP, LS-120
                                             Flash BIOS, Shadow BIOS, Selectable Boot, EDD, BBS
                                 DMI, ACPI, PnP
                                   PCI, USB

  [  ]

     :
                                           Gigabyte Technology Co., Ltd.
                                                 EX58-UD4
                                           [ TRIAL VERSION ]
        ID                       [ TRIAL VERSION ]
                                           

  [   ]

      :
                                           Gigabyte Technology Co., Ltd.
                                                 EX58-UD4
                                           [ TRIAL VERSION ]

  [  ]

     :
                                           Gigabyte Technology Co., Ltd.
                                           [ TRIAL VERSION ]
                                            [ TRIAL VERSION ]
                                                

  [   ]

      :
                                  8-bit Parity
                                         
                              1-Way
                                1-Way
                   5V
                           1024 
                                           6

  [  / Intel(R) Core(TM) i7 CPU ]

     :
                                           Intel
                                                  Intel(R) Core(TM) i7 CPU
                                          133 
                                     4000 
                                          2666 
                                                     Central Processor
                                       1.0 V
                                                  
                                               Socket 478
                                              Socket 1366

  [ - / Internal Cache ]

     :
                                                     
                                                  
                                             Write-Back
                                       64 
                                      64 
        SRAM                           Synchronous
        SRAM                                  Synchronous
                                               

  [ - / External Cache ]

     :
                                                     
                                                  
                                             Write-Back
                                       2048 
                                      8192 
        SRAM                           Synchronous
        SRAM                                  Synchronous
                                               

  [   / A0 ]

      :
                                              A0
                                      2048 
                                         2048 

  [   / A1 ]

      :
                                              A1
                                       
                                          

  [   / A2 ]

      :
                                              A2
                                      2048 
                                         2048 

  [   / A3 ]

      :
                                              A3
                                       
                                          

  [   / A4 ]

      :
                                              A4
                                       
                                          

  [   / A5 ]

      :
                                              A5
                                       
                                          

  [   / A0 ]

      :
      -                                       DIMM
                                                  2048 
                                                400 
                                             2304 
                                            2178 
                                              A0
                                                    Bank0/1

  [   / A1 ]

      :
      -                                       DIMM
                                              A1
                                                    Bank2/3

  [   / A2 ]

      :
      -                                       DIMM
                                                  2048 
                                                400 
                                             2304 
                                            2178 
                                              A2
                                                    Bank4/5

  [   / A3 ]

      :
      -                                       DIMM
                                              A3
                                                    Bank6/7

  [   / A4 ]

      :
      -                                       DIMM
                                              A4
                                                    Bank8/9

  [   / A5 ]

      :
      -                                       DIMM
                                              A5
                                                    Bank10/11

  [   / PCI ]

      :
                                       PCI
                                                     PCI
                                           
                                        32-bit
                                                   

  [   / PCI ]

      :
                                       PCI
                                                     PCI
                                           
                                        32-bit
                                                   

  [   / PCI ]

      :
                                       PCI
                                                     PCI
                                           
                                        32-bit
                                                   

  [   / PCI ]

      :
                                       PCI
                                                     PCI
                                           
                                        32-bit
                                                   

  [   / PRIMARY IDE ]

      :
                                   PRIMARY IDE
                                    On-Board IDE
                                       

  [   / FDD ]

      :
                                                8251 FIFO Compatible
                                   FDD
                                    On-Board Floppy
                                       

  [   / COM1 ]

      :
                                                Serial Port 16450 Compatible
                                   COM1
                                    9 Pin Dual Inline (pin 10 cut)
                                       DB-9 pin male

  [   / Keyboard ]

      :
                                                Keyboard Port
                                   
                                       PS/2

  [   / No Detected ]

      :
                                                Mouse Port
                                   PS/2 Mouse
                                    PS/2
                                      No Detected
                                       PS/2

  [   / USB ]

      :
                                                USB
                                   USB
                                    
                                       USB

  [   / USB ]

      :
                                                USB
                                   USB
                                    
                                       USB


--------[  ]----------------------------------------------------------------------------------------------

     :
                                  
                                         
                              
                          


--------[   ]----------------------------------------------------------------------------------------------

    Centrino (Carmel)  :
      : Intel Pentium M (Banias/Dothan)                 (QuadCore Intel Core i7 920)
      : Intel i855GM/PM                             (Intel Tylersburg X58, Intel Nehalem)
      WLAN: Intel PRO/Wireless                          
      : Centrino-                     

    Centrino (Sonoma)  :
      : Intel Pentium M (Dothan)                        (QuadCore Intel Core i7 920)
      : Intel i915GM/PM                             (Intel Tylersburg X58, Intel Nehalem)
      WLAN: Intel PRO/Wireless                          
      : Centrino-                     

    Centrino (Napa)  :
      : Intel Core (Yonah) / Core 2 (Merom)             (QuadCore Intel Core i7 920)
      : Intel i945GM/PM                             (Intel Tylersburg X58, Intel Nehalem)
      WLAN: Intel PRO/Wireless 3945                     
      : Centrino-                     

    Centrino (Santa Rosa)  :
      : Intel Core 2 (Merom/Penryn)                     (QuadCore Intel Core i7 920)
      : Intel GM965/PM965                           (Intel Tylersburg X58, Intel Nehalem)
      WLAN: Intel Wireless WiFi Link 4965               
      : Centrino-                     

    Centrino (Montevina)  :
      : Intel Core 2 (Penryn)                           (QuadCore Intel Core i7 920)
      : Intel GM45/GM47/GS45/PM45                   (Intel Tylersburg X58, Intel Nehalem)
      WLAN: Intel WiFi Link 5000 Series                 
      : Centrino-                     


--------[  ]------------------------------------------------------------------------------------------------------

     :
                                              ITE IT8720F + DES  (ISA 290h)
                                            Diode  (NV-Diode)
                                          Gigabyte EX58-DS4 / UD3R / UD4
                               

    :
                                          48 C  (118 F)
                                                      47 C  (117 F)
       1 /  1                                     58 C  (136 F)
       1 /  2                                     58 C  (136 F)
       1 /  3                                     57 C  (135 F)
       1 /  4                                     57 C  (135 F)
                                            54 C  (129 F)
                                                  58 C  (136 F)
      SAMSUNG HD753LJ                                   [ TRIAL VERSION ]

    :
                                                      1962 RPM
                                    35%

    :
                                                  1.28 V
      +3.3 V                                            3.38 V
      +5 V                                              4.95 V
      +12 V                                             [ TRIAL VERSION ]
       VBAT                                      3.26 V
      DIMM                                              1.54 V

     :
                                                      25.54 A

     :
                                                      32.69 W
      Debug Info F                                      0158 FFFF FFFF FFFF 0000
      Debug Info T                                      48 47 54
      Debug Info V                                      50 60 D3 B8 6C C7 1A (7F)


--------[  ]----------------------------------------------------------------------------------------------------------

     :
                                                   QuadCore Intel Core i7 920, 2833 MHz (21 x 135)
                                             Bloomfield
                                              C0/C1
                                        x86, x86-64, MMX, SSE, SSE2, SSE3, SSSE3, SSE4.1, SSE4.2
                                         [ TRIAL VERSION ]
      ./.                             12x / 20x
      Engineering Sample                                
       L1                                        32  per core
       L1                                      [ TRIAL VERSION ]
       L2                                            256  per core  (On-Die, ECC, Full-Speed)
       L3                                            8   (On-Die, ECC, Full-Speed)

    Multi CPU:
      ID                                  OEM00000 PROD00000000
      CPU #1                                            Intel(R) Core(TM) i7 CPU 920 @ 2.67GHz, 2698 
      CPU #2                                            Intel(R) Core(TM) i7 CPU 920 @ 2.67GHz, 2698 
      CPU #3                                            Intel(R) Core(TM) i7 CPU 920 @ 2.67GHz, 2698 
      CPU #4                                            Intel(R) Core(TM) i7 CPU 920 @ 2.67GHz, 2698 
      CPU #5                                            Intel(R) Core(TM) i7 CPU 920 @ 2.67GHz, 2698 
      CPU #6                                            Intel(R) Core(TM) i7 CPU 920 @ 2.67GHz, 2698 
      CPU #7                                            Intel(R) Core(TM) i7 CPU 920 @ 2.67GHz, 2698 
      CPU #8                                            Intel(R) Core(TM) i7 CPU 920 @ 2.67GHz, 2698 

       :
                                              1366 Contact FC-LGA
                                          4.25 cm x 4.50 cm
                                       [ TRIAL VERSION ] .
                                  45 nm, CMOS, Cu, High-K + Metal Gate
                                         [ TRIAL VERSION ] mm2
                                        130 W @ 2.66 GHz

     :
                                                   Intel Corporation
                                     http://www.intel.com/products/processor

     :
       1 /  1 / HTT 1                             0 %
       1 /  1 / HTT 2                             0 %
       1 /  2 / HTT 1                             0 %
       1 /  2 / HTT 2                             0 %
       1 /  3 / HTT 1                             0 %
       1 /  3 / HTT 2                             0 %
       1 /  4 / HTT 1                             66 %
       1 /  4 / HTT 2                             0 %


--------[ CPUID ]-------------------------------------------------------------------------------------------------------

     CPUID:
       CPUID                               GenuineIntel
        CPUID                                      Intel(R) Core(TM) i7 CPU 920 @ 2.67GHz
       CPUID                                      000106A4h
        IA                            00h  ()
                                  2Dh / MC 02h  (LGA1366)
                               11
      HTT / CMP                                         2 / 4
       Tjmax                                 100 C  (212 F)
      CPU Thermal Design Power                          130 W
      CPU Thermal Design Current                        110 A

     :
      64- x86- (AMD64, Intel64)            
      AMD 3DNow!                                         
      AMD 3DNow! Professional                            
      AMD 3DNowPrefetch                                  
      AMD Enhanced 3DNow!                                
      AMD Extended MMX                                   
      AMD MisAligned SSE                                 
      AMD SSE4A                                          
      AMD SSE5                                           
      Cyrix Extended MMX                                 
      IA-64                                              
      IA MMX                                            
      IA SSE                                            
      IA SSE 2                                          
      IA SSE 3                                          
      IA Supplemental SSE 3                             
      IA SSE 4.1                                        
      IA SSE 4.2                                        
      IA AVX                                             
      IA FMA                                             
      IA AES Extensions                                  
      VIA Alternate Instruction Set                      
       CLFLUSH                                
       CMPXCHG8B                              
       CMPXCHG16B                             
       Conditional Move                       
       LZCNT                                   
       MONITOR / MWAIT                        
       MOVBE                                   
       PCLMULQDQ                               
       POPCNT                                 
       RDTSCP                                 
       SYSCALL / SYSRET                        
       SYSENTER / SYSEXIT                     
       VIA FEMMS                               

     :
      Advanced Cryptography Engine (ACE)                 
      Advanced Cryptography Engine 2 (ACE2)              
         (DEP, NX, EDB)           
          (RNG)         
      PadLock Hash Engine (PHE)                          
      PadLock Montgomery Multiplier (PMM)                
         (PSN)                    

     :
      Automatic Clock Control                           
      Digital Thermometer                               
      Dynamic FSB Frequency Switching                    
      Enhanced Halt State (C1E)                         , 
      Enhanced SpeedStep Technology (EIST, ESS)         , 
      Frequency ID Control                               
      Hardware P-State Control                           
      LongRun                                            
      LongRun Table Interface                            
      PowerSaver 1.0                                     
      PowerSaver 2.0                                     
      PowerSaver 3.0                                     
      Processor Duty Cycle Control                      
      Software Thermal Control                           
                                                
      Thermal Monitor 1                                 
      Thermal Monitor 2                                 
      Thermal Monitoring                                 
      Thermal Trip                                       
      Voltage ID Control                                 

     CPUID:
      1 GB Page Size                                     
      36-bit Page Size Extension                        
      Address Region Registers (ARR)                     
      CPL Qualified Debug Store                         
      Debug Trace Store                                 
      Debugging Extension                               
      Direct Cache Access                                
      Dynamic Acceleration Technology (IDA)              
      Fast Save & Restore                               
      Hyper-Threading Technology (HTT)                  , 
      Invariant Time Stamp Counter                      
      L1 Context ID                                      
      Local APIC On Chip                                
      Machine Check Architecture (MCA)                  
      Machine Check Exception (MCE)                     
      Memory Configuration Registers (MCR)               
      Memory Type Range Registers (MTRR)                
      Model Specific Registers (MSR)                    
      Nested Paging                                      
      Page Attribute Table (PAT)                        
      Page Global Extension                             
      Page Size Extension (PSE)                         
      Pending Break Event                               
      Physical Address Extension (PAE)                  
      Safer Mode Extensions (SMX)                        
      Secure Virtual Machine Extensions (Pacifica)       
      Self-Snoop                                        
      Time Stamp Counter (TSC)                          
      Turbo Boost                                       , 
      Virtual Machine Extensions (Vanderpool)           
      Virtual Mode Extension                            
      x2APIC                                             
      XSAVE / XRSTOR Extended States                     

    CPUID Registers (CPU #1):
      CPUID 00000000                                    0000000B-756E6547-6C65746E-49656E69
      CPUID 00000001                                    000106A4-00100800-0098E3BD-BFEBFBFF
      CPUID 00000002                                    55035A01-00F0B2E4-00000000-09CA212C
      CPUID 00000003                                    00000000-00000000-00000000-00000000
      CPUID 00000004                                    1C004121-01C0003F-0000003F-00000000
      CPUID 00000004                                    1C004122-00C0003F-0000007F-00000000
      CPUID 00000004                                    1C004143-01C0003F-000001FF-00000000
      CPUID 00000004                                    1C03C163-03C0003F-00001FFF-00000002
      CPUID 00000005                                    00000040-00000040-00000003-00001120
      CPUID 00000006                                    00000003-00000002-00000001-00000000
      CPUID 00000007                                    00000000-00000000-00000000-00000000
      CPUID 00000008                                    00000000-00000000-00000000-00000000
      CPUID 00000009                                    00000000-00000000-00000000-00000000
      CPUID 0000000A                                    07300403-00000040-00000000-00000603
      CPUID 0000000B                                    00000001-00000002-00000100-00000000
      CPUID 0000000B                                    00000004-00000008-00000201-00000000
      CPUID 80000000                                    80000008-00000000-00000000-00000000
      CPUID 80000001                                    00000000-00000000-00000001-28100000
      CPUID 80000002                                    65746E49-2952286C-726F4320-4D542865
      CPUID 80000003                                    37692029-55504320-20202020-20202020
      CPUID 80000004                                    30323920-20402020-37362E32-007A4847
      CPUID 80000005                                    00000000-00000000-00000000-00000000
      CPUID 80000006                                    00000000-00000000-01006040-00000000
      CPUID 80000007                                    00000000-00000000-00000000-00000100
      CPUID 80000008                                    00003024-00000000-00000000-00000000

    CPUID Registers (CPU #2 Virtual):
      CPUID 00000000                                    0000000B-756E6547-6C65746E-49656E69
      CPUID 00000001                                    000106A4-01100800-0098E3BD-BFEBFBFF
      CPUID 00000002                                    55035A01-00F0B2E4-00000000-09CA212C
      CPUID 00000003                                    00000000-00000000-00000000-00000000
      CPUID 00000004                                    1C004121-01C0003F-0000003F-00000000
      CPUID 00000004                                    1C004122-00C0003F-0000007F-00000000
      CPUID 00000004                                    1C004143-01C0003F-000001FF-00000000
      CPUID 00000004                                    1C03C163-03C0003F-00001FFF-00000002
      CPUID 00000005                                    00000040-00000040-00000003-00001120
      CPUID 00000006                                    00000003-00000002-00000001-00000000
      CPUID 00000007                                    00000000-00000000-00000000-00000000
      CPUID 00000008                                    00000000-00000000-00000000-00000000
      CPUID 00000009                                    00000000-00000000-00000000-00000000
      CPUID 0000000A                                    07300403-00000040-00000000-00000603
      CPUID 0000000B                                    00000001-00000002-00000100-00000001
      CPUID 0000000B                                    00000004-00000008-00000201-00000001
      CPUID 80000000                                    80000008-00000000-00000000-00000000
      CPUID 80000001                                    00000000-00000000-00000001-28100000
      CPUID 80000002                                    65746E49-2952286C-726F4320-4D542865
      CPUID 80000003                                    37692029-55504320-20202020-20202020
      CPUID 80000004                                    30323920-20402020-37362E32-007A4847
      CPUID 80000005                                    00000000-00000000-00000000-00000000
      CPUID 80000006                                    00000000-00000000-01006040-00000000
      CPUID 80000007                                    00000000-00000000-00000000-00000100
      CPUID 80000008                                    00003024-00000000-00000000-00000000

    CPUID Registers (CPU #3):
      CPUID 00000000                                    0000000B-756E6547-6C65746E-49656E69
      CPUID 00000001                                    000106A4-02100800-0098E3BD-BFEBFBFF
      CPUID 00000002                                    55035A01-00F0B2E4-00000000-09CA212C
      CPUID 00000003                                    00000000-00000000-00000000-00000000
      CPUID 00000004                                    1C004121-01C0003F-0000003F-00000000
      CPUID 00000004                                    1C004122-00C0003F-0000007F-00000000
      CPUID 00000004                                    1C004143-01C0003F-000001FF-00000000
      CPUID 00000004                                    1C03C163-03C0003F-00001FFF-00000002
      CPUID 00000005                                    00000040-00000040-00000003-00001120
      CPUID 00000006                                    00000003-00000002-00000001-00000000
      CPUID 00000007                                    00000000-00000000-00000000-00000000
      CPUID 00000008                                    00000000-00000000-00000000-00000000
      CPUID 00000009                                    00000000-00000000-00000000-00000000
      CPUID 0000000A                                    07300403-00000040-00000000-00000603
      CPUID 0000000B                                    00000001-00000002-00000100-00000002
      CPUID 0000000B                                    00000004-00000008-00000201-00000002
      CPUID 80000000                                    80000008-00000000-00000000-00000000
      CPUID 80000001                                    00000000-00000000-00000001-28100000
      CPUID 80000002                                    65746E49-2952286C-726F4320-4D542865
      CPUID 80000003                                    37692029-55504320-20202020-20202020
      CPUID 80000004                                    30323920-20402020-37362E32-007A4847
      CPUID 80000005                                    00000000-00000000-00000000-00000000
      CPUID 80000006                                    00000000-00000000-01006040-00000000
      CPUID 80000007                                    00000000-00000000-00000000-00000100
      CPUID 80000008                                    00003024-00000000-00000000-00000000

    CPUID Registers (CPU #4 Virtual):
      CPUID 00000000                                    0000000B-756E6547-6C65746E-49656E69
      CPUID 00000001                                    000106A4-03100800-0098E3BD-BFEBFBFF
      CPUID 00000002                                    55035A01-00F0B2E4-00000000-09CA212C
      CPUID 00000003                                    00000000-00000000-00000000-00000000
      CPUID 00000004                                    1C004121-01C0003F-0000003F-00000000
      CPUID 00000004                                    1C004122-00C0003F-0000007F-00000000
      CPUID 00000004                                    1C004143-01C0003F-000001FF-00000000
      CPUID 00000004                                    1C03C163-03C0003F-00001FFF-00000002
      CPUID 00000005                                    00000040-00000040-00000003-00001120
      CPUID 00000006                                    00000003-00000002-00000001-00000000
      CPUID 00000007                                    00000000-00000000-00000000-00000000
      CPUID 00000008                                    00000000-00000000-00000000-00000000
      CPUID 00000009                                    00000000-00000000-00000000-00000000
      CPUID 0000000A                                    07300403-00000040-00000000-00000603
      CPUID 0000000B                                    00000001-00000002-00000100-00000003
      CPUID 0000000B                                    00000004-00000008-00000201-00000003
      CPUID 80000000                                    80000008-00000000-00000000-00000000
      CPUID 80000001                                    00000000-00000000-00000001-28100000
      CPUID 80000002                                    65746E49-2952286C-726F4320-4D542865
      CPUID 80000003                                    37692029-55504320-20202020-20202020
      CPUID 80000004                                    30323920-20402020-37362E32-007A4847
      CPUID 80000005                                    00000000-00000000-00000000-00000000
      CPUID 80000006                                    00000000-00000000-01006040-00000000
      CPUID 80000007                                    00000000-00000000-00000000-00000100
      CPUID 80000008                                    00003024-00000000-00000000-00000000

    CPUID Registers (CPU #5):
      CPUID 00000000                                    0000000B-756E6547-6C65746E-49656E69
      CPUID 00000001                                    000106A4-04100800-0098E3BD-BFEBFBFF
      CPUID 00000002                                    55035A01-00F0B2E4-00000000-09CA212C
      CPUID 00000003                                    00000000-00000000-00000000-00000000
      CPUID 00000004                                    1C004121-01C0003F-0000003F-00000000
      CPUID 00000004                                    1C004122-00C0003F-0000007F-00000000
      CPUID 00000004                                    1C004143-01C0003F-000001FF-00000000
      CPUID 00000004                                    1C03C163-03C0003F-00001FFF-00000002
      CPUID 00000005                                    00000040-00000040-00000003-00001120
      CPUID 00000006                                    00000003-00000002-00000001-00000000
      CPUID 00000007                                    00000000-00000000-00000000-00000000
      CPUID 00000008                                    00000000-00000000-00000000-00000000
      CPUID 00000009                                    00000000-00000000-00000000-00000000
      CPUID 0000000A                                    07300403-00000040-00000000-00000603
      CPUID 0000000B                                    00000001-00000002-00000100-00000004
      CPUID 0000000B                                    00000004-00000008-00000201-00000004
      CPUID 80000000                                    80000008-00000000-00000000-00000000
      CPUID 80000001                                    00000000-00000000-00000001-28100000
      CPUID 80000002                                    65746E49-2952286C-726F4320-4D542865
      CPUID 80000003                                    37692029-55504320-20202020-20202020
      CPUID 80000004                                    30323920-20402020-37362E32-007A4847
      CPUID 80000005                                    00000000-00000000-00000000-00000000
      CPUID 80000006                                    00000000-00000000-01006040-00000000
      CPUID 80000007                                    00000000-00000000-00000000-00000100
      CPUID 80000008                                    00003024-00000000-00000000-00000000

    CPUID Registers (CPU #6 Virtual):
      CPUID 00000000                                    0000000B-756E6547-6C65746E-49656E69
      CPUID 00000001                                    000106A4-05100800-0098E3BD-BFEBFBFF
      CPUID 00000002                                    55035A01-00F0B2E4-00000000-09CA212C
      CPUID 00000003                                    00000000-00000000-00000000-00000000
      CPUID 00000004                                    1C004121-01C0003F-0000003F-00000000
      CPUID 00000004                                    1C004122-00C0003F-0000007F-00000000
      CPUID 00000004                                    1C004143-01C0003F-000001FF-00000000
      CPUID 00000004                                    1C03C163-03C0003F-00001FFF-00000002
      CPUID 00000005                                    00000040-00000040-00000003-00001120
      CPUID 00000006                                    00000003-00000002-00000001-00000000
      CPUID 00000007                                    00000000-00000000-00000000-00000000
      CPUID 00000008                                    00000000-00000000-00000000-00000000
      CPUID 00000009                                    00000000-00000000-00000000-00000000
      CPUID 0000000A                                    07300403-00000040-00000000-00000603
      CPUID 0000000B                                    00000001-00000002-00000100-00000005
      CPUID 0000000B                                    00000004-00000008-00000201-00000005
      CPUID 80000000                                    80000008-00000000-00000000-00000000
      CPUID 80000001                                    00000000-00000000-00000001-28100000
      CPUID 80000002                                    65746E49-2952286C-726F4320-4D542865
      CPUID 80000003                                    37692029-55504320-20202020-20202020
      CPUID 80000004                                    30323920-20402020-37362E32-007A4847
      CPUID 80000005                                    00000000-00000000-00000000-00000000
      CPUID 80000006                                    00000000-00000000-01006040-00000000
      CPUID 80000007                                    00000000-00000000-00000000-00000100
      CPUID 80000008                                    00003024-00000000-00000000-00000000

    CPUID Registers (CPU #7):
      CPUID 00000000                                    0000000B-756E6547-6C65746E-49656E69
      CPUID 00000001                                    000106A4-06100800-0098E3BD-BFEBFBFF
      CPUID 00000002                                    55035A01-00F0B2E4-00000000-09CA212C
      CPUID 00000003                                    00000000-00000000-00000000-00000000
      CPUID 00000004                                    1C004121-01C0003F-0000003F-00000000
      CPUID 00000004                                    1C004122-00C0003F-0000007F-00000000
      CPUID 00000004                                    1C004143-01C0003F-000001FF-00000000
      CPUID 00000004                                    1C03C163-03C0003F-00001FFF-00000002
      CPUID 00000005                                    00000040-00000040-00000003-00001120
      CPUID 00000006                                    00000003-00000002-00000001-00000000
      CPUID 00000007                                    00000000-00000000-00000000-00000000
      CPUID 00000008                                    00000000-00000000-00000000-00000000
      CPUID 00000009                                    00000000-00000000-00000000-00000000
      CPUID 0000000A                                    07300403-00000040-00000000-00000603
      CPUID 0000000B                                    00000001-00000002-00000100-00000006
      CPUID 0000000B                                    00000004-00000008-00000201-00000006
      CPUID 80000000                                    80000008-00000000-00000000-00000000
      CPUID 80000001                                    00000000-00000000-00000001-28100000
      CPUID 80000002                                    65746E49-2952286C-726F4320-4D542865
      CPUID 80000003                                    37692029-55504320-20202020-20202020
      CPUID 80000004                                    30323920-20402020-37362E32-007A4847
      CPUID 80000005                                    00000000-00000000-00000000-00000000
      CPUID 80000006                                    00000000-00000000-01006040-00000000
      CPUID 80000007                                    00000000-00000000-00000000-00000100
      CPUID 80000008                                    00003024-00000000-00000000-00000000

    CPUID Registers (CPU #8 Virtual):
      CPUID 00000000                                    0000000B-756E6547-6C65746E-49656E69
      CPUID 00000001                                    000106A4-07100800-0098E3BD-BFEBFBFF
      CPUID 00000002                                    55035A01-00F0B2E4-00000000-09CA212C
      CPUID 00000003                                    00000000-00000000-00000000-00000000
      CPUID 00000004                                    1C004121-01C0003F-0000003F-00000000
      CPUID 00000004                                    1C004122-00C0003F-0000007F-00000000
      CPUID 00000004                                    1C004143-01C0003F-000001FF-00000000
      CPUID 00000004                                    1C03C163-03C0003F-00001FFF-00000002
      CPUID 00000005                                    00000040-00000040-00000003-00001120
      CPUID 00000006                                    00000003-00000002-00000001-00000000
      CPUID 00000007                                    00000000-00000000-00000000-00000000
      CPUID 00000008                                    00000000-00000000-00000000-00000000
      CPUID 00000009                                    00000000-00000000-00000000-00000000
      CPUID 0000000A                                    07300403-00000040-00000000-00000603
      CPUID 0000000B                                    00000001-00000002-00000100-00000007
      CPUID 0000000B                                    00000004-00000008-00000201-00000007
      CPUID 80000000                                    80000008-00000000-00000000-00000000
      CPUID 80000001                                    00000000-00000000-00000001-28100000
      CPUID 80000002                                    65746E49-2952286C-726F4320-4D542865
      CPUID 80000003                                    37692029-55504320-20202020-20202020
      CPUID 80000004                                    30323920-20402020-37362E32-007A4847
      CPUID 80000005                                    00000000-00000000-00000000-00000000
      CPUID 80000006                                    00000000-00000000-01006040-00000000
      CPUID 80000007                                    00000000-00000000-00000000-00000100
      CPUID 80000008                                    00003024-00000000-00000000-00000000

    MSR Registers:
      MSR 00000017                                      0004-0000-0000-0000 [PlatID = 1]
      MSR 0000001B                                      0000-0000-FEE0-0900
      MSR 00000035                                      0000-0000-0004-0008
      MSR 0000008B                                      0000-0011-0000-0000
      MSR 000000CE                                      0000-0C00-0001-1400
      MSR 000000E7                                      0000-0000-0120-FB12
      MSR 000000E8                                      0000-0000-012F-8473
      MSR 00000194                                      0000-0000-0000-0000
      MSR 00000198                                      0000-0000-0000-0015
      MSR 00000199                                      0000-0000-0000-0015
      MSR 0000019A                                      0000-0000-0000-0000
      MSR 0000019B                                      0000-0000-0000-0000
      MSR 0000019C                                      0000-0000-8828-0000
      MSR 0000019D                                      0000-0000-0000-0000
      MSR 000001A0                                      0000-0000-0085-0089
      MSR 000001A2                                      0000-0000-0064-1400
      MSR 000001A4                                      0000-0000-0000-0000
      MSR 000001AA                                      0000-0000-0000-0000
      MSR 000001AC                                      0000-0000-0370-0410
      MSR 000001FC                                      0000-0000-0000-0003
      MSR 00000300                                      0000-0000-E000-0001


--------[   ]---------------------------------------------------------------------------------------------

      :
      ID                                  12/11/2008-X58-ICH10-7A89QG07C-00
                                          Gigabyte GA-EX58-UD4

      FSB:
                                                 Intel QPI
                                         135 
                                      135 
       QPI                                       [ TRIAL VERSION ]

      :
                                                 Triple DDR3 SDRAM
                                              192 
       DRAM:FSB                              4:1
                                         540  (DDR)
                                      1079 
                                   [ TRIAL VERSION ] /

      :
                                                 Intel ESI

        :
                                         1 LGA1366
                                       [ TRIAL VERSION ]
                                              6 DDR3 DIMM
                                    Audio, Gigabit LAN, IEEE-1394
      -                                       ATX
                                   240 mm x 300 mm
                                    X58
                                   [ TRIAL VERSION ]

      :
                                                   Gigabyte Technology Co., Ltd.
                                     http://www.giga-byte.com/Products/Motherboard/Default.aspx
        BIOS                          http://www.giga-byte.com/Support/Motherboard/BIOS_List.aspx
                                     http://driveragent.com?ref=59
       BIOS                                   http://www.esupport.com/biosagent/index.cfm?refererid=40


--------[  ]------------------------------------------------------------------------------------------------------

     :
                                                   [ TRIAL VERSION ]
                                                  [ TRIAL VERSION ]
                                                4378 
                                                [ TRIAL VERSION ]

       :
                                                   12283 
                                                  1943 
                                                10339 
                                                16 %

     :
                                                   18425 
                                                  3708 
                                                14717 
                                                20 %

     :
                                            C:\pagefile.sys
                                           6142 
      /                           103  / 110 
                                                2 %

    Physical Address Extension (PAE):
                                        
                                        
                                                


--------[ SPD ]---------------------------------------------------------------------------------------------------------

  [ DIMM1: A-Data DDR3 1600G ]

      :
                                               A-Data DDR3 1600G
                                           
                                            2  (2 ranks, 8 banks)
                                               Unbuffered DIMM
                                               DDR3 SDRAM
                                          DDR3-1600 (800 )
                                            64 bit
                                  

     :
      @ 800                                          9-9-9-28  (CL-RCD-RP-RAS) / 37-88-5-12-6-6  (RC-RFC-RRD-WR-WTR-RTP)
      @ 711                                          8-8-8-25  (CL-RCD-RP-RAS) / 33-79-4-11-6-6  (RC-RFC-RRD-WR-WTR-RTP)
      @ 622                                          7-7-7-22  (CL-RCD-RP-RAS) / 29-69-4-10-5-5  (RC-RFC-RRD-WR-WTR-RTP)
      @ 533                                          6-6-6-19  (CL-RCD-RP-RAS) / 25-59-3-8-4-4  (RC-RFC-RRD-WR-WTR-RTP)
      @ 444                                          5-5-5-16  (CL-RCD-RP-RAS) / 21-49-3-7-4-4  (RC-RFC-RRD-WR-WTR-RTP)

      :
      Auto Self Refresh                                 
      Extended Temperature Range                        
      Extended Temperature Refresh Rate                  
      On-Die Thermal Sensor Readout                      

      :
                                                   A-DATA Technology Co., Ltd.
                                     http://www.adata.com.tw/adata_en/drammodule.php

  [ DIMM3: [ TRIAL VERSION ] ]

      :
                                               [ TRIAL VERSION ]
                                           
                                            2  (2 ranks, 8 banks)
                                               [ TRIAL VERSION ]
                                               DDR3 SDRAM
                                          DDR3-1600 (800 )
                                            64 bit
                                  

     :
      @ 800                                          9-9-9-28  (CL-RCD-RP-RAS) / 37-88-5-12-6-6  (RC-RFC-RRD-WR-WTR-RTP)
      @ 711                                          8-8-8-25  (CL-RCD-RP-RAS) / 33-79-4-11-6-6  (RC-RFC-RRD-WR-WTR-RTP)
      @ 622                                          7-7-7-22  (CL-RCD-RP-RAS) / 29-69-4-10-5-5  (RC-RFC-RRD-WR-WTR-RTP)
      @ 533                                          6-6-6-19  (CL-RCD-RP-RAS) / 25-59-3-8-4-4  (RC-RFC-RRD-WR-WTR-RTP)
      @ 444                                          5-5-5-16  (CL-RCD-RP-RAS) / 21-49-3-7-4-4  (RC-RFC-RRD-WR-WTR-RTP)

      :
      Auto Self Refresh                                 
      Extended Temperature Range                        
      Extended Temperature Refresh Rate                  
      On-Die Thermal Sensor Readout                      

      :
                                                   A-DATA Technology Co., Ltd.
                                     http://www.adata.com.tw/adata_en/drammodule.php

  [ DIMM5: [ TRIAL VERSION ] ]

      :
                                               [ TRIAL VERSION ]
                                           
                                            2  (2 ranks, 8 banks)
                                               [ TRIAL VERSION ]
                                               DDR3 SDRAM
                                          DDR3-1600 (800 )
                                            64 bit
                                  

     :
      @ 800                                          9-9-9-28  (CL-RCD-RP-RAS) / 37-88-5-12-6-6  (RC-RFC-RRD-WR-WTR-RTP)
      @ 711                                          8-8-8-25  (CL-RCD-RP-RAS) / 33-79-4-11-6-6  (RC-RFC-RRD-WR-WTR-RTP)
      @ 622                                          7-7-7-22  (CL-RCD-RP-RAS) / 29-69-4-10-5-5  (RC-RFC-RRD-WR-WTR-RTP)
      @ 533                                          6-6-6-19  (CL-RCD-RP-RAS) / 25-59-3-8-4-4  (RC-RFC-RRD-WR-WTR-RTP)
      @ 444                                          5-5-5-16  (CL-RCD-RP-RAS) / 21-49-3-7-4-4  (RC-RFC-RRD-WR-WTR-RTP)

      :
      Auto Self Refresh                                 
      Extended Temperature Range                        
      Extended Temperature Refresh Rate                  
      On-Die Thermal Sensor Readout                      

      :
                                                   A-DATA Technology Co., Ltd.
                                     http://www.adata.com.tw/adata_en/drammodule.php


--------[  ]------------------------------------------------------------------------------------------------------

  [  : Intel Tylersburg X58 ]

      :
                                            Intel Tylersburg X58
       / Stepping                                 12 / B2
                                              1295 Pin FC-BGA
                                          3.75 cm x 3.75 cm
                                   1.1 V

     PCI Express:
      PCI-E 2.0 x4 port #1                              
      PCI-E 2.0 x16 port #3                              @ x16  (Asus EN9800GT Video Adapter)
      PCI-E 2.0 port #5                                 
      PCI-E 2.0 x16 port #7                             
      PCI-E 2.0 port #9                                 

     :
                                                   Intel Corporation
                                     http://www.intel.com/products/chipsets
                                       http://support.intel.com/support/chipsets
       BIOS                                   http://www.esupport.com/biosagent/index.cfm?refererid=40
                                     http://driveragent.com?ref=59

  [  : Intel Nehalem IMC ]

      :
                                            Intel Nehalem IMC
                                                  00

     :
                                                     Triple Channel  (192 )
                                           Triple Channel  (192 )

     :
      CAS Latency (CL)                                  6T
      RAS To CAS Delay (tRCD)                           6T
      RAS Precharge (tRP)                               6T
      RAS Active Time (tRAS)                            19T
      Row Refresh Cycle Time (tRFC)                     60T
      Command Rate (CR)                                 1T
      RAS To RAS Delay (tRRD)                           4T
      Read To Read Delay (tRTR)                         Same Rank: 4T, Different Rank: 6T, Different DIMM: 7T
      Read To Write Delay (tRTW)                        Same Rank: 8T, Different Rank: 8T, Different DIMM: 8T
      Write To Read Delay (tWTR)                        Same Rank: 14T, Different Rank: 7T, Different DIMM: 7T
      Write To Write Delay (tWTW)                       Same Rank: 4T, Different Rank: 7T, Different DIMM: 7T
      Read To Precharge Delay (tRTP)                    6T
      Write To Precharge Delay (tWTP)                   18T
      Four Activate Window Delay (tFAW)                 16T
      CKE Min. Pulse Width (tCKE)                       3T
      Refresh Period (tREF)                             509T
      Round Trip Latency (tRTL)                         45T
      Idle Cycle Limit                                  50T

     :
      ECC                                               , 
      ChipKill ECC                                      , 
      RAID                                               
      ECC Scrubbing                                     , 

     :
       DRAM #1                                    2   (DDR3-1600 DDR3 SDRAM)
       DRAM #2                                    2   (DDR3-1600 DDR3 SDRAM)
       DRAM #3                                    2   (DDR3-1600 DDR3 SDRAM)

     :
                                                   Intel Corporation
                                     http://www.intel.com/products/chipsets
                                       http://support.intel.com/support/chipsets
       BIOS                                   http://www.esupport.com/biosagent/index.cfm?refererid=40
                                     http://driveragent.com?ref=59

  [  : [ TRIAL VERSION ] ]

      :
                                               [ TRIAL VERSION ]
       / Stepping                                 90 / A0
                                              676 Pin mBGA
                                          3.1 cm x 3.1 cm
                                   1.1 V

    High Definition Audio:
                                               Realtek ALC888/1200
      ID                                          10EC0888h / 1458A002h
                                            00100001h
                                               Audio
                           44 kHz, 48 kHz, 96 kHz, 192 kHz, 16 , 20 , 24 

     PCI Express:
      PCI-E 1.0 x1 port #1                              
      PCI-E 1.0 x1 port #2                               @ x1  (Gigabyte GBB363 SATA-II RAID Controller)
      PCI-E 1.0 x1 port #5                               @ x1  (Realtek RTL8168D/8111D PCI-E Gigabit Ethernet Adapter)

     :
                                                   Intel Corporation
                                     http://www.intel.com/products/chipsets
                                       http://support.intel.com/support/chipsets
       BIOS                                   http://www.esupport.com/biosagent/index.cfm?refererid=40
                                     http://driveragent.com?ref=59


--------[ BIOS ]--------------------------------------------------------------------------------------------------------

     BIOS:
       BIOS                                          Award Modular
       BIOS                                       F2
       Award BIOS                                    Award Modular BIOS v6.00PG
       Award BIOS                              EX58-UD4 F2
        BIOS                               12/11/08
       BIOS                            07/21/08

     BIOS:
                                                   Phoenix Technologies Ltd.
                                     http://www.phoenix.com/en/products/default.htm
       BIOS                                   http://www.esupport.com/biosagent/index.cfm?refererid=40


--------[ ACPI ]--------------------------------------------------------------------------------------------------------

  [ APIC: Multiple APIC Description Table ]

      ACPI:
       ACPI                                      APIC
                                         Multiple APIC Description Table
                                             CFEE6C00h
                                           188 
      OEM ID                                            GBT
      OEM Table ID                                      GBTUACPI
      OEM Revision                                      42302E31h
      Creator ID                                        GBTU
      Creator Revision                                  01010101h
      Local APIC Address                                FEE00000h

  [ DSDT: Differentiated System Description Table ]

      ACPI:
       ACPI                                      DSDT
                                         Differentiated System Description Table
                                             CFEE2180h
                                           19005 
      OEM ID                                            GBT
      OEM Table ID                                      GBTUACPI
      OEM Revision                                      00001000h
      Creator ID                                        MSFT
      Creator Revision                                  0100000Ch

  [ EUDS: Gigabyte EUDS ]

      ACPI:
       ACPI                                      EUDS
                                         Gigabyte EUDS
                                             CFEE6DC0h
                                           1136 
      OEM ID                                            GBT
      OEM Revision                                      00000000h
      Creator Revision                                  00000000h

  [ FACP: Fixed ACPI Description Table ]

      ACPI:
       ACPI                                      FACP
                                         Fixed ACPI Description Table
                                             CFEE20C0h
                                           116 
      OEM ID                                            GBT
      OEM Table ID                                      GBTUACPI
      OEM Revision                                      42302E31h
      Creator ID                                        GBTU
      Creator Revision                                  01010101h
      SMI Command Port                                  000000B2h
      PM Timer                                          00000408h

  [ FACS: Firmware ACPI Control Structure ]

      ACPI:
       ACPI                                      FACS
                                         Firmware ACPI Control Structure
                                             CFEE0000h
                                           64 

  [ HPET: IA-PC High Precision Event Timer Table ]

      ACPI:
       ACPI                                      HPET
                                         IA-PC High Precision Event Timer Table
                                             CFEE6D00h
                                           56 
      OEM ID                                            GBT
      OEM Table ID                                      GBTUACPI
      OEM Revision                                      42302E31h
      Creator ID                                        GBTU
      Creator Revision                                  00000098h

  [ MCFG: Memory Mapped Configuration Space Base Address Description Table ]

      ACPI:
       ACPI                                      MCFG
                                         Memory Mapped Configuration Space Base Address Description Table
                                             CFEE6D80h
                                           60 
      OEM ID                                            GBT
      OEM Table ID                                      GBTUACPI
      OEM Revision                                      42302E31h
      Creator ID                                        GBTU
      Creator Revision                                  01010101h

  [ RSD PTR: Root System Description Pointer ]

      ACPI:
       ACPI                                      RSD PTR
                                         Root System Description Pointer
                                             000F73C0h
                                           36 
      OEM ID                                            GBT

  [ RSDT: Root System Description Table ]

      ACPI:
       ACPI                                      RSDT
                                         Root System Description Table
                                             CFEE2040h
                                           64 
      OEM ID                                            HPQOEM
      OEM Table ID                                      SLIC-MPC
      OEM Revision                                      42302E31h
      Creator ID                                        HPQ
      Creator Revision                                  01010101h

  [ SLIC: Software Licensing Description Table ]

      ACPI:
       ACPI                                      SLIC
                                         Software Licensing Description Table
                                             CFEE0040h
                                           374 
      OEM ID                                            HPQOEM
      OEM Table ID                                      SLIC-MPC
      OEM Revision                                      00000001h
      Creator ID                                        HPQ
      Creator Revision                                  00000001h
      SLIC Version                                      2.1

  [ SSDT: Secondary System Description Table ]

      ACPI:
       ACPI                                      SSDT
                                         Secondary System Description Table
                                             CFEE7240h
                                           10244 
      OEM ID                                            INTEL
      OEM Table ID                                      PPM RCM
      OEM Revision                                      80000001h
      Creator ID                                        INTL
      Creator Revision                                  20061109h


--------[   ]----------------------------------------------------------------------------------------

      :
                                              Microsoft Windows 7 Ultimate
                                       Vienna
                                                   ()
                                               Multiprocessor Free (64-bit)
                                                6.1.7600 (Win7 RTM)
                                       [ TRIAL VERSION ]
                                       16.03.2010
                                         C:\Windows

     :
                          AJEKC
                           
      ID                                        00426-OEM-8992662-00497
                                            22TKD- [ TRIAL VERSION ]
        (WPA)                           

     :
                                           AJEKC-PC
                                         AJEKC
                                              [ TRIAL VERSION ]
                                             3369  (0 ., 0 , 56 , 9 )

     :
      Common Controls                                   6.16
      Internet Explorer                                 8.0.7600.16385
       Internet Explorer                      [ TRIAL VERSION ]
      Windows Mail                                      6.1.7600.16385 (win7_rtm.090713-1255)
      Windows Media Player                              12.0.7600.16385 (win7_rtm.090713-1255)
      Windows Messenger                                 -
      MSN Messenger                                     14.0.8089.0726
      Internet Information Services (IIS)               [ TRIAL VERSION ]
      .NET Framework                                    3.5.30729.4926 built by: NetFXw7
      Novell Client                                     -
      DirectX                                           DirectX 11.0
      OpenGL                                            6.1.7600.16385 (win7_rtm.090713-1255)
      ASPI                                              -

      :
                                        
       DBCS                                       
                                        
                                     
                                             
                                         
                                         
                                      
                                      


--------[  ]----------------------------------------------------------------------------------------------------

    audiodg.exe                                                                                            32         16752             16 
    avp.exe                  C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2010\avp.exe  32         23508             32 
    avp.exe                  C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2010\avp.exe                32284             66 
    avp.exe                  C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2010\avp.exe  32          7280             15 
    BlueScreenView.exe       C:\Users\AJEKC\AppData\Local\Temp\wza794\BlueScreenView.exe                   32         25432             11 
    csrss.exe                C:\Windows\system32\csrss.exe                                                                4464              2 
    csrss.exe                C:\Windows\system32\csrss.exe                                                                8112              3 
    dwm.exe                  C:\Windows\system32\Dwm.exe                                                   64         31472             26 
    everest.exe              C:\Program Files (x86)\Lavalys\EVEREST Corporate Edition\everest.exe          32         34840             26 
    explorer.exe             C:\Windows\Explorer.EXE                                                       64         82420             55 
    firefox.exe              C:\Program Files (x86)\Mozilla Firefox\firefox.exe                            32           164            143 
    GoogleToolbarNotifier.exe  C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe  32          2984              3 
    GSvr.exe                 C:\Program Files (x86)\GIGABYTE\EnergySaver\GSvr.exe                                         4132              1 
    ICQ Service.exe          C:\Program Files (x86)\ICQ6Toolbar\ICQ Service.exe                                           6728              3 
    ICQ.exe                  C:\Program Files (x86)\ICQ7.0\ICQ.exe                                         32         20880             37 
    klwtblfs.exe             C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2010\x64\klwtblfs.exe  64          7188              2 
    lsass.exe                C:\Windows\system32\lsass.exe                                                               12692              5 
    lsm.exe                  C:\Windows\system32\lsm.exe                                                                  4720              3 
    msnmsgr.exe              C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe                     32         42876             53 
    nvvsvc.exe               C:\Windows\system32\nvvsvc.exe                                                               9464              4 
    nvvsvc.exe               C:\Windows\system32\nvvsvc.exe                                                               5476              2 
    RAVCpl64.exe             C:\Windows\RAVCpl64.exe                                                       64         10456              8 
    SearchFilterHost.exe     C:\Windows\system32\SearchFilterHost.exe                                      64          6896              3 
    SearchIndexer.exe        C:\Windows\system32\SearchIndexer.exe                                         32         23124             30 
    SearchProtocolHost.exe   C:\Windows\system32\SearchProtocolHost.exe                                    64          9480              3 
    services.exe             C:\Windows\system32\services.exe                                                             9892              6 
    Skype.exe                C:\Program Files (x86)\Skype\Phone\Skype.exe                                  32         59980             38 
    skypePM.exe              C:\Program Files (x86)\Skype\Plugin Manager\skypePM.exe                       32         27592             18 
    smss.exe                                                                                                              1320              0 
    splwow64.exe             C:\Windows\splwow64.exe                                                       64          6364              3 
    spoolsv.exe              C:\Windows\System32\spoolsv.exe                                                             12092              7 
    sppsvc.exe               C:\Windows\system32\sppsvc.exe                                                64         11340              5 
    svchost.exe              C:\Windows\system32\svchost.exe                                                             40800             27 
    svchost.exe              C:\Windows\system32\svchost.exe                                                             16772              9 
    svchost.exe              C:\Windows\system32\svchost.exe                                                             17816             17 
    svchost.exe              C:\Windows\system32\svchost.exe                                                             13220             11 
    svchost.exe              C:\Windows\system32\svchost.exe                                                             14888              8 
    svchost.exe              C:\Windows\system32\svchost.exe                                                              5944              2 
    svchost.exe              C:\Windows\System32\svchost.exe                                               32         30608             65 
    svchost.exe              C:\Windows\System32\svchost.exe                                               32         14872             12 
    svchost.exe              C:\Windows\System32\svchost.exe                                                             23144             21 
    svchost.exe              C:\Windows\System32\svchost.exe                                                               198            189 
    svchost.exe              C:\Windows\system32\svchost.exe                                               64          4864              2 
    svchost.exe              C:\Windows\system32\svchost.exe                                                             11968              7 
    svchost.exe              C:\Windows\system32\svchost.exe                                                              9536              5 
    System Idle Process                                                                                                     24              0 
    System                                                                                                                4132              0 
    taskhost.exe             C:\Windows\system32\taskhost.exe                                              64          9032              4 
    uTorrent.exe             C:\Program Files (x86)\uTorrent\uTorrent.exe                                  32         76400             62 
    wininit.exe              C:\Windows\system32\wininit.exe                                                              4996              2 
    winlogon.exe             C:\Windows\system32\winlogon.exe                                                             8840              4 
    wlcomm.exe               C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe                       32         43040             47 
    WmiPrvSE.exe             C:\Windows\system32\wbem\wmiprvse.exe                                         32         10012              4 
    WmiPrvSE.exe             C:\Windows\sysWOW64\wbem\wmiprvse.exe                                         64          7972              3 
    wmpnetwk.exe             C:\Program Files\Windows Media Player\wmpnetwk.exe                            32         10540             10 


--------[   ]------------------------------------------------------------------------------------------

    1394ohci         1394 OHCI Compliant Host Controller                                     1394ohci.sys          6.1.7600.16385                        
    ACPI             Microsoft ACPI Driver                                                   ACPI.sys              6.1.7600.16385                        
    AcpiPmi          ACPI Power Meter Driver                                                 acpipmi.sys           6.1.7600.16385                        
    adp94xx          adp94xx                                                                 adp94xx.sys           1.6.6.4                               
    adpahci          adpahci                                                                 adpahci.sys           1.6.6.1                               
    adpu320          adpu320                                                                 adpu320.sys           7.2.0.0                               
    AFD              Ancillary Function Driver for Winsock                                   afd.sys               6.1.7600.16385                        
    agp440           Intel AGP Bus Filter                                                    agp440.sys            6.1.7600.16385                        
    aliide           aliide                                                                  aliide.sys            1.2.0.0                               
    amdide           amdide                                                                  amdide.sys            6.1.7600.16385                        
    AmdK8            AMD K8 Processor Driver                                                 amdk8.sys             6.1.7600.16385                        
    AmdPPM           AMD Processor Driver                                                    amdppm.sys            6.1.7600.16385                        
    amdsata          amdsata                                                                 amdsata.sys           1.1.2.4                               
    amdsbs           amdsbs                                                                  amdsbs.sys            3.6.1540.127                          
    amdxata          amdxata                                                                 amdxata.sys           1.1.2.4                               
    AppID             AppID                                                           appid.sys             6.1.7600.16385                        
    arc              arc                                                                     arc.sys               5.2.0.10384                           
    arcsas           arcsas                                                                  arcsas.sys            5.2.0.16119                           
    AsyncMac            RAS                                       asyncmac.sys          6.1.7600.16385                        
    atapi            IDE Channel                                                             atapi.sys             6.1.7600.16385                        
    b06bdrv          Broadcom NetXtreme II VBD                                               bxvbda.sys            4.8.2.0                               
    b57nd60a         Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0                          b57nd60a.sys          10.100.4.0                            
    Beep             Beep                                                                                                                                
    blbdrive         blbdrive                                                                blbdrive.sys          6.1.7600.16385                        
    bowser                                                           bowser.sys            6.1.7600.16385             
    BrFiltLo         Brother USB Mass-Storage Lower Filter Driver                            BrFiltLo.sys          1.10.0.2                              
    BrFiltUp         Brother USB Mass-Storage Upper Filter Driver                            BrFiltUp.sys          1.4.0.1                               
    Brserid          Brother MFC Serial Port Interface Driver (WDM)                          Brserid.sys           1.0.1.6                               
    BrSerWdm         Brother WDM Serial driver                                               BrSerWdm.sys          1.0.0.20                              
    BrUsbMdm         Brother MFC USB Fax Only Modem                                          BrUsbMdm.sys          1.0.0.12                              
    BrUsbSer         Brother MFC USB Serial WDM Driver                                       BrUsbSer.sys          1.0.1.3                               
    BthEnum          Bluetooth Enumerator Service                                            BthEnum.sys           6.1.7600.16385                        
    BTHMODEM         Bluetooth Serial Communications Driver                                  bthmodem.sys          6.1.7600.16385                        
    BthPan           Bluetooth Device (Personal Area Network)                                bthpan.sys            6.1.7600.16385                        
    BTHPORT          Bluetooth Port Driver                                                   BTHport.sys           6.1.7600.16385                        
    BTHUSB           Bluetooth Radio USB Driver                                              BTHUSB.sys            6.1.7600.16385                        
    cdfs             CD/DVD File System Reader                                               cdfs.sys              6.1.7600.16385             
    cdrom            CD-ROM Driver                                                           cdrom.sys             6.1.7600.16385                        
    circlass         Consumer IR Devices                                                     circlass.sys          6.1.7600.16385                        
    CLFS               (CLFS)                                                     CLFS.sys              6.1.7600.16385                        
    CmBatt           Microsoft ACPI Control Method Battery Driver                            CmBatt.sys            6.1.7600.16385                        
    cmdide           cmdide                                                                  cmdide.sys            2.0.7.0                               
    CNG              CNG                                                                     cng.sys               6.1.7600.16385                        
    Compbatt         Compbatt                                                                compbatt.sys          6.1.7600.16385                        
    CompositeBus     Composite Bus Enumerator Driver                                         CompositeBus.sys      6.1.7600.16385                        
    crcdisk          Crcdisk Filter Driver                                                   crcdisk.sys           6.1.7600.16385                        
    CSC                                                               csc.sys               6.1.7600.16385                        
    DfsC             DFS Namespace Client Driver                                             dfsc.sys              6.1.7600.16385             
    discache         System Attribute Cache                                                  discache.sys          6.1.7600.16385                        
    Disk             Disk Driver                                                             disk.sys              6.1.7600.16385                        
    drmkaud          Microsoft Trusted Audio Drivers                                         drmkaud.sys           6.1.7600.16385                        
    DXGKrnl          LDDM Graphics Subsystem                                                 dxgkrnl.sys           6.1.7600.16432                        
    ebdrv            Broadcom NetXtreme II 10 GigE VBD                                       evbda.sys             4.8.13.0                              
    elxstor          elxstor                                                                 elxstor.sys           7.2.10.211                            
    ErrDev           Microsoft Hardware Error Device Driver                                  errdev.sys            6.1.7600.16385                        
    EverestDriver    Lavalys EVEREST Kernel Driver                                           kerneld.amd64                                               
    exfat            exFAT File System Driver                                                                                                 
    fastfat          FAT12/16/32 File System Driver                                                                                           
    fdc              Floppy Disk Controller Driver                                           fdc.sys               6.1.7600.16385                        
    FileInfo         File Information FS MiniFilter                                          fileinfo.sys          6.1.7600.16385             
    Filetrace        FileTrace                                                               filetrace.sys         6.1.7600.16385             
    flpydisk         Floppy Disk Driver                                                      flpydisk.sys          6.1.7600.16385                        
    FltMgr                                                                  fltmgr.sys            6.1.7600.16385             
    FsDepends        File System Dependency Minifilter                                       FsDepends.sys         6.1.7600.16385             
    fvevol               Bitlocker                              fvevol.sys            6.1.7600.16385                        
    gagp30kx         Microsoft Generic AGPv3.0 Filter for K8 Processor Platforms             gagp30kx.sys          6.1.7600.16385                        
    gdrv             gdrv                                                                    gdrv.sys              5.2.3790.1830                         
    hcw85cir         Hauppauge Consumer Infrared Receiver                                    hcw85cir.sys          1.31.27127.0                          
    HdAudAddService  Microsoft 1.1 UAA Function Driver for High Definition Audio Service     HdAudio.sys           6.1.7600.16385                        
    HDAudBus         Microsoft UAA Bus Driver for High Definition Audio                      HDAudBus.sys          6.1.7600.16385                        
    HidBatt          HID UPS Battery Driver                                                  HidBatt.sys           6.1.7600.16385                        
    HidBth           Microsoft Bluetooth HID Miniport                                        hidbth.sys            6.1.7600.16385                        
    HidIr            Microsoft Infrared HID Driver                                           hidir.sys             6.1.7600.16385                        
    HidUsb           Microsoft HID Class Driver                                              hidusb.sys            6.1.7600.16385                        
    HpSAMD           HpSAMD                                                                  HpSAMD.sys            6.12.4.64                             
    HTTP             HTTP                                                                    HTTP.sys              6.1.7600.16385                        
    hwpolicy         Hardware Policy Driver                                                  hwpolicy.sys          6.1.7600.16385                        
    i8042prt         i8042 Keyboard and PS/2 Mouse Port Driver                               i8042prt.sys          6.1.7600.16385                        
    iaStorV          iaStorV                                                                 iaStorV.sys           8.6.2.1012                            
    iirsp            iirsp                                                                   iirsp.sys             5.4.22.0                              
    IntcAzAudAddService  Service for Realtek HD Audio (WDM)                                      RTKVHD64.sys          6.0.1.5672                            
    intelide         intelide                                                                intelide.sys          6.1.7600.16385                        
    intelppm         Intel Processor Driver                                                  intelppm.sys          6.1.7600.16385                        
    IpFilterDriver     IP-                                              ipfltdrv.sys          6.1.7600.16385                        
    IPMIDRV          IPMIDRV                                                                 IPMIDrv.sys           6.1.7600.16385                        
    IPNAT            IP Network Address Translator                                           ipnat.sys             6.1.7600.16385                        
    IRENUM           IR Bus Enumerator                                                       irenum.sys            6.1.7600.16385                        
    isapnp           isapnp                                                                  isapnp.sys            6.1.7600.16385                        
    iScsiPrt         iScsiPort Driver                                                        msiscsi.sys           6.1.7600.16385                        
    JRAID            JRAID                                                                   jraid.sys             1.17.42.8                             
    kbdclass         Keyboard Class Driver                                                   kbdclass.sys          6.1.7600.16385                        
    kbdhid           Keyboard HID Driver                                                     kbdhid.sys            6.1.7600.16385                        
    kl1              kl1                                                                     kl1.sys               6.4.0.9                               
    KLBG             Kaspersky Lab Boot Guard Driver                                         klbg.sys              9.0.0.13                              
    KLIF             Kaspersky Lab Driver                                                    klif.sys              8.4.0.107                  
    KLIM6            Kaspersky Anti-Virus NDIS 6 Filter                                      klim6.sys             6.5.0.1                               
    klmouflt         Kaspersky Lab KLMOUFLT                                                  klmouflt.sys          8.0.0.24                              
    KSecDD           KSecDD                                                                  ksecdd.sys            6.1.7600.16385                        
    KSecPkg          KSecPkg                                                                 ksecpkg.sys           6.1.7600.16385                        
    ksthunk          Kernel Streaming Thunks                                                 ksthunk.sys           6.1.7600.16385                        
    lltdio           Link-Layer Topology Discovery Mapper I/O Driver                         lltdio.sys            6.1.7600.16385                        
    LSI_FC           LSI_FC                                                                  lsi_fc.sys            1.28.3.52                             
    LSI_SAS          LSI_SAS                                                                 lsi_sas.sys           1.28.3.52                             
    LSI_SAS2         LSI_SAS2                                                                lsi_sas2.sys          2.0.2.71                              
    LSI_SCSI         LSI_SCSI                                                                lsi_scsi.sys          1.28.3.67                             
    luafv                                            luafv.sys             6.1.7600.16385             
    megasas          megasas                                                                 megasas.sys           4.5.1.64                              
    MegaSR           MegaSR                                                                  MegaSR.sys            13.5.409.2009                         
    Modem            Modem                                                                   modem.sys             6.1.7600.16385                        
    monitor          Microsoft Monitor Class Function Driver Service                         monitor.sys           6.1.7600.16385                        
    mouclass         Mouse Class Driver                                                      mouclass.sys          6.1.7600.16385                        
    mouhid           Mouse HID Driver                                                        mouhid.sys            6.1.7600.16385                        
    mountmgr                                                        mountmgr.sys          6.1.7600.16385                        
    mpio             mpio                                                                    mpio.sys              6.1.7600.16385                        
    mpsdrv              Windows                                 mpsdrv.sys            6.1.7600.16385                        
    MRxDAV              WebDav                                 mrxdav.sys            6.1.7600.16385             
    mrxsmb              - SMB                              mrxsmb.sys            6.1.7600.16499             
    mrxsmb10         - SMB 1.x                                            mrxsmb10.sys          6.1.7600.16499             
    mrxsmb20         - SMB 2.0                                            mrxsmb20.sys          6.1.7600.16385             
    msahci           msahci                                                                  msahci.sys            6.1.7600.16385                        
    msdsm            msdsm                                                                   msdsm.sys             6.1.7600.16385                        
    Msfs             Msfs                                                                                                                     
    mshidkmdf        Pass-through HID to KMDF Filter Driver                                  mshidkmdf.sys         6.1.7600.16385                        
    msisadrv         msisadrv                                                                msisadrv.sys          6.1.7600.16385                        
    MSKSSRV          Microsoft Streaming Service Proxy                                       MSKSSRV.sys           6.1.7600.16385                        
    MSPCLOCK         Microsoft Streaming Clock Proxy                                         MSPCLOCK.sys          6.1.7600.16385                        
    MSPQM            Microsoft Streaming Quality Manager Proxy                               MSPQM.sys             6.1.7600.16385                        
    MsRPC            MsRPC                                                                                                                               
    mssmbios         Microsoft System Management BIOS Driver                                 mssmbios.sys          6.1.7600.16385                        
    MSTEE            Microsoft Streaming Tee/Sink-to-Sink Converter                          MSTEE.sys             6.1.7600.16385                        
    MTConfig         Microsoft Input Configuration Driver                                    MTConfig.sys          6.1.7600.16385                        
    Mup              MUP                                                                     mup.sys               6.1.7600.16385             
    NativeWifiP      NativeWiFi Filter                                                       nwifi.sys             6.1.7600.16385                        
    NDIS               NDIS                                                  ndis.sys              6.1.7600.16385                        
    NdisCap          NDIS Capture LightWeight Filter                                         ndiscap.sys           6.1.7600.16385                        
    NdisTapi         NDIS- TAPI                                      ndistapi.sys          6.1.7600.16385                        
    Ndisuio          NDIS Usermode I/O Protocol                                              ndisuio.sys           6.1.7600.16385                        
    NdisWan          NDIS- WAN                                       ndiswan.sys           6.1.7600.16385                        
    NDProxy          NDIS Proxy                                                                                                                          
    NetBIOS          NetBIOS Interface                                                       netbios.sys           6.1.7600.16385             
    NetBT            NETBT                                                                   netbt.sys             6.1.7600.16385                        
    nfrd960          nfrd960                                                                 nfrd960.sys           7.10.0.0                              
    Npfs             Npfs                                                                                                                     
    nsiproxy         NSI proxy service driver.                                               nsiproxy.sys          6.1.7600.16385                        
    Ntfs             Ntfs                                                                                                                     
    NuidFltr         NUID filter driver                                                      NuidFltr.sys          7.0.258.0                             
    Null             Null                                                                                                                                
    nv_agp           NVIDIA nForce AGP Bus Filter                                            nv_agp.sys            6.1.7600.16385                        
    nvlddmkm         nvlddmkm                                                                nvlddmkm.sys          8.17.11.9621                          
    nvraid           nvraid                                                                  nvraid.sys            10.6.0.16                             
    nvstor           nvstor                                                                  nvstor.sys            10.6.0.16                             
    ohci1394         1394 OHCI Compliant Host Controller (Legacy)                            ohci1394.sys          6.1.7600.16385                        
    Parport          Parallel port driver                                                    parport.sys           6.1.7600.16385                        
    partmgr                                                                 partmgr.sys           6.1.7600.16385                        
    pci              PCI Bus Driver                                                          pci.sys               6.1.7600.16385                        
    pciide           pciide                                                                  pciide.sys            6.1.7600.16385                        
    pcmcia           pcmcia                                                                  pcmcia.sys            6.1.7600.16385                        
    pcw              Performance Counters for Windows Driver                                 pcw.sys               6.1.7600.16385                        
    PEAUTH           PEAUTH                                                                  peauth.sys            6.1.7600.16385                        
    PptpMiniport     - WAN (PPTP)                                                    raspptp.sys           6.1.7600.16385                        
    Processor        Processor Driver                                                        processr.sys          6.1.7600.16385                        
    Psched             QoS                                                 pacer.sys             6.1.7600.16385                        
    ql2300           ql2300                                                                  ql2300.sys            9.1.8.6                               
    ql40xx           ql40xx                                                                  ql40xx.sys            2.1.3.20                              
    QWAVEdrv          QWAVE                                                           qwavedrv.sys          6.1.7600.16385                        
    RasAcd           Remote Access Auto Connection Driver                                    rasacd.sys            6.1.7600.16385                        
    RasAgileVpn      WAN Miniport (IKEv2)                                                    AgileVpn.sys          6.1.7600.16385                        
    Rasl2tp          - WAN (L2TP)                                                    rasl2tp.sys           6.1.7600.16385                        
    RasPppoe          PPPOE                                          raspppoe.sys          6.1.7600.16385                        
    RasSstp          - WAN (SSTP)                                                    rassstp.sys           6.1.7600.16385                        
    rdbss                                               rdbss.sys             6.1.7600.16385             
    rdpbus           Remote Desktop Device Redirector Bus Driver                             rdpbus.sys            6.1.7600.16385                        
    RDPCDD           RDPCDD                                                                  RDPCDD.sys            6.1.7600.16385                        
    RDPDR            Terminal Server Device Redirector Driver                                rdpdr.sys             6.1.7600.16385                        
    RDPENCDD         RDP Encoder Mirror Driver                                               rdpencdd.sys          6.1.7600.16385                        
    RDPREFMP         Reflector Display Driver used to gain access to graphics data           rdprefmp.sys          6.1.7600.16385                        
    RDPWD            RDP Winstation Driver                                                                                                               
    rdyboost         ReadyBoost                                                              rdyboost.sys          6.1.7600.16385                        
    RFCOMM           Bluetooth Device (RFCOMM Protocol TDI)                                  rfcomm.sys            6.1.7600.16385                        
    rspndr           Link-Layer Topology Discovery Responder                                 rspndr.sys            6.1.7600.16385                        
    RTL8167          Realtek 8167 NT Driver                                                  Rt64win7.sys          7.2.1125.2008                         
    s3cap            s3cap                                                                   vms3cap.sys           6.1.7600.16385                        
    sbp2port         sbp2port                                                                sbp2port.sys          6.1.7600.16385                        
    scfilter           -  PnP                                  scfilter.sys          6.1.7600.16385                        
    secdrv           Security Driver                                                                                                                     
    Serenum          Serenum Filter Driver                                                   serenum.sys           6.1.7600.16385                        
    Serial           Serial port driver                                                      serial.sys            6.1.7600.16385                        
    sermouse         Serial Mouse Driver                                                     sermouse.sys          6.1.7600.16385                        
    sffdisk          SFF Storage Class Driver                                                sffdisk.sys           6.1.7600.16385                        
    sffp_mmc         SFF Storage Protocol Driver for MMC                                     sffp_mmc.sys          6.1.7600.16385                        
    sffp_sd          SFF Storage Protocol Driver for SDBus                                   sffp_sd.sys           6.1.7600.16385                        
    sfloppy          High-Capacity Floppy Disk Drive                                         sfloppy.sys           6.1.7600.16385                        
    SiSRaid2         SiSRaid2                                                                SiSRaid2.sys          5.1.1039.2600                         
    SiSRaid4         SiSRaid4                                                                sisraid4.sys          5.1.1039.3600                         
    Smb                TCP/IP  TCP/IPv6 ( SMB)                        smb.sys               6.1.7600.16385                        
    spldr            Security Processor Loader Driver                                                                                                    
    srv                Server SMB 1.xxx                                        srv.sys               6.1.7600.16481             
    srv2               Server SMB 2.xxx                                        srv2.sys              6.1.7600.16385             
    srvnet           srvnet                                                                  srvnet.sys            6.1.7600.16481             
    stexstor         stexstor                                                                stexstor.sys          5.0.1.1                               
    storflt                                   vmstorfl.sys          6.1.7600.16385                        
    storvsc          storvsc                                                                 storvsc.sys           6.1.7600.16385                        
    swenum           Software Bus Driver                                                     swenum.sys            6.1.7600.16385                        
    Tcpip              TCP/IP                                                tcpip.sys             6.1.7600.16385                        
    TCPIP6           Microsoft IPv6 Protocol Driver                                          tcpip.sys             6.1.7600.16385                        
    tcpipreg         TCP/IP Registry Compatibility                                           tcpipreg.sys          6.1.7600.16385                        
    TDPIPE           TDPIPE                                                                  tdpipe.sys            6.1.7600.16385                        
    TDTCP            TDTCP                                                                   tdtcp.sys             6.1.7600.16385                        
    tdx                NetIO Legacy TDI                                      tdx.sys               6.1.7600.16385                        
    TermDD           Terminal Device Driver                                                  termdd.sys            6.1.7600.16385                        
    tssecsrv         Remote Desktop Services Security Filter Driver                          tssecsrv.sys          6.1.7600.16385                        
    tunnel           Microsoft Tunnel Miniport Adapter Driver                                tunnel.sys            6.1.7600.16385                        
    uagp35           Microsoft AGPv3.5 Filter                                                uagp35.sys            6.1.7600.16385                        
    udfs             udfs                                                                    udfs.sys              6.1.7600.16385             
    uliagpkx         Uli AGP Bus Filter                                                      uliagpkx.sys          6.1.7600.16385                        
    umbus            UMBus Enumerator Driver                                                 umbus.sys             6.1.7600.16385                        
    UmPass           Microsoft UMPass Driver                                                 umpass.sys            6.1.7600.16385                        
    usbccgp          Microsoft USB Generic Parent Driver                                     usbccgp.sys           6.1.7600.16385                        
    usbcir           eHome Infrared Receiver (USBCIR)                                        usbcir.sys            6.1.7600.16385                        
    usbehci          Microsoft USB 2.0 Enhanced Host Controller Miniport Driver              usbehci.sys           6.1.7600.16385                        
    usbhub           Microsoft USB Standard Hub Driver                                       usbhub.sys            6.1.7600.16385                        
    usbohci          Microsoft USB Open Host Controller Miniport Driver                      usbohci.sys           6.1.7600.16385                        
    usbprint         Microsoft USB PRINTER Class                                             usbprint.sys          6.1.7600.16385                        
    USBSTOR          USB Mass Storage Driver                                                 USBSTOR.SYS           6.1.7600.16385                        
    usbuhci          Microsoft USB Universal Host Controller Miniport Driver                 usbuhci.sys           6.1.7600.16385                        
    vdrvroot         Microsoft Virtual Drive Enumerator Driver                               vdrvroot.sys          6.1.7600.16385                        
    vga              vga                                                                     vgapnp.sys            6.1.7600.16385                        
    VgaSave          VgaSave                                                                 vga.sys               6.1.7600.16385                        
    vhdmp            vhdmp                                                                   vhdmp.sys             6.1.7600.16385                        
    viaide           viaide                                                                  viaide.sys            6.0.6000.170                          
    vmbus             VMBus                                                              vmbus.sys             6.1.7600.16385                        
    VMBusHID         VMBusHID                                                                VMBusHID.sys          6.1.7600.16385                        
    volmgr           Volume Manager Driver                                                   volmgr.sys            6.1.7600.16385                        
    volmgrx                                                        volmgrx.sys           6.1.7600.16385                        
    volsnap          Storage volumes                                                         volsnap.sys           6.1.7600.16385                        
    vsmraid          vsmraid                                                                 vsmraid.sys           6.0.6000.6210                         
    vwifibus           Virtual WiFi                                               vwifibus.sys          6.1.7600.16385                        
    WacomPen         Wacom Serial Pen HID Driver                                             wacompen.sys          6.1.7600.16385                        
    WANARP              IP ARP                                       wanarp.sys            6.1.7600.16385                        
    Wanarpv6            IPv6 ARP                                     wanarp.sys            6.1.7600.16385                        
    Wd               Wd                                                                      wd.sys                6.1.7600.16385                        
    Wdf01000         Kernel Mode Driver Frameworks service                                   Wdf01000.sys          1.9.7600.16385                        
    WfpLwf           WFP Lightweight Filter                                                  wfplwf.sys            6.1.7600.16385                        
    WIMMount         WIMMount                                                                wimmount.sys          6.1.7600.16385             
    WmiAcpi          Microsoft Windows Management Interface for ACPI                         wmiacpi.sys           6.1.7600.16385                        
    ws2ifsl           WinSock IFS                                                     ws2ifsl.sys           6.1.7600.16385                        
    WudfPf           User Mode Driver Frameworks Platform Driver                             WudfPf.sys            6.1.7600.16385                        


--------[  ]------------------------------------------------------------------------------------------------------

    AeLookupSvc                                                              svchost.exe           6.1.7600.16385                       localSystem
    ALG                                                                             alg.exe               6.1.7600.16385                 NT AUTHORITY\LocalService
    AppIDSvc                                                                            svchost.exe           6.1.7600.16385                       NT Authority\LocalService
    Appinfo                                                                                 svchost.exe           6.1.7600.16385                       LocalSystem
    AppMgmt                                                                              svchost.exe           6.1.7600.16385                       LocalSystem
    AudioEndpointBuilder                   Windows Audio                        svchost.exe           6.1.7600.16385                       LocalSystem
    AudioSrv                           Windows Audio                                                           svchost.exe           6.1.7600.16385                       NT AUTHORITY\LocalService
    AVP                                Kaspersky Internet Security                                             avp.exe               9.0.0.736                      LocalSystem
    AxInstSV                            ActiveX (AxInstSV)                                           svchost.exe           6.1.7600.16385                       LocalSystem
    BDESVC                                BitLocker                                      svchost.exe           6.1.7600.16385                       localSystem
    BFE                                                                                 svchost.exe           6.1.7600.16385                       NT AUTHORITY\LocalService
    BITS                                   (BITS)                         svchost.exe           6.1.7600.16385                       LocalSystem
    Browser                                                                                  svchost.exe           6.1.7600.16385                       LocalSystem
    bthserv                              Bluetooth                                              svchost.exe           6.1.7600.16385                       NT AUTHORITY\LocalService
    CertPropSvc                                                                      svchost.exe           6.1.7600.16385                       LocalSystem
    clr_optimization_v2.0.50727_32     Microsoft .NET Framework NGEN v2.0.50727_X86                            mscorsvw.exe          2.0.50727.4927                 LocalSystem
    clr_optimization_v2.0.50727_64     Microsoft .NET Framework NGEN v2.0.50727_X64                            mscorsvw.exe          2.0.50727.4927                 LocalSystem
    COMSysApp                            COM+                                               dllhost.exe           6.1.7600.16385                 LocalSystem
    CryptSvc                                                                                 svchost.exe           6.1.7600.16385                       NT Authority\NetworkService
    CscService                                                                                  svchost.exe           6.1.7600.16385                       LocalSystem
    DcomLaunch                            DCOM-                                   svchost.exe           6.1.7600.16385                       LocalSystem
    defragsvc                                                                               svchost.exe           6.1.7600.16385                 localSystem
    Dhcp                               DHCP-                                                             svchost.exe           6.1.7600.16385                       NT Authority\LocalService
    Dnscache                           DNS-                                                              svchost.exe           6.1.7600.16385                       NT AUTHORITY\NetworkService
    dot3svc                                                                              svchost.exe           6.1.7600.16385                       localSystem
    DPS                                                                               svchost.exe           6.1.7600.16385                       NT AUTHORITY\LocalService
    EapHost                                (EAP)                         svchost.exe           6.1.7600.16385                       localSystem
    EFS                                   (EFS)                                      lsass.exe             6.1.7600.16385                       LocalSystem
    ehRecvr                              Windows Media Center                                    ehRecvr.exe           6.1.7600.16385                 NT AUTHORITY\networkService
    ehSched                              Windows Media Center                                ehsched.exe           6.1.7600.16385                 NT AUTHORITY\networkService
    eventlog                             Windows                                                  svchost.exe           6.1.7600.16385                       NT AUTHORITY\LocalService
    EventSystem                          COM+                                                    svchost.exe           6.1.7600.16385                       NT AUTHORITY\LocalService
    Fax                                                                                                    fxssvc.exe            6.1.7600.16385                 NT AUTHORITY\NetworkService
    fdPHost                                                                    svchost.exe           6.1.7600.16385                       NT AUTHORITY\LocalService
    FDResPub                                                               svchost.exe           6.1.7600.16385                       NT AUTHORITY\LocalService
    FontCache                             Windows                                             svchost.exe           6.1.7600.16385                       NT AUTHORITY\LocalService
    FontCache3.0.0.0                     Windows Presentation Foundation 3.0.0.0                     PresentationFontCache.exe  3.0.6920.4902                  NT Authority\LocalService
    GEST Service                       GEST Service for program management.                                    GSvr.exe                                             LocalSystem
    gpsvc                                                                               svchost.exe           6.1.7600.16385                       LocalSystem
    gupdate                            Google Update Service (gupdate)                                         GoogleUpdate.exe      1.2.183.9                      LocalSystem
    gusvc                              Google Software Updater                                                 GoogleUpdaterService.exe  2.4.1441.4352                  LocalSystem
    hidserv                              HID-                                                svchost.exe           6.1.7600.16385                       LocalSystem
    hkmsvc                                                      svchost.exe           6.1.7600.16385                       localSystem
    HomeGroupListener                                                              svchost.exe           6.1.7600.16385                       LocalSystem
    HomeGroupProvider                                                                   svchost.exe           6.1.7600.16385                       NT AUTHORITY\LocalService
    ICQ Service                        ICQ Service                                                             ICQ Service.exe       1.0.0.1                        LocalSystem
    idsvc                              Windows CardSpace                                                       infocard.exe          3.0.4506.4926                        LocalSystem
    IKEEXT                               IPsec        IP     svchost.exe           6.1.7600.16385                       LocalSystem
    IPBusEnum                           IP- PnP-X                                              svchost.exe           6.1.7600.16385                       LocalSystem
    iphlpsvc                             IP                                               svchost.exe           6.1.7600.16385                       LocalSystem
    KeyIso                               CNG                                                     lsass.exe             6.1.7600.16385                       LocalSystem
    KtmRm                              KtmRm                            svchost.exe           6.1.7600.16385                       NT AUTHORITY\NetworkService
    LanmanServer                                                                                         svchost.exe           6.1.7600.16385                       LocalSystem
    LanmanWorkstation                                                                            svchost.exe           6.1.7600.16385                       NT AUTHORITY\NetworkService
    lltdsvc                                                                             svchost.exe           6.1.7600.16385                       NT AUTHORITY\LocalService
    lmhosts                              NetBIOS  TCP/IP                                   svchost.exe           6.1.7600.16385                       NT AUTHORITY\LocalService
    Mcx2Svc                              Media Center                                      svchost.exe           6.1.7600.16385                       NT Authority\LocalService
    MMCSS                                                                         svchost.exe           6.1.7600.16385                       LocalSystem
    MpsSvc                              Windows                                                      svchost.exe           6.1.7600.16385                       NT Authority\LocalService
    MSDTC                                                                   msdtc.exe             2001.12.8530.16385                NT AUTHORITY\NetworkService
    MSiSCSI                               iSCSI                                      svchost.exe           6.1.7600.16385                       LocalSystem
    msiserver                           Windows                                                      msiexec.exe           5.0.7600.16385                 LocalSystem
    napagent                                                                         svchost.exe           6.1.7600.16385                       NT AUTHORITY\NetworkService
    Netlogon                                                                                lsass.exe             6.1.7600.16385                       LocalSystem
    Netman                                                                                   svchost.exe           6.1.7600.16385                       LocalSystem
    netprofm                                                                                  svchost.exe           6.1.7600.16385                       NT AUTHORITY\LocalService
    NetTcpPortSharing                       Net.Tcp                                  SMSvcHost.exe         3.0.4506.4926                        NT AUTHORITY\LocalService
    NlaSvc                                                                     svchost.exe           6.1.7600.16385                       NT AUTHORITY\NetworkService
    nsi                                                                          svchost.exe           6.1.7600.16385                       NT Authority\LocalService
    nvsvc                              NVIDIA Display Driver Service                                           nvvsvc.exe            8.17.11.9621                   LocalSystem
    p2pimsvc                                                            svchost.exe           6.1.7600.16385                       NT AUTHORITY\LocalService
    p2psvc                                                                         svchost.exe           6.1.7600.16385                       NT AUTHORITY\LocalService
    PcaSvc                                                               svchost.exe           6.1.7600.16385                       LocalSystem
    PeerDistSvc                        BranchCache                                                             svchost.exe           6.1.7600.16385                       NT AUTHORITY\NetworkService
    PerfHost                                                           perfhost.exe          6.1.7600.16385                 NT AUTHORITY\LocalService
    pla                                                                    svchost.exe           6.1.7600.16385                       NT AUTHORITY\LocalService
    PlugPlay                           Plug-and-Play                                                           svchost.exe           6.1.7600.16385                       LocalSystem
    PNRPAutoReg                            PNRP                                 svchost.exe           6.1.7600.16385                       NT AUTHORITY\LocalService
    PNRPsvc                             PNRP                                                           svchost.exe           6.1.7600.16385                       NT AUTHORITY\LocalService
    PolicyAgent                          IPsec                                                    svchost.exe           6.1.7600.16385                       NT Authority\NetworkService
    Power                                                                                               svchost.exe           6.1.7600.16385                       LocalSystem
    ProfSvc                                                                         svchost.exe           6.1.7600.16385                       LocalSystem
    ProtectedStorage                                                                        lsass.exe             6.1.7600.16385                       LocalSystem
    QWAVE                              Quality Windows Audio Video Experience                                  svchost.exe           6.1.7600.16385                       NT AUTHORITY\LocalService
    RasAuto                                                 svchost.exe           6.1.7600.16385                       localSystem
    RasMan                                                                svchost.exe           6.1.7600.16385                       localSystem
    RemoteAccess                                                                  svchost.exe           6.1.7600.16385                       localSystem
    RemoteRegistry                                                                              svchost.exe           6.1.7600.16385                       NT AUTHORITY\LocalService
    RpcEptMapper                          RPC                                        svchost.exe           6.1.7600.16385                       NT AUTHORITY\NetworkService
    RpcLocator                             (RPC)                                locator.exe           6.1.7600.16385                 NT AUTHORITY\NetworkService
    RpcSs                                 (RPC)                                          svchost.exe           6.1.7600.16385                       NT AUTHORITY\NetworkService
    SamSs                                                                   lsass.exe             6.1.7600.16385                       LocalSystem
    SCardSvr                           -                                                             svchost.exe           6.1.7600.16385                       NT AUTHORITY\LocalService
    Schedule                                                                                 svchost.exe           6.1.7600.16385                       LocalSystem
    SCPolicySvc                          -                                            svchost.exe           6.1.7600.16385                       LocalSystem
    SDRSVC                              Windows                                                       svchost.exe           6.1.7600.16385                 localSystem
    seclogon                                                                              svchost.exe           6.1.7600.16385                       LocalSystem
    SENS                                                                    svchost.exe           6.1.7600.16385                       LocalSystem
    SensrSvc                                                                       svchost.exe           6.1.7600.16385                       NT AUTHORITY\LocalService
    SessionEnv                                                           svchost.exe           6.1.7600.16385                       localSystem
    SharedAccess                             (ICS)                            svchost.exe           6.1.7600.16385                       LocalSystem
    ShellHWDetection                                                            svchost.exe           6.1.7600.16385                       LocalSystem
    SNMPTRAP                            SNMP                                                            snmptrap.exe          6.1.7600.16385                 NT AUTHORITY\LocalService
    Spooler                                                                                     spoolsv.exe           6.1.7600.16385                 LocalSystem
    sppsvc                                                                        sppsvc.exe            6.1.7600.16385                 NT AUTHORITY\NetworkService
    sppuinotify                          SPP                                                  svchost.exe           6.1.7600.16385                       NT AUTHORITY\LocalService
    SSDPSRV                             SSDP                                                        svchost.exe           6.1.7600.16385                       NT AUTHORITY\LocalService
    SstpSvc                             SSTP                                                             svchost.exe           6.1.7600.16385                       NT Authority\LocalService
    Steam Client Service               Steam Client Service                                                    Program                                              LocalSystem
    stisvc                                Windows (WIA)                               svchost.exe           6.1.7600.16385                 NT Authority\LocalService
    swprv                                  (Microsoft)                  svchost.exe           6.1.7600.16385                 LocalSystem
    SysMain                            Superfetch                                                              svchost.exe           6.1.7600.16385                       LocalSystem
    TabletInputService                                                                 svchost.exe           6.1.7600.16385                       LocalSystem
    TapiSrv                                                                                           svchost.exe           6.1.7600.16385                       NT AUTHORITY\NetworkService
    TBS                                                           svchost.exe           6.1.7600.16385                       NT AUTHORITY\LocalService
    TermService                                                                    svchost.exe           6.1.7600.16385                       NT Authority\NetworkService
    Themes                                                                                                 svchost.exe           6.1.7600.16385                       LocalSystem
    THREADORDER                                                                       svchost.exe           6.1.7600.16385                       NT AUTHORITY\LocalService
    TrkWks                                                                 svchost.exe           6.1.7600.16385                       LocalSystem
    TrustedInstaller                     Windows                                              TrustedInstaller.exe  6.1.7600.16385                 localSystem
    UI0Detect                                                                     UI0Detect.exe         6.1.7600.16385                 LocalSystem
    UmRdpService                                svchost.exe           6.1.7600.16385                       localSystem
    upnphost                             PNP-                                        svchost.exe           6.1.7600.16385                       NT AUTHORITY\LocalService
    UxSms                                                           svchost.exe           6.1.7600.16385                       localSystem
    VaultSvc                                                                             lsass.exe             6.1.7600.16385                       LocalSystem
    vds                                                                                         vds.exe               6.1.7600.16385                 LocalSystem
    VSS                                                                                  vssvc.exe             6.1.7600.16385                 LocalSystem
    W32Time                              Windows                                                  svchost.exe           6.1.7600.16385                       NT AUTHORITY\LocalService
    wbengine                                                                wbengine.exe          6.1.7600.16385                 localSystem
    WbioSrvc                             Windows                                           svchost.exe           6.1.7600.16385                       LocalSystem
    wcncsvc                              Windows -                   svchost.exe           6.1.7600.16385                       NT AUTHORITY\LocalService
    WcsPlugInService                     Windows (WCS)                                          svchost.exe           6.1.7600.16385                       NT AUTHORITY\LocalService
    WdiServiceHost                                                                        svchost.exe           6.1.7600.16385                       NT AUTHORITY\LocalService
    WdiSystemHost                                                                        svchost.exe           6.1.7600.16385                       LocalSystem
    WebClient                          -                                                              svchost.exe           6.1.7600.16385                       NT AUTHORITY\LocalService
    Wecsvc                               Windows                                                 svchost.exe           6.1.7600.16385                       NT AUTHORITY\NetworkService
    wercplsupport                          "     "  svchost.exe           6.1.7600.16385                       localSystem
    WerSvc                                Windows                                       svchost.exe           6.1.7600.16385                       localSystem
    WinDefend                           Windows                                                        svchost.exe           6.1.7600.16385                       LocalSystem
    WinHttpAutoProxySvc                   - WinHTTP                   svchost.exe           6.1.7600.16385                       NT AUTHORITY\LocalService
    Winmgmt                              Windows                                       svchost.exe           6.1.7600.16385                       localSystem
    WinRM                                 Windows (WS-Management)                    svchost.exe           6.1.7600.16385                       NT AUTHORITY\NetworkService
    Wlansvc                              WLAN                                               svchost.exe           6.1.7600.16385                       LocalSystem
    wmiApSrv                           WMI Performance Adapter                                                 WmiApSrv.exe          6.1.7600.16385                 localSystem
    WMPNetworkSvc                           Windows Media               wmpnetwk.exe                                         NT AUTHORITY\NetworkService
    WPCSvc                             Parental Controls                                                       svchost.exe           6.1.7600.16385                       NT Authority\LocalService
    WPDBusEnum                                                           svchost.exe           6.1.7600.16385                       LocalSystem
    wscsvc                                                                         svchost.exe           6.1.7600.16385                       NT AUTHORITY\LocalService
    WSearch                            Windows Search                                                          SearchIndexer.exe     7.0.7600.16385                 LocalSystem
    wuauserv                             Windows                                                svchost.exe           6.1.7600.16385                       LocalSystem
    wudfsvc                            Windows Driver Foundation - User-mode Driver Framework                  svchost.exe           6.1.7600.16385                       LocalSystem
    WwanSvc                             WWAN                                                      svchost.exe           6.1.7600.16385                       NT Authority\LocalService


--------[  AX ]----------------------------------------------------------------------------------------------------

    bdaplgin.ax                6.1.7600.16385              Microsoft BDA Device Control Plug-in for MPEG2 based networks.
    g711codc.ax                6.1.7600.16385              Intel G711 CODEC
    iac25_32.ax                2.0.5.53                      Indeo audio
    ir41_32.ax                 4.51.16.3                   Intel Indeo Video 4.5
    ivfsrc.ax                  5.10.2.51                    Intel Indeo video IVF  5.10
    ksproxy.ax                 6.1.7600.16385              WDM Streaming ActiveMovie Proxy
    kstvtune.ax                6.1.7600.16385               - WDM
    kswdmcap.ax                6.1.7600.16385                WDM
    ksxbar.ax                  6.1.7600.16385              WDM Streaming Crossbar
    mpeg2data.ax               6.6.7600.16385              Microsoft MPEG-2 Section and Table Acquisition Module
    mpg2splt.ax                6.6.7600.16385              DirectShow MPEG-2 Splitter.
    msdvbnp.ax                 6.6.7600.16385              Microsoft Network Provider for MPEG2 based networks.
    msnp.ax                    6.6.7600.16485              Microsoft Network Provider for MPEG2 based networks.
    psisrndr.ax                6.6.7600.16385              Microsoft Transport Information Filter for MPEG2 based networks.
    vbicodec.ax                6.6.7600.16385              Microsoft VBI Codec
    vbisurf.ax                 6.1.7600.16385              VBI Surface Allocator Filter
    vidcap.ax                  6.1.7600.16385              Video Capture Interface Server
    wstpager.ax                6.6.7600.16385              Microsoft Teletext Server


--------[  DLL ]---------------------------------------------------------------------------------------------------

    aaclient.dll               6.1.7600.16385                  
    accessibilitycpl.dll       6.1.7600.16385                 
    acctres.dll                6.1.7600.16385                     (Microsoft)
    acledit.dll                6.1.7600.16385                 ACL
    aclui.dll                  6.1.7600.16385                
    acppage.dll                6.1.7600.16385                  ""
    actioncenter.dll           6.1.7600.16385               
    actioncentercpl.dll        6.1.7600.16385                 
    activeds.dll               6.1.7600.16385               DLL   AD
    actxprxy.dll               6.1.7600.16385              ActiveX Interface Marshaling Library
    admparse.dll               8.0.7600.16385              IEAK Global Policy Template Parser
    admtmpl.dll                6.1.7600.16385               " "
    adprovider.dll             6.1.7600.16385               DLL adprovider
    adsldp.dll                 6.1.7600.16385              ADs LDAP Provider DLL
    adsldpc.dll                6.1.7600.16385               DLL  LDAP AD
    adsmsext.dll               6.1.7600.16385              ADs LDAP Provider DLL
    adsnt.dll                  6.1.7600.16385               DLL    Windows NT
    adtschema.dll              6.1.7600.16385                 
    advapi32.dll               6.1.7600.16385                API Windows 32
    advpack.dll                8.0.7600.16385              ADVPACK
    aecache.dll                6.1.7600.16385              AECache Sysprep Plugin
    aeevts.dll                 6.1.7600.16385                  
    alttab.dll                 6.1.7600.16385              Windows Shell Alt Tab
    amstream.dll               6.6.7600.16385              DirectShow Runtime.
    amxread.dll                6.1.7600.16385              API Tracing Manifest Read Library
    apds.dll                   6.1.7600.16385                  Microsoft
    apilogen.dll               6.1.7600.16385                 API
    api-ms-win-core-console-l1-1-0.dll  6.1.7600.16385              ApiSet Stub DLL
    api-ms-win-core-datetime-l1-1-0.dll  6.1.7600.16385              ApiSet Stub DLL
    api-ms-win-core-debug-l1-1-0.dll  6.1.7600.16385              ApiSet Stub DLL
    api-ms-win-core-delayload-l1-1-0.dll  6.1.7600.16385              ApiSet Stub DLL
    api-ms-win-core-errorhandling-l1-1-0.dll  6.1.7600.16385              ApiSet Stub DLL
    api-ms-win-core-fibers-l1-1-0.dll  6.1.7600.16385              ApiSet Stub DLL
    api-ms-win-core-file-l1-1-0.dll  6.1.7600.16385              ApiSet Stub DLL
    api-ms-win-core-handle-l1-1-0.dll  6.1.7600.16385              ApiSet Stub DLL
    api-ms-win-core-heap-l1-1-0.dll  6.1.7600.16385              ApiSet Stub DLL
    api-ms-win-core-interlocked-l1-1-0.dll  6.1.7600.16385              ApiSet Stub DLL
    api-ms-win-core-io-l1-1-0.dll  6.1.7600.16385              ApiSet Stub DLL
    api-ms-win-core-libraryloader-l1-1-0.dll  6.1.7600.16385              ApiSet Stub DLL
    api-ms-win-core-localization-l1-1-0.dll  6.1.7600.16385              ApiSet Stub DLL
    api-ms-win-core-localregistry-l1-1-0.dll  6.1.7600.16385              ApiSet Stub DLL
    api-ms-win-core-memory-l1-1-0.dll  6.1.7600.16385              ApiSet Stub DLL
    api-ms-win-core-misc-l1-1-0.dll  6.1.7600.16385              ApiSet Stub DLL
    api-ms-win-core-namedpipe-l1-1-0.dll  6.1.7600.16385              ApiSet Stub DLL
    api-ms-win-core-processenvironment-l1-1-0.dll  6.1.7600.16385              ApiSet Stub DLL
    api-ms-win-core-processthreads-l1-1-0.dll  6.1.7600.16385              ApiSet Stub DLL
    api-ms-win-core-profile-l1-1-0.dll  6.1.7600.16385              ApiSet Stub DLL
    api-ms-win-core-rtlsupport-l1-1-0.dll  6.1.7600.16385              ApiSet Stub DLL
    api-ms-win-core-string-l1-1-0.dll  6.1.7600.16385              ApiSet Stub DLL
    api-ms-win-core-synch-l1-1-0.dll  6.1.7600.16385              ApiSet Stub DLL
    api-ms-win-core-sysinfo-l1-1-0.dll  6.1.7600.16385              ApiSet Stub DLL
    api-ms-win-core-threadpool-l1-1-0.dll  6.1.7600.16385              ApiSet Stub DLL
    api-ms-win-core-util-l1-1-0.dll  6.1.7600.16385              ApiSet Stub DLL
    api-ms-win-core-xstate-l1-1-0.dll  6.1.7600.16385              ApiSet Stub DLL
    api-ms-win-security-base-l1-1-0.dll  6.1.7600.16385              ApiSet Stub DLL
    api-ms-win-security-lsalookup-l1-1-0.dll  6.1.7600.16385              ApiSet Stub DLL
    api-ms-win-security-sddl-l1-1-0.dll  6.1.7600.16385              ApiSet Stub DLL
    api-ms-win-service-core-l1-1-0.dll  6.1.7600.16385              ApiSet Stub DLL
    api-ms-win-service-management-l1-1-0.dll  6.1.7600.16385              ApiSet Stub DLL
    api-ms-win-service-management-l2-1-0.dll  6.1.7600.16385              ApiSet Stub DLL
    api-ms-win-service-winsvc-l1-1-0.dll  6.1.7600.16385              ApiSet Stub DLL
    apircl.dll                 6.1.7600.16385              Microsoft InfoTech IR Local DLL
    apisetschema.dll           6.1.7600.16385              ApiSet Schema DLL
    apphelp.dll                6.1.7600.16385                 
    apphlpdm.dll               6.1.7600.16385                 
    appidapi.dll               6.1.7600.16385               API-  
    appidpolicyengineapi.dll   6.1.7600.16385              AppId Policy Engine API Module
    appmgmts.dll               6.1.7600.16385                
    appmgr.dll                 6.1.7600.16385                 
    apss.dll                   6.1.7600.16385              Microsoft InfoTech Storage System Library
    asferror.dll               12.0.7600.16385               ASF
    asycfilt.dll               6.1.7600.16385              
    atl.dll                    3.5.2284.0                  ATL Module for Windows XP (Unicode)
    atmfd.dll                  5.1.2.226                   Windows NT OpenType/Type 1 Font Driver
    atmlib.dll                 5.1.2.226                   Windows NT OpenType/Type 1 API Library.
    audiodev.dll               6.1.7600.16385                   
    audioeng.dll               6.1.7600.16385              Audio Engine
    audiokse.dll               6.1.7600.16385              Audio Ks Endpoint
    audioses.dll               6.1.7600.16385                
    auditnativesnapin.dll      6.1.7600.16385                    
    auditpolicygpinterop.dll   6.1.7600.16385                 
    auditpolmsg.dll            6.1.7600.16385                MMC  
    authfwcfg.dll              6.1.7600.16385               Windows      
    authfwgp.dll               6.1.7600.16385               Windows c      
    authfwsnapin.dll           6.1.7600.16385              Microsoft.WindowsFirewall.SnapIn
    authfwwizfwk.dll           6.1.7600.16385              Wizard Framework
    authui.dll                 6.1.7600.16385                
    authz.dll                  6.1.7600.16385              Authorization Framework
    autoplay.dll               6.1.7600.16385               ( )
    auxiliarydisplayapi.dll    6.1.7600.16385              Microsoft Windows SideShow API
    auxiliarydisplaycpl.dll    6.1.7600.16385                Microsoft Windows SideShow
    avicap32.dll               6.1.7600.16385                 AVI
    avifil32.dll               6.1.7600.16490                 AVI
    avrt.dll                   6.1.7600.16385              Multimedia Realtime Runtime
    azroles.dll                6.1.7600.16385              azroles Module
    azroleui.dll               6.1.7600.16385               
    azsqlext.dll               6.1.7600.16385              AzMan Sql Audit Extended Stored Procedures Dll
    basecsp.dll                6.1.7600.16385                 - (Microsoft)
    batmeter.dll               6.1.7600.16385              Battery Meter Helper DLL
    bcrypt.dll                 6.1.7600.16385              Windows Cryptographic Primitives Library (Wow64)
    bcryptprimitives.dll       6.1.7600.16385              Windows Cryptographic Primitives Library
    bidispl.dll                6.1.7600.16385              Bidispl DLL
    biocredprov.dll            6.1.7600.16385                 WinBio
    bitsperf.dll               7.5.7600.16385              Perfmon Counter Access
    bitsprx2.dll               7.5.7600.16385              Background Intelligent Transfer Service Proxy
    bitsprx3.dll               7.5.7600.16385              Background Intelligent Transfer Service 2.0 Proxy
    bitsprx4.dll               7.5.7600.16385              Background Intelligent Transfer Service 2.5 Proxy
    bitsprx5.dll               7.5.7600.16385              Background Intelligent Transfer Service 3.0 Proxy
    bitsprx6.dll               7.5.7600.16385              Background Intelligent Transfer Service 4.0 Proxy
    blackbox.dll               11.0.7600.16385             BlackBox DLL
    bootvid.dll                6.1.7600.16385              VGA Boot Driver
    browcli.dll                6.1.7600.16385              Browser Service Client DLL
    browseui.dll               6.1.7600.16385              Shell Browser UI Library
    btpanui.dll                6.1.7600.16385                Bluetooth   
    bwcontexthandler.dll       1.0.0.1                      ContextH
    bwunpairelevated.dll       6.1.7600.16385              BWUnpairElevated Proxy Dll
    c_g18030.dll               6.1.7600.16385              GB18030 DBCS-Unicode Conversion DLL
    c_is2022.dll               6.1.7600.16385              ISO-2022 Code Page Translation DLL
    c_iscii.dll                6.1.7600.16385              ISCII Code Page Translation DLL
    cabinet.dll                6.1.7600.16385              Microsoft Cabinet File API
    cabview.dll                6.1.7600.16385                 CAB-
    capiprovider.dll           6.1.7600.16385               DLL capiprovider
    capisp.dll                 6.1.7600.16385              Sysprep cleanup dll for CAPI
    catsrv.dll                 2001.12.8530.16385          COM+ Configuration Catalog Server
    catsrvps.dll               2001.12.8530.16385          COM+ Configuration Catalog Server Proxy/Stub
    catsrvut.dll               2001.12.8530.16385          COM+ Configuration Catalog Server Utilities
    cca.dll                    6.6.7600.16385              CCA DirectShow Filter.
    cdosys.dll                 6.6.7600.16385              Microsoft CDO for Windows Library
    certcli.dll                6.1.7600.16385                 Microsoft Active Directory
    certcredprovider.dll       6.1.7600.16385                 
    certenc.dll                6.1.7600.16385              Active Directory Certificate Services Encoding
    certenroll.dll             6.1.7600.16418                  Active Directory Microsoft
    certenrollui.dll           6.1.7600.16385                  X509
    certmgr.dll                6.1.7600.16385                
    certpoleng.dll             6.1.7600.16385                
    cewmdm.dll                 12.0.7600.16385               Windows CE WMDM
    cfgbkend.dll               6.1.7600.16385              Configuration Backend Interface
    cfgmgr32.dll               6.1.7600.16385              Configuration Manager DLL
    chsbrkr.dll                6.1.7600.16385              Simplified Chinese Word Breaker
    chtbrkr.dll                6.1.7600.16385              Chinese Traditional Word Breaker
    chxreadingstringime.dll    6.1.7600.16385              CHxReadingStringIME
    cic.dll                    6.1.7600.16385                CIC - MMC   
    clb.dll                    6.1.7600.16385                
    clbcatq.dll                2001.12.8530.16385          COM+ Configuration Catalog
    clfsw32.dll                6.1.7600.16385              Common Log Marshalling Win32 DLL
    cliconfg.dll               6.1.7600.16385              SQL Client Configuration Utility DLL
    clusapi.dll                6.1.7600.16385               API 
    cmcfg32.dll                7.2.7600.16385                  Microsoft
    cmdial32.dll               7.2.7600.16385               
    cmicryptinstall.dll        6.1.7600.16385              Installers for cryptographic elements of CMI objects
    cmifw.dll                  6.1.7600.16385              Windows Firewall rule configuration plug-in
    cmipnpinstall.dll          6.1.7600.16385              PNP plugin installer for CMI
    cmlua.dll                  7.2.7600.16385                API   
    cmpbk32.dll                7.2.7600.16385              Microsoft Connection Manager Phonebook
    cmstplua.dll               7.2.7600.16385                API      
    cmutil.dll                 7.2.7600.16385                  (Microsoft)
    cngaudit.dll               6.1.7600.16385              Windows Cryptographic Next Generation audit library
    cngprovider.dll            6.1.7600.16385               DLL cngprovider
    cnvfat.dll                 6.1.7600.16385              FAT File System Conversion Utility DLL
    colbact.dll                2001.12.8530.16385          COM+
    colorcnv.dll               6.1.7600.16385              Windows Media Color Conversion
    colorui.dll                6.1.7600.16385                 
    comcat.dll                 6.1.7600.16385              Microsoft Component Category Manager Library
    comctl32.dll               5.82.7600.16385                  
    comdlg32.dll               6.1.7600.16385                 
    compobj.dll                2.10.35.35                  OLE 2.1 16/32 Interoperability Library
    compstui.dll               6.1.7600.16385                   
    comrepl.dll                2001.12.8530.16385          COM+
    comres.dll                 2001.12.8530.16385           COM+
    comsnap.dll                2001.12.8530.16385          COM+ Explorer MMC Snapin
    comsvcs.dll                2001.12.8530.16385          COM+ Services
    comuid.dll                 2001.12.8530.16385          COM+ Explorer UI
    connect.dll                6.1.7600.16385               
    console.dll                6.1.7600.16385                 
    corpol.dll                 8.0.7600.16385              Microsoft COM Runtime Execution Engine
    cpfilters.dll              6.6.7600.16485               PTFilter & Encypter/Decrypter Tagger Filters.
    credssp.dll                6.1.7600.16385              Credential Delegation Security Package
    credui.dll                 6.1.7600.16385                 
    crtdll.dll                 4.0.1183.1                  Microsoft C Runtime Library
    crypt32.dll                6.1.7600.16385              API32 
    cryptbase.dll              6.1.7600.16385              Base cryptographic API DLL
    cryptdlg.dll               6.1.7600.16385                
    cryptdll.dll               6.1.7600.16385              Cryptography Manager
    cryptext.dll               6.1.7600.16385                
    cryptnet.dll               6.1.7600.16385              Crypto Network Related API
    cryptsp.dll                6.1.7600.16385              Cryptographic Service Provider API
    cryptsvc.dll               6.1.7600.16385               
    cryptui.dll                6.1.7600.16385                
    cryptxml.dll               6.1.7600.16385              API- XML DigSig
    cscapi.dll                 6.1.7600.16385              Offline Files Win32 API
    cscdll.dll                 6.1.7600.16385              Offline Files Temporary Shim
    cscobj.dll                 6.1.7600.16385               COM-   CSC API
    csver.dll                  9.1.1.1027                  CSVer
    ctl3d32.dll                2.31.0.0                    Ctl3D 3D Windows Controls
    d2d1.dll                   6.1.7600.16385              Microsoft D2D Library
    d3d10.dll                  6.1.7600.16385              Direct3D 10 Runtime
    d3d10_1.dll                6.1.7600.16385              Direct3D 10.1 Runtime
    d3d10_1core.dll            6.1.7600.16385              Direct3D 10.1 Runtime
    d3d10core.dll              6.1.7600.16385              Direct3D 10 Runtime
    d3d10level9.dll            6.1.7600.16385              Direct3D 10 to Direct3D9 Translation Runtime
    d3d10warp.dll              6.1.7600.16385              Direct3D 10 Rasterizer
    d3d11.dll                  6.1.7600.16385              Direct3D 11 Runtime
    d3d8.dll                   6.1.7600.16385              Microsoft Direct3D
    d3d8thk.dll                6.1.7600.16385              Microsoft Direct3D OS Thunk Layer
    d3d9.dll                   6.1.7600.16385              Direct3D 9 Runtime
    d3dim.dll                  6.1.7600.16385              Microsoft Direct3D
    d3dim700.dll               6.1.7600.16385              Microsoft Direct3D
    d3dramp.dll                6.1.7600.16385              Microsoft Direct3D
    d3dxof.dll                 6.1.7600.16385              DirectX Files DLL
    dataclen.dll               6.1.7600.16385                 Windows
    davclnt.dll                6.1.7600.16385              Web DAV Client DLL
    davhlpr.dll                6.1.7600.16385              DAV Helper DLL
    dbgeng.dll                 6.1.7600.16385              Windows Symbolic Debugger Engine
    dbghelp.dll                6.1.7600.16385              Windows Image Helper
    dbnetlib.dll               6.1.7600.16385              Winsock Oriented Net DLL for SQL Clients
    dbnmpntw.dll               6.1.7600.16385              Named Pipes Net DLL for SQL Clients
    dciman32.dll               6.1.7600.16385              DCI Manager
    ddaclsys.dll               6.1.7600.16385              SysPrep module for Reseting Data Drive ACL 
    ddoiproxy.dll              6.1.7600.16385              DDOI Interface Proxy
    ddores.dll                 6.1.7600.16385                  
    ddraw.dll                  6.1.7600.16385              Microsoft DirectDraw
    ddrawex.dll                6.1.7600.16385              Direct Draw Ex
    defaultlocationcpl.dll     6.1.7600.16385               :   
    deskadp.dll                6.1.7600.16385                 
    deskmon.dll                6.1.7600.16385                
    deskperf.dll               6.1.7600.16385                
    devenum.dll                6.6.7600.16385               .
    devicecenter.dll           6.1.7600.16385                
    devicedisplaystatusmanager.dll  6.1.7600.16385              Device Display Status Manager
    devicemetadataparsers.dll  6.1.7600.16385              Common Device Metadata parsers
    devicepairing.dll          6.1.7600.16385               ,   
    devicepairingfolder.dll    6.1.7600.16385                 
    devicepairinghandler.dll   6.1.7600.16385              Device Pairing Handler Dll
    devicepairingproxy.dll     6.1.7600.16385              Device Pairing Proxy Dll
    deviceuxres.dll            6.1.7600.16385              Windows Device User Experience Resource File
    devmgr.dll                 6.1.7600.16385                 
    devobj.dll                 6.1.7600.16385              Device Information Set DLL
    devrtl.dll                 6.1.7600.16385              Device Management Run Time Library
    dfscli.dll                 6.1.7600.16385              Windows NT Distributed File System Client DLL
    dfshim.dll                 2.0.50727.4927              Application Deployment Support Library
    dfsshlex.dll               6.1.7600.16385                   DFS
    dhcpcmonitor.dll           6.1.7600.16385               (DLL)   DHCP
    dhcpcore.dll               6.1.7600.16385               DHCP-
    dhcpcore6.dll              6.1.7600.16385               DHCPv6
    dhcpcsvc.dll               6.1.7600.16385               DHCP-
    dhcpcsvc6.dll              6.1.7600.16385               DHCPv6
    dhcpqec.dll                6.1.7600.16385                   Microsoft DHCP
    dhcpsapi.dll               6.1.7600.16385               API  DHCP-c
    difxapi.dll                2.1.0.0                     Driver Install Frameworks for API library module
    dimsjob.dll                6.1.7600.16385               DLL  DIMS
    dimsroam.dll               6.1.7600.16385               DLL  DIMS  
    dinput.dll                 6.1.7600.16385              Microsoft DirectInput
    dinput8.dll                6.1.7600.16385              Microsoft DirectInput
    directdb.dll               6.1.7600.16385              Microsoft Direct Database API
    diskcopy.dll               6.1.7600.16385              Windows DiskCopy
    dispex.dll                 5.8.7600.16385              Microsoft  DispEx
    display.dll                6.1.7600.16385                
    dmband.dll                 6.1.7600.16385              Microsoft DirectMusic Band
    dmcompos.dll               6.1.7600.16385              Microsoft DirectMusic Composer
    dmdlgs.dll                 6.1.7600.16385              Disk Management Snap-in Dialogs
    dmdskmgr.dll               6.1.7600.16385              Disk Management Snap-in Support Library
    dmdskres.dll               6.1.7600.16385                 
    dmdskres2.dll              6.1.7600.16385                 
    dmime.dll                  6.1.7600.16385              Microsoft DirectMusic Interactive Engine
    dmintf.dll                 6.1.7600.16385              Disk Management DCOM Interface Stub
    dmloader.dll               6.1.7600.16385              Microsoft DirectMusic Loader
    dmocx.dll                  6.1.7600.16385              TreeView OCX
    dmrc.dll                   6.1.7600.16385              Windows MRC
    dmscript.dll               6.1.7600.16385              Microsoft DirectMusic Scripting
    dmstyle.dll                6.1.7600.16385              Microsoft DirectMusic Style Engline
    dmsynth.dll                6.1.7600.16385              Microsoft DirectMusic Software Synthesizer
    dmusic.dll                 6.1.7600.16385                Microsoft DirectMusic
    dmutil.dll                 6.1.7600.16385                 
    dmvdsitf.dll               6.1.7600.16385              Disk Management Snap-in Support Library
    dnsapi.dll                 6.1.7600.16385                API DNS-
    dnscmmc.dll                6.1.7600.16385               DLL  DNS  MMC
    docprop.dll                6.1.7600.16385                OLE
    dot3api.dll                6.1.7600.16385              802.3 Autoconfiguration API
    dot3cfg.dll                6.1.7600.16385               Netsh  802.3
    dot3dlg.dll                6.1.7600.16385                UI  802.3
    dot3gpclnt.dll             6.1.7600.16385                   802.3
    dot3gpui.dll               6.1.7600.16385               "   802.3"
    dot3hc.dll                 6.1.7600.16385                 Dot3
    dot3msm.dll                6.1.7600.16385                   802.3
    dot3ui.dll                 6.1.7600.16385                802.3
    dpapiprovider.dll          6.1.7600.16385               DLL dpapiprovider
    dplayx.dll                 6.1.7600.16385              Microsoft DirectPlay
    dpmodemx.dll               6.1.7600.16385                      DirectPlay
    dpnaddr.dll                6.1.7600.16385              Microsoft DirectPlay8 Address
    dpnathlp.dll               6.1.7600.16385              Microsoft DirectPlay NAT Helper UPnP
    dpnet.dll                  6.1.7600.16385              Microsoft DirectPlay
    dpnhpast.dll               6.1.7600.16385              Microsoft DirectPlay NAT Helper PAST
    dpnhupnp.dll               6.1.7600.16385              Microsoft DirectPlay NAT Helper UPNP
    dpnlobby.dll               6.1.7600.16385              Microsoft DirectPlay8 Lobby
    dpwsockx.dll               6.1.7600.16385                  TCP/IP  IPX  DirectPlay
    dpx.dll                    6.1.7600.16385              Microsoft(R) Delta Package Expander
    drmmgrtn.dll               11.0.7600.16385             DRM Migration DLL
    drmv2clt.dll               11.0.7600.16385             DRMv2 Client DLL
    drprov.dll                 6.1.7600.16385                   ,        ()
    drt.dll                    6.1.7600.16385                
    drtprov.dll                6.1.7600.16385              Distributed Routing Table Providers
    drttransport.dll           6.1.7600.16385              Distributed Routing Table Transport Provider
    drvstore.dll               6.1.7600.16385              Driver Store API
    ds32gt.dll                 6.1.7600.16385              ODBC Driver Setup Generic Thunk
    dsauth.dll                 6.1.7600.16385              DS Authorization for Services
    dsdmo.dll                  6.1.7600.16385              DirectSound Effects
    dshowrdpfilter.dll         1.0.0.0                           ()
    dskquota.dll               6.1.7600.16385               DLL    Windows
    dskquoui.dll               6.1.7600.16385               DLL   
    dsound.dll                 6.1.7600.16385              DirectSound
    dsprop.dll                 6.1.7600.16385                Active Directory
    dsquery.dll                6.1.7600.16385                 
    dsrole.dll                 6.1.7600.16385              DS Role Client DLL
    dssec.dll                  6.1.7600.16385                 
    dssenh.dll                 6.1.7600.16385              Microsoft Enhanced DSS and Diffie-Hellman Cryptographic Provider
    dsuiext.dll                6.1.7600.16385                 
    dswave.dll                 6.1.7600.16385              Microsoft DirectMusic Wave
    dtsh.dll                   6.1.7600.16385               API     
    dui70.dll                  6.1.7600.16385               DirectUI Windows
    duser.dll                  6.1.7600.16385              Windows DirectUser Engine
    dwmapi.dll                 6.1.7600.16385               API     ()
    dwmcore.dll                6.1.7600.16385                Microsoft DWM
    dwrite.dll                 6.1.7600.16385               Microsoft DirectX Typography
    dxdiagn.dll                6.1.7600.16385                Microsoft DirectX
    dxgi.dll                   6.1.7600.16385              DirectX Graphics Infrastructure
    dxmasf.dll                 12.0.7600.16385             Microsoft Windows Media Component Removal File.
    dxptaskringtone.dll        6.1.7600.16385                 Microsoft
    dxptasksync.dll            6.1.7600.16385               Microsoft Windows DXP
    dxtmsft.dll                8.0.7600.16385              DirectX Media -- Image DirectX Transforms
    dxtrans.dll                8.0.7600.16385              DirectX Media -- DirectX Transform Core
    dxva2.dll                  6.1.7600.16385              DirectX Video Acceleration 2.0 DLL
    eapp3hst.dll               6.1.7600.16385              Microsoft ThirdPartyEapDispatcher
    eappcfg.dll                6.1.7600.16385                EAP
    eappgnui.dll               6.1.7600.16385                 EAP
    eapphost.dll               6.1.7600.16385                 EAPHost 
    eappprxy.dll               6.1.7600.16385              Microsoft EAPHost Peer Client DLL
    eapqec.dll                 6.1.7600.16385                   Microsoft EAP
    efsadu.dll                 6.1.7600.16385                
    efscore.dll                6.1.7600.16385              EFS Core Library
    efsutil.dll                6.1.7600.16385              EFS Utility Library
    ehstorapi.dll              6.1.7600.16385              Windows Enhanced Storage API
    ehstorpwdmgr.dll           6.1.7600.16385                Windows Enhanced Storage
    ehstorshell.dll            6.1.7600.16385               DLL   Windows Enhanced Storage
    els.dll                    6.1.7600.16385                
    elscore.dll                6.1.7600.16385               DLL   Els
    elslad.dll                 6.1.7600.16385              ELS Language Detection
    elstrans.dll               6.1.7600.16385              ELS Transliteration Service
    encapi.dll                 6.1.7600.16385              Encoder API
    encdec.dll                 6.6.7600.16385                XDS     .
    eqossnap.dll               6.1.7600.16385                EQoS
    es.dll                     2001.12.8530.16385          COM+
    esent.dll                  6.1.7600.16385                  ESE  Microsoft(R) Windows(R)
    esentprf.dll               6.1.7600.16385              Extensible Storage Engine Performance Monitoring Library for Microsoft(R) Windows(R)
    eventcls.dll               6.1.7600.16385              Microsoft Volume Shadow Copy Service event class
    evr.dll                    6.1.7600.16385                DLL   
    explorerframe.dll          6.1.7600.16385              ExplorerFrame
    expsrv.dll                 6.0.72.9589                 Visual Basic for Applications Runtime - Expression Service
    f3ahvoas.dll               6.1.7600.16385              JP Japanese Keyboard Layout for Fujitsu FMV oyayubi-shift keyboard
    faultrep.dll               6.1.7600.16385                     Windows
    fdbth.dll                  6.1.7600.16385              Function Discovery Bluetooth Provider Dll
    fdbthproxy.dll             6.1.7600.16385              Bluetooth Provider Proxy Dll
    fde.dll                    6.1.7600.16385                 
    fdeploy.dll                6.1.7600.16385                  
    fdpnp.dll                  6.1.7600.16385              Pnp Provider Dll
    fdproxy.dll                6.1.7600.16385              Function Discovery Proxy Dll
    fdssdp.dll                 6.1.7600.16385              Function Discovery SSDP Provider Dll
    fdwcn.dll                  6.1.7600.16385              Windows Connect Now - Config Function Discovery Provider DLL
    fdwnet.dll                 6.1.7600.16385              Function Discovery WNet Provider Dll
    fdwsd.dll                  6.1.7600.16385              Function Discovery WS Discovery Provider Dll
    feclient.dll               6.1.7600.16385              Windows NT File Encryption Client Interfaces
    ff_vfw.dll                                             
    filemgmt.dll               6.1.7600.16385                 
    findnetprinters.dll        6.1.7600.16385              Find Network Printers COM Component
    firewallapi.dll            6.1.7600.16385              API  Windows
    firewallcontrolpanel.dll   6.1.7600.16385                -  Windows
    fltlib.dll                 6.1.7600.16385               
    fmifs.dll                  6.1.7600.16385              FM IFS Utility DLL
    fms.dll                    1.1.6000.16384                
    fontext.dll                6.1.7600.16385                Windows
    fontsub.dll                6.1.7600.16444              Font Subsetting DLL
    fphc.dll                   6.1.7600.16385               Filtering Platform Helper
    framedyn.dll               6.1.7600.16385              WMI SDK Provider Framework
    framedynos.dll             6.1.7600.16385              WMI SDK Provider Framework
    fthsvc.dll                 6.1.7600.16385                  Microsoft Windows
    fundisc.dll                6.1.7600.16385              DLL  
    fwcfg.dll                  6.1.7600.16385                  Windows
    fwpuclnt.dll               6.1.7600.16385              API   FWP/IPsec
    fwremotesvr.dll            6.1.7600.16385              Windows Firewall Remote APIs Server
    fxsapi.dll                 6.1.7600.16385              Microsoft  Fax API Support DLL
    fxscom.dll                 6.1.7600.16385              Microsoft Fax Server COM Client Interface
    fxscomex.dll               6.1.7600.16385              Microsoft Fax Server Extended COM Client Interface
    fxsext32.dll               6.1.7600.16385              Microsoft  Fax Exchange Command Extension
    fxsresm.dll                6.1.7600.16385               DLL   (Microsoft)
    fxsxp32.dll                6.1.7600.16385              Microsoft  Fax Transport Provider
    gameux.dll                 6.1.7600.16385               
    gameuxlegacygdfs.dll       1.0.0.1                     Legacy GDF resource DLL
    gcdef.dll                  6.1.7600.16385                   
    gdi32.dll                  6.1.7600.16385              GDI Client DLL
    getuname.dll               6.1.7600.16385                   UCE
    glmf32.dll                 6.1.7600.16385              OpenGL Metafiling DLL
    glu32.dll                  6.1.7600.16385                OpenGL
    gpapi.dll                  6.1.7600.16385                API  
    gpedit.dll                 6.1.7600.16385              GPEdit
    gpprefcl.dll               6.1.7600.16385                 
    gpprnext.dll               6.1.7600.16385                 
    gpscript.dll               6.1.7600.16385                
    gptext.dll                 6.1.7600.16385              GPTExt
    hbaapi.dll                 6.1.7600.16385              HBA API data interface dll for HBA_API_Rev_2-18_2002MAR1.doc
    hcproviders.dll            6.1.7600.16385                
    helppaneproxy.dll          6.1.7600.16385              Microsoft Help Proxy
    hgcpl.dll                  6.1.7600.16385                 
    hhsetup.dll                6.1.7600.16385              Microsoft HTML Help
    hid.dll                    6.1.7600.16385                HID
    hidserv.dll                6.1.7600.16385               HID
    hlink.dll                  6.1.7600.16385               Microsoft Office 2000
    hnetcfg.dll                6.1.7600.16385                 
    hnetmon.dll                6.1.7600.16385              DLL   
    httpapi.dll                6.1.7600.16385              HTTP Protocol Stack API
    htui.dll                   6.1.7600.16385                  
    ias.dll                    6.1.7600.16385                 (NPS)
    iasacct.dll                6.1.7600.16385                NPS
    iasads.dll                 6.1.7600.16385                Active Directory NPS
    iasdatastore.dll           6.1.7600.16385              NPS Datastore server
    iashlpr.dll                6.1.7600.16385                NPS
    iasmigplugin.dll           6.1.7600.16385              NPS Migration DLL
    iasnap.dll                 6.1.7600.16385              NPS NAP Provider
    iaspolcy.dll               6.1.7600.16385              NPS Pipeline
    iasrad.dll                 6.1.7600.16385                RADIUS NPS
    iasrecst.dll               6.1.7600.16385              NPS XML Datastore Access
    iassam.dll                 6.1.7600.16385              NPS NT SAM Provider
    iassdo.dll                 6.1.7600.16385               SDO NPS
    iassvcs.dll                6.1.7600.16385                NPS
    icardie.dll                8.0.7600.16385              Microsoft Information Card IE Helper
    icardres.dll               3.0.4506.4926               Windows CardSpace
    iccvid.dll                 1.10.0.12                    Cinepak
    icm32.dll                  6.1.7600.16385              Microsoft Color Management Module (CMM)
    icmp.dll                   6.1.7600.16385              ICMP DLL
    icmui.dll                  6.1.7600.16385                  
    iconcodecservice.dll       6.1.7600.16385              Converts a PNG part of the icon to a legacy bmp icon
    icsigd.dll                 6.1.7600.16385                 
    idndl.dll                  6.1.7600.16385              Downlevel DLL
    idstore.dll                6.1.7600.16385              Identity Store
    ieakeng.dll                8.0.7600.16385                  Internet Explorer
    ieaksie.dll                8.0.7600.16385                 Internet Explorer   
    ieakui.dll                 8.0.7600.16385                UI DLL Microsoft IEAK
    ieapfltr.dll               8.0.6001.18669              Microsoft SmartScreen Filter
    iedkcs32.dll               18.0.7600.16501               IEAK
    ieframe.dll                8.0.7600.16490              -
    iepeers.dll                8.0.7600.16385              Peer- Internet Explorer
    iernonce.dll               8.0.7600.16385                RunOnce   
    iertutil.dll               8.0.7600.16385              Run time utility for Internet Explorer
    iesetup.dll                8.0.7600.16385                IOD
    iesysprep.dll              8.0.7600.16385              IE Sysprep Provider
    ieui.dll                   8.0.7600.16385                 Internet Explorer
    ifmon.dll                  6.1.7600.16385                IF
    ifsutil.dll                6.1.7600.16385              IFS Utility DLL
    ifsutilx.dll               6.1.7600.16385              IFS Utility Extension DLL
    imagehlp.dll               6.1.7600.16385              Windows NT Image Helper
    imageres.dll               6.1.7600.16385              Windows Image Resource
    imagesp1.dll               6.1.7600.16385              Windows SP1 Image Resource
    imapi.dll                  6.1.7600.16385               Image Mastering API
    imapi2.dll                 6.1.7600.16385              IMAPI  2
    imapi2fs.dll               6.1.7600.16385              Image Mastering File System Imaging API v2
    imgutil.dll                8.0.7600.16385              IE plugin image decoder support DLL
    imjp10k.dll                10.1.7600.16385             Microsoft IME
    imm32.dll                  6.1.7600.16385              Multi-User Windows IMM32 API Client DLL
    inetcomm.dll               6.1.7600.16385              Microsoft Internet Messaging API Resources
    inetmib1.dll               6.1.7600.16385              Microsoft MIB-II subagent
    inetres.dll                6.1.7600.16385               API  
    infocardapi.dll            3.0.4506.4926               Microsoft InfoCards
    inked.dll                  6.1.7600.16385              Microsoft Tablet PC InkEdit Control
    input.dll                  6.1.7600.16385               DLL  
    inseng.dll                 8.0.7600.16385               
    iologmsg.dll               6.1.7600.16385                /
    ipbusenumproxy.dll         6.1.7600.16385              Associated Device Presence Proxy Dll
    iphlpapi.dll               6.1.7600.16385              IP Helper API
    iprop.dll                  6.1.7600.16385              OLE PropertySet Implementation
    iprtprio.dll               6.1.7600.16385              IP Routing Protocol Priority DLL
    iprtrmgr.dll               6.1.7600.16385               IP-
    ipsecsnp.dll               6.1.7600.16385                 IP-
    ipsmsnap.dll               6.1.7600.16385                IP-
    ir32_32.dll                3.24.15.3                   32-  Intel Indeo(R) Video R3.2
    ir41_qc.dll                4.30.62.2                   Intel Indeo Video Interactive Quick Compressor
    ir41_qcx.dll               4.30.62.2                   Intel Indeo Video Interactive Quick Compressor
    ir50_32.dll                5.2562.15.55                Intel Indeo video 5.10
    ir50_qc.dll                5.0.63.48                   Intel Indeo video 5.10 Quick Compressor
    ir50_qcx.dll               5.0.63.48                   Intel Indeo video 5.10 Quick Compressor
    irclass.dll                6.1.7600.16385                 
    iscsicpl.dll               5.2.3790.1830                   iSCSI
    iscsidsc.dll               6.1.7600.16385              API-  iSCSI
    iscsied.dll                6.1.7600.16385              iSCSI Extension DLL
    iscsium.dll                6.1.7600.16385              iSCSI Discovery api
    iscsiwmi.dll               6.1.7600.16385              MS iSCSI Initiator WMI Provider
    itircl.dll                 6.1.7600.16385              Microsoft InfoTech IR Local DLL
    itss.dll                   6.1.7600.16385              Microsoft InfoTech Storage System Library
    itvdata.dll                6.6.7600.16385              iTV Data Filters.
    iyuv_32.dll                6.1.7600.16490              Intel Indeo(R) Video YUV 
    jscript.dll                5.8.7600.16475              Microsoft (R) JScript
    jsproxy.dll                8.0.7600.16385              JScript Proxy Auto-Configuration
    kbd101.dll                 6.1.7600.16385              JP Japanese Keyboard Layout for 101
    kbd101a.dll                6.1.7600.16385              KO Hangeul Keyboard Layout for 101 (Type A)
    kbd101b.dll                6.1.7600.16385              KO Hangeul Keyboard Layout for 101(Type B)
    kbd101c.dll                6.1.7600.16385              KO Hangeul Keyboard Layout for 101(Type C)
    kbd103.dll                 6.1.7600.16385              KO Hangeul Keyboard Layout for 103
    kbd106.dll                 6.1.7600.16385              JP Japanese Keyboard Layout for 106
    kbd106n.dll                6.1.7600.16385              JP Japanese Keyboard Layout for 106
    kbda1.dll                  6.1.7600.16385              Arabic_English_101 Keyboard Layout
    kbda2.dll                  6.1.7600.16385              Arabic_2 Keyboard Layout
    kbda3.dll                  6.1.7600.16385              Arabic_French_102 Keyboard Layout
    kbdal.dll                  6.1.7600.16385              Albania Keyboard Layout
    kbdarme.dll                6.1.7600.16385              Eastern Armenian Keyboard Layout
    kbdarmw.dll                6.1.7600.16385              Western Armenian Keyboard Layout
    kbdax2.dll                 6.1.7600.16385              JP Japanese Keyboard Layout for AX2
    kbdaze.dll                 6.1.7600.16385              Azerbaijan_Cyrillic Keyboard Layout
    kbdazel.dll                6.1.7600.16385              Azeri-Latin Keyboard Layout
    kbdbash.dll                6.1.7600.16385              Bashkir Keyboard Layout
    kbdbe.dll                  6.1.7600.16385              Belgian Keyboard Layout
    kbdbene.dll                6.1.7600.16385              Belgian Dutch Keyboard Layout
    kbdbgph.dll                6.1.7600.16385              Bulgarian Phonetic Keyboard Layout
    kbdbgph1.dll               6.1.7600.16385              Bulgarian (Phonetic Traditional) Keyboard Layout
    kbdbhc.dll                 6.1.7600.16385              Bosnian (Cyrillic) Keyboard Layout
    kbdblr.dll                 6.1.7600.16385              Belarusian Keyboard Layout
    kbdbr.dll                  6.1.7600.16385              Brazilian Keyboard Layout
    kbdbu.dll                  6.1.7600.16385              Bulgarian (Typewriter) Keyboard Layout
    kbdbulg.dll                6.1.7600.16385              Bulgarian Keyboard Layout
    kbdca.dll                  6.1.7600.16385              Canadian Multilingual Keyboard Layout
    kbdcan.dll                 6.1.7600.16385              Canadian Multilingual Standard Keyboard Layout
    kbdcr.dll                  6.1.7600.16385              Croatian/Slovenian Keyboard Layout
    kbdcz.dll                  6.1.7600.16385              Czech Keyboard Layout
    kbdcz1.dll                 6.1.7600.16385              Czech_101 Keyboard Layout
    kbdcz2.dll                 6.1.7600.16385              Czech_Programmer's Keyboard Layout
    kbdda.dll                  6.1.7600.16385              Danish Keyboard Layout
    kbddiv1.dll                6.1.7600.16385              Divehi Phonetic Keyboard Layout
    kbddiv2.dll                6.1.7600.16385              Divehi Typewriter Keyboard Layout
    kbddv.dll                  6.1.7600.16385              Dvorak US English Keyboard Layout
    kbdes.dll                  6.1.7600.16385              Spanish Alernate Keyboard Layout
    kbdest.dll                 6.1.7600.16385              Estonia Keyboard Layout
    kbdfa.dll                  6.1.7600.16385              Persian Keyboard Layout
    kbdfc.dll                  6.1.7600.16385              Canadian French Keyboard Layout
    kbdfi.dll                  6.1.7600.16385              Finnish Keyboard Layout
    kbdfi1.dll                 6.1.7600.16385              Finnish-Swedish with Sami Keyboard Layout
    kbdfo.dll                  6.1.7600.16385              F?roese Keyboard Layout
    kbdfr.dll                  6.1.7600.16385              French Keyboard Layout
    kbdgae.dll                 6.1.7600.16385              Gaelic Keyboard Layout
    kbdgeo.dll                 6.1.7600.16385              Georgian Keyboard Layout
    kbdgeoer.dll               6.1.7600.16385              Georgian (Ergonomic) Keyboard Layout
    kbdgeoqw.dll               6.1.7600.16385              Georgian (QWERTY) Keyboard Layout
    kbdgkl.dll                 6.1.7600.16385              Greek_Latin Keyboard Layout
    kbdgr.dll                  6.1.7600.16385              German Keyboard Layout
    kbdgr1.dll                 6.1.7600.16385              German_IBM Keyboard Layout
    kbdgrlnd.dll               6.1.7600.16385              Greenlandic Keyboard Layout
    kbdhau.dll                 6.1.7600.16385              Hausa Keyboard Layout
    kbdhe.dll                  6.1.7600.16385              Greek Keyboard Layout
    kbdhe220.dll               6.1.7600.16385              Greek IBM 220 Keyboard Layout
    kbdhe319.dll               6.1.7600.16385              Greek IBM 319 Keyboard Layout
    kbdheb.dll                 6.1.7600.16385              KBDHEB Keyboard Layout
    kbdhela2.dll               6.1.7600.16385              Greek IBM 220 Latin Keyboard Layout
    kbdhela3.dll               6.1.7600.16385              Greek IBM 319 Latin Keyboard Layout
    kbdhept.dll                6.1.7600.16385              Greek_Polytonic Keyboard Layout
    kbdhu.dll                  6.1.7600.16385              Hungarian Keyboard Layout
    kbdhu1.dll                 6.1.7600.16385              Hungarian 101-key Keyboard Layout
    kbdibm02.dll               6.1.7600.16385              JP Japanese Keyboard Layout for IBM 5576-002/003
    kbdibo.dll                 6.1.7600.16385              Igbo Keyboard Layout
    kbdic.dll                  6.1.7600.16385              Icelandic Keyboard Layout
    kbdinasa.dll               6.1.7600.16385              Assamese (Inscript) Keyboard Layout
    kbdinbe1.dll               6.1.7600.16385              Bengali - Inscript (Legacy) Keyboard Layout
    kbdinbe2.dll               6.1.7600.16385              Bengali (Inscript) Keyboard Layout
    kbdinben.dll               6.1.7600.16385              Bengali Keyboard Layout
    kbdindev.dll               6.1.7600.16385              Devanagari Keyboard Layout
    kbdinguj.dll               6.1.7600.16385              Gujarati Keyboard Layout
    kbdinhin.dll               6.1.7600.16385              Hindi Keyboard Layout
    kbdinkan.dll               6.1.7600.16385              Kannada Keyboard Layout
    kbdinmal.dll               6.1.7600.16385              Malayalam Keyboard Layout Keyboard Layout
    kbdinmar.dll               6.1.7600.16385              Marathi Keyboard Layout
    kbdinori.dll               6.1.7600.16385              Oriya Keyboard Layout
    kbdinpun.dll               6.1.7600.16385              Punjabi/Gurmukhi Keyboard Layout
    kbdintam.dll               6.1.7600.16385              Tamil Keyboard Layout
    kbdintel.dll               6.1.7600.16385              Telugu Keyboard Layout
    kbdinuk2.dll               6.1.7600.16385              Inuktitut Naqittaut Keyboard Layout
    kbdir.dll                  6.1.7600.16385              Irish Keyboard Layout
    kbdit.dll                  6.1.7600.16385              Italian Keyboard Layout
    kbdit142.dll               6.1.7600.16385              Italian 142 Keyboard Layout
    kbdiulat.dll               6.1.7600.16385              Inuktitut Latin Keyboard Layout
    kbdjpn.dll                 6.1.7600.16385              JP Japanese Keyboard Layout Stub driver
    kbdkaz.dll                 6.1.7600.16385              Kazak_Cyrillic Keyboard Layout
    kbdkhmr.dll                6.1.7600.16385              Cambodian Standard Keyboard Layout
    kbdkor.dll                 6.1.7600.16385              KO Hangeul Keyboard Layout Stub driver
    kbdkyr.dll                 6.1.7600.16385              Kyrgyz Keyboard Layout
    kbdla.dll                  6.1.7600.16385              Latin-American Spanish Keyboard Layout
    kbdlao.dll                 6.1.7600.16385              Lao Standard Keyboard Layout
    kbdlk41a.dll               6.1.7600.16385              DEC LK411-AJ Keyboard Layout
    kbdlt.dll                  6.1.7600.16385              Lithuania Keyboard Layout
    kbdlt1.dll                 6.1.7600.16385              Lithuanian Keyboard Layout
    kbdlt2.dll                 6.1.7600.16385              Lithuanian Standard Keyboard Layout
    kbdlv.dll                  6.1.7600.16385              Latvia Keyboard Layout
    kbdlv1.dll                 6.1.7600.16385              Latvia-QWERTY Keyboard Layout
    kbdmac.dll                 6.1.7600.16385              Macedonian (FYROM) Keyboard Layout
    kbdmacst.dll               6.1.7600.16385              Macedonian (FYROM) - Standard Keyboard Layout
    kbdmaori.dll               6.1.7600.16385              Maori Keyboard Layout
    kbdmlt47.dll               6.1.7600.16385              Maltese 47-key Keyboard Layout
    kbdmlt48.dll               6.1.7600.16385              Maltese 48-key Keyboard Layout
    kbdmon.dll                 6.1.7600.16385              Mongolian Keyboard Layout
    kbdmonmo.dll               6.1.7600.16385              Mongolian (Mongolian Script) Keyboard Layout
    kbdne.dll                  6.1.7600.16385              Dutch Keyboard Layout
    kbdnec.dll                 6.1.7600.16385              JP Japanese Keyboard Layout for (NEC PC-9800)
    kbdnec95.dll               6.1.7600.16385              JP Japanese Keyboard Layout for (NEC PC-9800 Windows 95)
    kbdnecat.dll               6.1.7600.16385              JP Japanese Keyboard Layout for (NEC PC-9800 on PC98-NX)
    kbdnecnt.dll               6.1.7600.16385              JP Japanese NEC PC-9800 Keyboard Layout
    kbdnepr.dll                6.1.7600.16385              Nepali Keyboard Layout
    kbdno.dll                  6.1.7600.16385              Norwegian Keyboard Layout
    kbdno1.dll                 6.1.7600.16385              Norwegian with Sami Keyboard Layout
    kbdnso.dll                 6.1.7600.16385              Sesotho sa Leboa Keyboard Layout
    kbdpash.dll                6.1.7600.16385              Pashto (Afghanistan) Keyboard Layout
    kbdpl.dll                  6.1.7600.16385              Polish Keyboard Layout
    kbdpl1.dll                 6.1.7600.16385              Polish Programmer's Keyboard Layout
    kbdpo.dll                  6.1.7600.16385              Portuguese Keyboard Layout
    kbdro.dll                  6.1.7600.16385              Romanian (Legacy) Keyboard Layout
    kbdropr.dll                6.1.7600.16385              Romanian (Programmers) Keyboard Layout
    kbdrost.dll                6.1.7600.16385              Romanian (Standard) Keyboard Layout
    kbdru.dll                  6.1.7600.16385              Russian Keyboard Layout
    kbdru1.dll                 6.1.7600.16385              Russia(Typewriter) Keyboard Layout
    kbdsf.dll                  6.1.7600.16385              Swiss French Keyboard Layout
    kbdsg.dll                  6.1.7600.16385              Swiss German Keyboard Layout
    kbdsl.dll                  6.1.7600.16385              Slovak Keyboard Layout
    kbdsl1.dll                 6.1.7600.16385              Slovak(QWERTY) Keyboard Layout
    kbdsmsfi.dll               6.1.7600.16385              Sami Extended Finland-Sweden Keyboard Layout
    kbdsmsno.dll               6.1.7600.16385              Sami Extended Norway Keyboard Layout
    kbdsn1.dll                 6.1.7600.16385              Sinhala Keyboard Layout
    kbdsorex.dll               6.1.7600.16385              Sorbian Extended Keyboard Layout
    kbdsors1.dll               6.1.7600.16385              Sorbian Standard Keyboard Layout
    kbdsorst.dll               6.1.7600.16385              Sorbian Standard (Legacy) Keyboard Layout
    kbdsp.dll                  6.1.7600.16385              Spanish Keyboard Layout
    kbdsw.dll                  6.1.7600.16385              Swedish Keyboard Layout
    kbdsw09.dll                6.1.7600.16385              Sinhala - Wij 9 Keyboard Layout
    kbdsyr1.dll                6.1.7600.16385              Syriac Standard Keyboard Layout
    kbdsyr2.dll                6.1.7600.16385              Syriac Phoenetic Keyboard Layout
    kbdtajik.dll               6.1.7600.16385              Tajik Keyboard Layout
    kbdtat.dll                 6.1.7600.16385              Tatar_Cyrillic Keyboard Layout
    kbdth0.dll                 6.1.7600.16385              Thai Kedmanee Keyboard Layout
    kbdth1.dll                 6.1.7600.16385              Thai Pattachote Keyboard Layout
    kbdth2.dll                 6.1.7600.16385              Thai Kedmanee (non-ShiftLock) Keyboard Layout
    kbdth3.dll                 6.1.7600.16385              Thai Pattachote (non-ShiftLock) Keyboard Layout
    kbdtiprc.dll               6.1.7600.16385              Tibetan (PRC) Keyboard Layout
    kbdtuf.dll                 6.1.7600.16385              Turkish F Keyboard Layout
    kbdtuq.dll                 6.1.7600.16385              Turkish Q Keyboard Layout
    kbdturme.dll               6.1.7600.16385              Turkmen Keyboard Layout
    kbdughr.dll                6.1.7600.16385              Uyghur (Legacy) Keyboard Layout
    kbdughr1.dll               6.1.7600.16385              Uyghur Keyboard Layout
    kbduk.dll                  6.1.7600.16385              United Kingdom Keyboard Layout
    kbdukx.dll                 6.1.7600.16385              United Kingdom Extended Keyboard Layout
    kbdur.dll                  6.1.7600.16385              Ukrainian Keyboard Layout
    kbdur1.dll                 6.1.7600.16385              Ukrainian (Enhanced) Keyboard Layout
    kbdurdu.dll                6.1.7600.16385              Urdu Keyboard Layout
    kbdus.dll                  6.1.7600.16385              United States Keyboard Layout
    kbdusa.dll                 6.1.7600.16385              US IBM Arabic 238_L Keyboard Layout
    kbdusl.dll                 6.1.7600.16385              Dvorak Left-Hand US English Keyboard Layout
    kbdusr.dll                 6.1.7600.16385              Dvorak Right-Hand US English Keyboard Layout
    kbdusx.dll                 6.1.7600.16385              US Multinational Keyboard Layout
    kbduzb.dll                 6.1.7600.16385              Uzbek_Cyrillic Keyboard Layout
    kbdvntc.dll                6.1.7600.16385              Vietnamese Keyboard Layout
    kbdwol.dll                 6.1.7600.16385              Wolof Keyboard Layout
    kbdyak.dll                 6.1.7600.16385              Yakut - Russia Keyboard Layout
    kbdyba.dll                 6.1.7600.16385              Yoruba Keyboard Layout
    kbdycc.dll                 6.1.7600.16385              Serbian (Cyrillic) Keyboard Layout
    kbdycl.dll                 6.1.7600.16385              Serbian (Latin) Keyboard Layout
    kerberos.dll               6.1.7600.16385                Kerberos
    kernel32.dll               6.1.7600.16385                Windows NT BASE API
    kernelbase.dll             6.1.7600.16385                Windows NT BASE API
    keyiso.dll                 6.1.7600.16385                 CNG
    keymgr.dll                 6.1.7600.16385                  
    korwbrkr.dll               6.1.7600.16385              korwbrkr
    ksuser.dll                 6.1.7600.16385              User CSA Library
    ktmw32.dll                 6.1.7600.16385              Windows KTM Win32 Client DLL
    l2gpstore.dll              6.1.7600.16385              Policy Storage dll
    l2nacp.dll                 6.1.7600.16385                 Onex Windows
    l2sechc.dll                6.1.7600.16385                    2
    laprxy.dll                 12.0.7600.16385             Windows Media Logagent Proxy
    licmgr10.dll               8.0.7600.16385               (DLL)    Microsoft
    linkinfo.dll               6.1.7600.16385              Windows Volume Tracking
    loadperf.dll               6.1.7600.16385                  
    localsec.dll               6.1.7600.16385               MMC "   "
    locationapi.dll            6.1.7600.16385              Microsoft Windows Location API
    loghours.dll               6.1.7600.16385               
    logoncli.dll               6.1.7600.16385              Net Logon Client DLL
    lpk.dll                    6.1.7600.16385              Language Pack
    lsmproxy.dll               6.1.7600.16385              LSM interfaces proxy Dll
    luainstall.dll             6.1.7600.16385              Lua manifest install
    lz32.dll                   6.1.7600.16385              LZ Expand/Compress API DLL
    magnification.dll          6.1.7600.16385               API  ()
    mapi32.dll                 1.0.2536.0                   MAPI 1.0  Windows NT
    mapistub.dll               1.0.2536.0                   MAPI 1.0  Windows NT
    mcewmdrmndbootstrap.dll    1.3.2297.0                  Windows Media Center WMDRM-ND Receiver Bridge Bootstrap DLL
    mciavi32.dll               6.1.7600.16490               MCI Video  Windows
    mcicda.dll                 6.1.7600.16385               MCI   cdaudio
    mciqtz32.dll               6.6.7600.16385               MCI DirectShow
    mciseq.dll                 6.1.7600.16385               MCI   MIDI
    mciwave.dll                6.1.7600.16385               MCI   
    mctres.dll                 6.1.7600.16385                MCT
    mdminst.dll                6.1.7600.16385               
    mediametadatahandler.dll   6.1.7600.16385              Media Metadata Handler
    mf.dll                     12.0.7600.16385               
    mf3216.dll                 6.1.7600.16385              32-bit to 16-bit Metafile Conversion DLL
    mfaacenc.dll               6.1.7600.16385              Media Foundation AAC Encoder
    mfc40.dll                  4.1.0.6140                    MFCDLL -  
    mfc40u.dll                 4.1.0.6140                    MFCDLL -  
    mfc42.dll                  6.6.8063.0                    MFCDLL -  
    mfc42u.dll                 6.6.8063.0                    MFCDLL -  
    mfcsubs.dll                2001.12.8530.16385          COM+
    mfds.dll                   12.0.7600.16385             Media Foundation Direct Show wrapper DLL
    mfdvdec.dll                6.1.7600.16385              Media Foundation DV Decoder
    mferror.dll                12.0.7600.16385                
    mfh264enc.dll              6.1.7600.16385              Media Foundation H264 Encoder
    mfmjpegdec.dll             6.1.7600.16385              Media Foundation MJPEG Decoder
    mfplat.dll                 12.0.7600.16385             Media Foundation Platform DLL
    mfplay.dll                 12.0.7600.16385             Media Foundation Playback API DLL
    mfps.dll                   12.0.7600.16385             Media Foundation Proxy DLL
    mfreadwrite.dll            12.0.7600.16385             Media Foundation ReadWrite DLL
    mfvdsp.dll                 6.1.7600.16385              Windows Media Foundation Video DSP Components
    mfwmaaec.dll               6.1.7600.16385              Windows Media Audio AEC for Media Foundation
    mgmtapi.dll                6.1.7600.16385              Microsoft SNMP Manager API (uses WinSNMP)
    midimap.dll                6.1.7600.16385              Microsoft MIDI Mapper
    migisol.dll                6.1.7600.16385              Migration System Isolation Layer
    miguiresource.dll          6.1.7600.16385               MIG wini32
    mimefilt.dll               2008.0.7600.16385            MIME
    mlang.dll                  6.1.7600.16385               DLL  
    mmcbase.dll                6.1.7600.16385                DLL MMC
    mmci.dll                   6.1.7600.16385                
    mmcico.dll                 6.1.7600.16385              Media class co-installer
    mmcndmgr.dll               6.1.7600.16385                 MMC
    mmcshext.dll               6.1.7600.16385              MMC Shell Extension DLL
    mmdevapi.dll               6.1.7600.16385              MMDevice API
    mmres.dll                  6.1.7600.16385               
    modemui.dll                6.1.7600.16385                Windows
    moricons.dll               6.1.7600.16385              Windows NT Setup Icon Resources Library
    mp3dmod.dll                6.1.7600.16385              Microsoft MP3 Decoder DMO
    mp43decd.dll               6.1.7600.16385              Windows Media MPEG-4 Video Decoder
    mp4sdecd.dll               6.1.7600.16385              Windows Media MPEG-4 S Video Decoder
    mpg4decd.dll               6.1.7600.16385              Windows Media MPEG-4 Video Decoder
    mpr.dll                    6.1.7600.16385                   
    mprapi.dll                 6.1.7600.16385              Windows NT MP Router Administration DLL
    mprddm.dll                 6.1.7600.16385                  
    mprdim.dll                 6.1.7600.16385                
    mprmsg.dll                 6.1.7600.16385               (DLL)    
    msaatext.dll               2.0.10413.0                 Active Accessibility text support
    msac3enc.dll               6.1.7600.16385              Microsoft AC-3 Encoder
    msacm32.dll                6.1.7600.16385                 Microsoft
    msadce.dll                 6.1.7600.16385              OLE DB Cursor Engine
    msadcer.dll                6.1.7600.16385              OLE DB Cursor Engine Resources
    msadcf.dll                 6.1.7600.16385              Remote Data Services Data Factory
    msadcfr.dll                6.1.7600.16385              Remote Data Services Data Factory Resources
    msadco.dll                 6.1.7600.16385              Remote Data Services Data Control
    msadcor.dll                6.1.7600.16385              Remote Data Services Data Control Resources
    msadcs.dll                 6.1.7600.16385              Remote Data Services ISAPI Library
    msadds.dll                 6.1.7600.16385              OLE DB Data Shape Provider
    msaddsr.dll                6.1.7600.16385               OLE DB Data Shape Provider Resources
    msader15.dll               6.1.7600.16385              ActiveX Data Objects Resources
    msado15.dll                6.1.7600.16385              ActiveX Data Objects
    msadomd.dll                6.1.7600.16385              ActiveX Data Objects (Multi-Dimensional)
    msador15.dll               6.1.7600.16385              Microsoft ActiveX Data Objects Recordset
    msadox.dll                 6.1.7600.16385              ActiveX Data Objects Extensions
    msadrh15.dll               6.1.7600.16385              ActiveX Data Objects Rowset Helper
    msafd.dll                  6.1.7600.16385              Microsoft Windows Sockets 2.0 Service Provider
    msasn1.dll                 6.1.7600.16415              ASN.1 Runtime APIs
    msaudite.dll               6.1.7600.16385                 
    mscandui.dll               6.1.7600.16385                MSCANDUI
    mscat32.dll                6.1.7600.16385              MSCAT32 Forwarder DLL
    msclmd.dll                 6.1.7600.16385              Microsoft Class Mini-driver
    mscms.dll                  6.1.7600.16385              DLL-    
    mscoree.dll                2.0.50727.4927              Microsoft .NET Runtime Execution Engine
    mscorier.dll               2.0.50727.4927               IE    Microsoft .NET
    mscories.dll               2.0.50727.4927              Microsoft .NET IE SECURITY REGISTRATION
    mscpx32r.dll               6.1.7600.16385              ODBC Code Page Translator Resources
    mscpxl32.dll               6.1.7600.16385                 ODBC
    msctf.dll                  6.1.7600.16385                MSCTF
    msctfmonitor.dll           6.1.7600.16385              MsCtfMonitor DLL
    msctfp.dll                 6.1.7600.16385              MSCTFP Server DLL
    msctfui.dll                6.1.7600.16385                MSCTFUI
    msdadc.dll                 6.1.7600.16385              OLE DB Data Conversion Stub
    msdadiag.dll               6.1.7600.16385              Built-In Diagnostics
    msdaenum.dll               6.1.7600.16385              OLE DB Root Enumerator Stub
    msdaer.dll                 6.1.7600.16385              OLE DB Error Collection Stub
    msdaora.dll                6.1.7600.16385              OLE DB Provider for Oracle
    msdaorar.dll               6.1.7600.16385              OLE DB Provider for Oracle Resources
    msdaosp.dll                6.1.7600.16385              OLE DB Simple Provider
    msdaprsr.dll               6.1.7600.16385                OLE DB Persistence Services
    msdaprst.dll               6.1.7600.16385              OLE DB Persistence Services
    msdaps.dll                 6.1.7600.16385              OLE DB Interface Proxies/Stubs
    msdarem.dll                6.1.7600.16385              OLE DB Remote Provider
    msdaremr.dll               6.1.7600.16385              OLE DB Remote Provider Resources
    msdart.dll                 6.1.7600.16385              OLE DB Runtime Routines
    msdasc.dll                 6.1.7600.16385              OLE DB Service Components Stub
    msdasql.dll                6.1.7600.16385              OLE DB Provider for ODBC Drivers
    msdasqlr.dll               6.1.7600.16385              OLE DB Provider for ODBC Drivers Resources
    msdatl3.dll                6.1.7600.16385              OLE DB Implementation Support Routines
    msdatt.dll                 6.1.7600.16385              OLE DB Temporary Table Services
    msdaurl.dll                6.1.7600.16385              OLE DB RootBinder Stub
    msdelta.dll                6.1.7600.16385              Microsoft Patch Engine
    msdfmap.dll                6.1.7600.16385              Data Factory Handler
    msdmo.dll                  6.6.7600.16385              DMO Runtime
    msdrm.dll                  6.1.7600.16385                 Windows
    msdtcprx.dll               2001.12.8530.16385          Microsoft Distributed Transaction Coordinator OLE Transactions Interface Proxy DLL
    msdtcuiu.dll               2001.12.8530.16385          Microsoft Distributed Transaction Coordinator Administrative DLL
    msdtcvsp1res.dll           2001.12.8530.16385               Vista SP1
    msexch40.dll               4.0.9756.0                  Microsoft Jet Exchange Isam
    msexcl40.dll               4.0.9756.0                  Microsoft Jet Excel Isam
    msfeeds.dll                8.0.7600.16385              Microsoft Feeds Manager
    msfeedsbs.dll              8.0.7600.16490                 ()
    msftedit.dll               5.41.21.2509                Rich Text Edit Control, v4.1
    mshtml.dll                 8.0.7600.16490                HTML Microsoft
    mshtmled.dll               8.0.7600.16385              Microsoft HTML Editing Component
    mshtmler.dll               8.0.7600.16385                  HTML (Microsoft)
    msi.dll                    5.0.7600.16385              Windows Installer
    msidcrl30.dll              6.1.7600.16385              IDCRL Dynamic Link Library
    msident.dll                6.1.7600.16385                (Microsoft)
    msidle.dll                 6.1.7600.16385              User Idle Monitor
    msidntld.dll               6.1.7600.16385                (Microsoft)
    msieftp.dll                6.1.7600.16385                Microsoft Internet Explorer  FTP
    msihnd.dll                 5.0.7600.16385              Windows installer
    msiltcfg.dll               5.0.7600.16385              Windows Installer Configuration API Stub
    msimg32.dll                6.1.7600.16385              GDIEXT Client DLL
    msimsg.dll                 5.0.7600.16385                 Windows
    msimtf.dll                 6.1.7600.16385              Active IMM Server DLL
    msisip.dll                 5.0.7600.16385              MSI Signature SIP Provider
    msjet40.dll                4.0.9756.0                  Microsoft Jet Engine Library
    msjetoledb40.dll           4.0.9756.0                  
    msjint40.dll               4.0.9756.0                       Microsoft Jet
    msjro.dll                  6.1.7600.16385              Jet and Replication Objects
    msjter40.dll               4.0.9756.0                  Microsoft Jet Database Engine Error DLL
    msjtes40.dll               4.0.9756.0                  Microsoft Jet Expression Service
    msls31.dll                 3.10.349.0                  Microsoft Line Services library file
    msltus40.dll               4.0.9756.0                  Microsoft Jet Lotus 1-2-3 Isam
    msmpeg2adec.dll            6.1.7140.0                  Microsoft DTV-DVD Audio Decoder
    msmpeg2enc.dll             6.1.7600.16385               Microsoft MPEG-2
    msmpeg2vdec.dll            6.1.7140.0                  Microsoft DTV-DVD Video Decoder
    msnetobj.dll               11.0.7600.16385             DRM ActiveX Network Object
    msobjs.dll                 6.1.7600.16385                 
    msoeacct.dll               6.1.7600.16385              Microsoft Internet Account Manager
    msoert2.dll                6.1.7600.16385              Microsoft Windows Mail RT Lib
    msorc32r.dll               6.1.7600.16385                ODBC  Oracle
    msorcl32.dll               6.1.7600.16385              ODBC Driver for Oracle
    mspatcha.dll               6.1.7600.16385              Microsoft File Patch Application API
    mspbde40.dll               4.0.9756.0                  Microsoft Jet Paradox Isam
    msports.dll                6.1.7600.16385                 
    msrating.dll               8.0.7600.16385                   
    msrd2x40.dll               4.0.9756.0                  Microsoft (R) Red ISAM
    msrd3x40.dll               4.0.9756.0                  Microsoft (R) Red ISAM
    msrdc.dll                  6.1.7600.16385              Remote Differential Compression COM server
    msrdpwebaccess.dll         6.1.7600.16385              Microsoft Remote Desktop Services Web Access Control
    msrepl40.dll               4.0.9756.0                  Microsoft Replication Library
    msrle32.dll                6.1.7600.16490              Microsoft RLE Compressor
    msscntrs.dll               7.0.7600.16385              msscntrs.dll
    msscp.dll                  11.0.7600.16385             Windows Media Secure Content Provider
    mssha.dll                  6.1.7600.16385                  Windows
    msshavmsg.dll              6.1.7600.16385                     Windows
    msshooks.dll               7.0.7600.16385              MSSHooks.dll
    mssign32.dll               6.1.7600.16385               API  
    mssip32.dll                6.1.7600.16385              MSSIP32 Forwarder DLL
    mssitlb.dll                7.0.7600.16385              mssitlb
    mssph.dll                  7.0.7600.16385                 Microsoft
    mssphtb.dll                7.0.7600.16385              Outlook MSSearch Connector
    mssprxy.dll                7.0.7600.16385              Microsoft Search Proxy
    mssrch.dll                 7.0.7600.16385              mssrch.dll
    mssvp.dll                  7.0.7600.16385               Vista MSSearch
    msswch.dll                 6.1.7600.16385              msswch
    mstask.dll                 6.1.7600.16385                 
    mstext40.dll               4.0.9756.0                  Microsoft Jet Text Isam
    mstime.dll                 8.0.7600.16385              Microsoft (R) Timed Interactive Multimedia Extensions to HTML
    mstscax.dll                6.1.7600.16385              ActiveX-    
    msutb.dll                  6.1.7600.16385               (DLL)  MSUTB
    msv1_0.dll                 6.1.7600.16420              Microsoft Authentication Package v1.0
    msvbvm60.dll               6.0.98.15                   Visual Basic Virtual Machine
    msvcirt.dll                7.0.7600.16385              Windows NT IOStreams DLL
    msvcp60.dll                7.0.7600.16385              Windows NT C++ Runtime Library DLL
    msvcrt.dll                 7.0.7600.16385              Windows NT CRT DLL
    msvcrt20.dll               2.12.0.0                    Microsoft C Runtime Library
    msvcrt40.dll               6.1.7600.16385              VC 4.x CRT DLL (Forwarded to msvcrt.dll)
    msvfw32.dll                6.1.7600.16385               Microsoft Video  Windows
    msvidc32.dll               6.1.7600.16490                Microsoft Video 1
    msvidctl.dll               6.5.7600.16385               ActiveX  
    mswdat10.dll               4.0.9756.0                  Microsoft Jet Sort Tables
    mswmdm.dll                 12.0.7600.16385               Windows Media Device Manager
    mswsock.dll                6.1.7600.16385                 API Microsoft Windows Sockets 2.0
    mswstr10.dll               4.0.9756.0                    Microsoft Jet
    msxactps.dll               6.1.7600.16385              OLE DB Transaction Proxies/Stubs
    msxbde40.dll               4.0.9756.0                  Microsoft Jet xBASE Isam
    msxml3.dll                 8.110.7600.16385            MSXML 3.0 SP11
    msxml3r.dll                8.110.7600.16385            XML Resources
    msxml6.dll                 6.30.7600.16385             MSXML 6.0 SP3
    msxml6r.dll                6.30.7600.16385             XML Resources
    msyuv.dll                  6.1.7600.16490              Microsoft UYVY Video Decompressor
    mtxclu.dll                 2001.12.8530.16385          Microsoft Distributed Transaction Coordinator Failover Clustering Support DLL
    mtxdm.dll                  2001.12.8530.16385          COM+
    mtxex.dll                  2001.12.8530.16385          COM+
    mtxlegih.dll               2001.12.8530.16385          COM+
    mtxoci.dll                 2001.12.8530.16385          Microsoft Distributed Transaction Coordinator Database Support DLL for Oracle
    muifontsetup.dll           6.1.7600.16385              MUI Callback for font registry settings
    mycomput.dll               6.1.7600.16385               
    mydocs.dll                 6.1.7600.16385                 " "
    napcrypt.dll               6.1.7600.16385              NAP Cryptographic API helper
    napdsnap.dll               6.1.7600.16385               GPEdit    
    naphlpr.dll                6.1.7600.16385              NAP client config API helper
    napinsp.dll                6.1.7600.16385                    
    napipsec.dll               6.1.7600.16385                      IPSec
    napmontr.dll               6.1.7600.16385                NAP  Netsh
    nativehooks.dll            6.1.7600.16385              Microsoft Narrator Native hook handler
    naturallanguage6.dll       6.1.7600.16385              Natural Language Development Platform 6
    ncdprop.dll                6.1.7600.16385                 
    nci.dll                    6.1.7600.16385              CoInstaller: NET
    ncobjapi.dll               6.1.7600.16385              Microsoft Windows Operating System
    ncrypt.dll                 6.1.7600.16385                (Windows)
    ncryptui.dll               6.1.7600.16385               UI     Windows
    ncsi.dll                   6.1.7600.16385                 
    nddeapi.dll                6.1.7600.16385              Network DDE Share Management APIs
    ndfapi.dll                 6.1.7600.16385              API    
    ndfetw.dll                 6.1.7600.16385              Network Diagnostic Engine Event Interface
    ndfhcdiscovery.dll         6.1.7600.16385              Network Diagnostic Framework HC Discovery API
    ndiscapcfg.dll             6.1.7600.16385              NdisCap Notify Object
    ndishc.dll                 6.1.7600.16385                NDIS
    ndproxystub.dll            6.1.7600.16385              Network Diagnostic Engine Proxy/Stub
    negoexts.dll               6.1.7600.16385              NegoExtender Security Package
    netapi32.dll               6.1.7600.16385              Net Win32 API DLL
    netbios.dll                6.1.7600.16385              NetBIOS Interface Library
    netcenter.dll              6.1.7600.16385                 -  
    netcfgx.dll                6.1.7600.16385                
    netcorehc.dll              6.1.7600.16385                   
    netdiagfx.dll              6.1.7600.16385                
    netevent.dll               6.1.7600.16385                
    netfxperf.dll              1.1.4322.573                netfxperf.lib
    neth.dll                   6.1.7600.16385                 
    netid.dll                  6.1.7600.16385                  
    netiohlp.dll               6.1.7600.16385               DLL   Netio
    netjoin.dll                6.1.7600.16385              Domain Join DLL
    netlogon.dll               6.1.7600.16385                 Net Logon
    netmsg.dll                 6.1.7600.16385                
    netplwiz.dll               6.1.7600.16385                   
    netprof.dll                6.1.7600.16385                 
    netprofm.dll               6.1.7600.16385                
    netshell.dll               6.1.7600.16385                
    netutils.dll               6.1.7600.16385              Net Win32 API Helpers DLL
    networkexplorer.dll        6.1.7600.16385               
    networkitemfactory.dll     6.1.7600.16385                
    networkmap.dll             6.1.7600.16385               
    newdev.dll                 6.0.5054.0                    
    nlaapi.dll                 6.1.7600.16385              Network Location Awareness 2
    nlhtml.dll                 2008.0.7600.16385            HTML
    nlmgp.dll                  6.1.7600.16385                 
    nlmsprep.dll               6.1.7600.16385              Network List Manager Sysprep Module
    nlsbres.dll                6.1.7600.16385              NLSBuild resource DLL
    nlsdata0000.dll            6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlsdata0001.dll            6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlsdata0002.dll            6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlsdata0003.dll            6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlsdata0007.dll            6.1.7600.16385              Microsoft German Natural Language Server Data and Code
    nlsdata0009.dll            6.1.7600.16385              Microsoft English Natural Language Server Data and Code
    nlsdata000a.dll            6.1.7600.16385              Microsoft Spanish Natural Language Server Data and Code
    nlsdata000c.dll            6.1.7600.16385              Microsoft French Natural Language Server Data and Code
    nlsdata000d.dll            6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlsdata000f.dll            6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlsdata0010.dll            6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlsdata0011.dll            6.1.7600.16385              Microsoft Japanese Natural Language Server Data and Code
    nlsdata0013.dll            6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlsdata0018.dll            6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlsdata0019.dll            6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlsdata001a.dll            6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlsdata001b.dll            6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlsdata001d.dll            6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlsdata0020.dll            6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlsdata0021.dll            6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlsdata0022.dll            6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlsdata0024.dll            6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlsdata0026.dll            6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlsdata0027.dll            6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlsdata002a.dll            6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlsdata0039.dll            6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlsdata003e.dll            6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlsdata0045.dll            6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlsdata0046.dll            6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlsdata0047.dll            6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlsdata0049.dll            6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlsdata004a.dll            6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlsdata004b.dll            6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlsdata004c.dll            6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlsdata004e.dll            6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlsdata0414.dll            6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlsdata0416.dll            6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlsdata0816.dll            6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlsdata081a.dll            6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlsdata0c1a.dll            6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlsdl.dll                  6.1.7600.16385              Nls Downlevel DLL
    nlslexicons0001.dll        6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons0002.dll        6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons0003.dll        6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons0007.dll        6.1.7600.16385              Microsoft German Natural Language Server Data and Code
    nlslexicons0009.dll        6.1.7600.16385              Microsoft English Natural Language Server Data and Code
    nlslexicons000a.dll        6.1.7600.16385              Microsoft Spanish Natural Language Server Data and Code
    nlslexicons000c.dll        6.1.7600.16385              Microsoft French Natural Language Server Data and Code
    nlslexicons000d.dll        6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons000f.dll        6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons0010.dll        6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons0011.dll        6.1.7600.16385              Microsoft Japanese Natural Language Server Data and Code
    nlslexicons0013.dll        6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons0018.dll        6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons0019.dll        6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons001a.dll        6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons001b.dll        6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons001d.dll        6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons0020.dll        6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons0021.dll        6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons0022.dll        6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons0024.dll        6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons0026.dll        6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons0027.dll        6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons002a.dll        6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons0039.dll        6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons003e.dll        6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons0045.dll        6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons0046.dll        6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons0047.dll        6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons0049.dll        6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons004a.dll        6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons004b.dll        6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons004c.dll        6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons004e.dll        6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons0414.dll        6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons0416.dll        6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons0816.dll        6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons081a.dll        6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlslexicons0c1a.dll        6.1.7600.16385              Microsoft Neutral Natural Language Server Data and Code
    nlsmodels0011.dll          6.1.7600.16385              Microsoft Japanese Natural Language Server Data and Code
    normaliz.dll               6.1.7600.16385              Unicode Normalization DLL
    npmproxy.dll               6.1.7600.16385              Network List Manager Proxy
    nshhttp.dll                6.1.7600.16385               DLL netsh  HTTP
    nshipsec.dll               6.1.7600.16385               DLL  IPSec  Net
    nshwfp.dll                 6.1.7600.16385                  Windows  Netsh
    nsi.dll                    6.1.7600.16385              NSI User-mode interface DLL
    ntdll.dll                  6.1.7600.16385                NT
    ntdsapi.dll                6.1.7600.16385              Active Directory Domain Services API
    ntlanman.dll               6.1.7600.16385              Microsoft LAN Manager
    ntlanui2.dll               6.1.7600.16385                  
    ntmarta.dll                6.1.7600.16385               Windows NT MARTA
    ntprint.dll                6.1.7600.16385                  
    ntshrui.dll                6.1.7600.16385               ,    
    ntvdm64.dll                6.1.7600.16491              16-   NT64
    nvapi.dll                  8.17.11.9621                NVIDIA NVAPI Library, Version 196.21 
    nvcompiler.dll             8.17.11.9621                NVIDIA Compatible Compiler, Version 196.21 
    nvcuda.dll                 8.17.11.9621                NVIDIA Compatible CUDA Driver, Version 196.21 
    nvcuvenc.dll               8.17.11.9621                NVIDIA CUDA Video Encoder, Version 196.21 
    nvcuvid.dll                8.17.11.9621                NVIDIA CUDA Video Decode API, Version 196.21 
    nvd3dum.dll                8.17.11.9621                NVIDIA Compatible Vista WDDM D3D Driver, Version 196.21 
    nvdecodemft.dll            8.17.11.9621                NVIDIA Video Decoder MFT, Version 196.21 
    nvencodemft.dll            8.17.11.9621                NVIDIA Video Encoder MFT, Version 196.21 
    nvoglv32.dll               8.17.11.9621                NVIDIA Compatible OpenGL ICD
    nvwgf2um.dll               8.17.11.9621                NVIDIA Compatible D3D10 Driver, Version 196.21 
    objsel.dll                 6.1.7600.16385                
    occache.dll                8.0.7600.16385                  
    ocsetapi.dll               6.1.7600.16385              Windows Optional Component Setup API
    odbc32.dll                 6.1.7600.16385              ODBC Driver Manager
    odbc32gt.dll               6.1.7600.16385              ODBC Driver Generic Thunk
    odbcbcp.dll                6.1.7600.16385              BCP for ODBC
    odbcconf.dll               6.1.7600.16385              ODBC Driver Configuration Program
    odbccp32.dll               6.1.7600.16385              ODBC Installer
    odbccr32.dll               6.1.7600.16385              ODBC Cursor Library
    odbccu32.dll               6.1.7600.16385              ODBC Cursor Library
    odbcint.dll                6.1.7600.16385              ODBC Resources
    odbcji32.dll               6.1.7600.16385              Microsoft ODBC Desktop Driver Pack 3.5
    odbcjt32.dll               6.1.7600.16385              Microsoft ODBC Desktop Driver Pack 3.5
    odbctrac.dll               6.1.7600.16385              ODBC Driver Manager Trace
    oddbse32.dll               6.1.7600.16385              ODBC (3.0) driver for DBase
    odexl32.dll                6.1.7600.16385              ODBC (3.0) driver for Excel
    odfox32.dll                6.1.7600.16385              ODBC (3.0) driver for FoxPro
    odpdx32.dll                6.1.7600.16385              ODBC (3.0) driver for Paradox
    odtext32.dll               6.1.7600.16385              ODBC (3.0) driver for text files
    offfilt.dll                2008.0.7600.16385            OFFICE
    ogldrv.dll                 6.1.7600.16385              MSOGL
    ole2.dll                   2.10.35.35                  OLE 2.1 16/32 Interoperability Library
    ole2disp.dll               2.10.3050.1                 OLE 2.1 16/32 Interoperability Library
    ole2nls.dll                2.10.3050.1                 OLE 2.1 16/32 Interoperability Library
    ole32.dll                  6.1.7600.16385              Microsoft OLE   Windows
    oleacc.dll                 7.0.0.0                     Active Accessibility Core Component
    oleacchooks.dll            7.0.0.0                     Active Accessibility Event Hooks Library
    oleaccrc.dll               7.0.0.0                     Active Accessibility Resource DLL
    oleaut32.dll               6.1.7600.16385              
    olecli32.dll               6.1.7600.16385                OLE
    oledb32.dll                6.1.7600.16385              OLE DB Core Services
    oledb32r.dll               6.1.7600.16385                 OLE DB
    oledlg.dll                 6.1.7600.16385                 OLE
    oleprn.dll                 6.1.7600.16385              Oleprn DLL
    olepro32.dll               6.1.7600.16385              
    oleres.dll                 6.1.7600.16385                OLE
    olesvr32.dll               6.1.7600.16385              Object Linking and Embedding Server Library
    olethk32.dll               6.1.7600.16385              Microsoft OLE for Windows
    onex.dll                   6.1.7600.16385                IEEE 802.1X
    onexui.dll                 6.1.7600.16385                 IEEE 802.1X
    onlineidcpl.dll            6.1.7600.16385                -  
    oobefldr.dll               6.1.7600.16385                
    opcservices.dll            6.1.7600.16385              Native Code OPC Services Library
    opencl.dll                 1.0.0.0                     OpenCL Client DLL
    opengl32.dll               6.1.7600.16385              OpenGL Client DLL
    osbaseln.dll               6.1.7600.16385              Service Reporting API
    osuninst.dll               6.1.7600.16385              Uninstall Interface
    p2p.dll                    6.1.7600.16385                
    p2pcollab.dll              6.1.7600.16385                  
    p2pgraph.dll               6.1.7600.16385              Peer-to-Peer Graphing
    p2pnetsh.dll               6.1.7600.16385                 NetSh
    packager.dll               6.1.7600.16385               2
    panmap.dll                 6.1.7600.16385              PANOSE(tm) Font Mapper
    pautoenr.dll               6.1.7600.16385                
    pcaui.dll                  6.1.7600.16385                  
    pcwum.dll                  6.1.7600.16385              Performance Counters for Windows Native DLL
    pdh.dll                    6.1.7600.16385                  Windows
    pdhui.dll                  6.1.7600.16385                
    peerdist.dll               6.1.7600.16385                BranchCache
    peerdistsh.dll             6.1.7600.16385                BranchCache Netshell
    perfcentercpl.dll          6.1.7600.16385               
    perfctrs.dll               6.1.7600.16385               
    perfdisk.dll               6.1.7600.16385                  Windows
    perfnet.dll                6.1.7600.16385                   Windows
    perfos.dll                 6.1.7600.16385                  Windows
    perfproc.dll               6.1.7600.16385                   Windows
    perfts.dll                 6.1.7600.16385              Windows Remote Desktop Services Performance Objects
    photometadatahandler.dll   6.1.7600.16385              Photo Metadata Handler
    photowiz.dll               6.1.7600.16385                
    pid.dll                    6.1.7600.16385              Microsoft PID
    pidgenx.dll                6.1.7600.16385              Pid Generation
    pifmgr.dll                 6.1.7600.16385              Windows NT PIF Manager Icon Resources Library
    pku2u.dll                  6.1.7600.16385              Pku2u Security Package
    pla.dll                    6.1.7600.16385                 
    playsndsrv.dll             6.1.7600.16385               PlaySound
    pngfilt.dll                8.0.7600.16385              IE PNG plugin image decoder
    pnidui.dll                 6.1.7600.16385                
    pnpsetup.dll               6.1.7600.16385              Pnp installer for CMI
    pnrpnsp.dll                6.1.7600.16385                 PNRP
    polstore.dll               6.1.7600.16385              Policy Storage dll
    portabledeviceapi.dll      6.1.7600.16385               API    Windows
    portabledeviceclassextension.dll  6.1.7600.16385              Windows Portable Device Class Extension Component
    portabledeviceconnectapi.dll  6.1.7600.16385              Portable Device Connection API Components
    portabledevicestatus.dll   6.1.7600.16385                  Microsoft Windows
    portabledevicesyncprovider.dll  6.1.7600.16385                 Microsoft Windows
    portabledevicetypes.dll    6.1.7600.16385              Windows Portable Device (Parameter) Types Component
    portabledevicewiacompat.dll  6.1.7600.16385              PortableDevice WIA Compatibility Driver
    portabledevicewmdrm.dll    6.1.7600.16385              Windows Portable Device WMDRM Component
    pots.dll                   6.1.7600.16385               
    powercpl.dll               6.1.7600.16385                
    powrprof.dll               6.1.7600.16385              DLL     
    presentationcffrasterizernative_v0300.dll  3.0.6920.4902               WinFX OpenType/CFF Rasterizer
    presentationhostproxy.dll  3.0.6920.4902               Windows Presentation Foundation Host Proxy
    presentationnative_v0300.dll  3.0.6920.4902               PresentationNative_v0300.dll
    prflbmsg.dll               6.1.7600.16385                  
    printui.dll                6.1.7600.16385                 
    prncache.dll               6.1.7600.16385              Print UI Cache
    prnfldr.dll                6.1.7600.16385              prnfldr dll
    prnntfy.dll                6.1.7600.16385              prnntfy DLL
    prntvpt.dll                6.1.7600.16385              Print Ticket Services Module
    profapi.dll                6.1.7600.16385              User Profile Basic API
    propsys.dll                7.0.7600.16385                 (Microsoft)
    provsvc.dll                6.1.7600.16385                Windows
    provthrd.dll               6.1.7600.16385              WMI Provider Thread & Log Library
    psapi.dll                  6.1.7600.16385              Process Status Helper
    psbase.dll                 6.1.7600.16385                
    pshed.dll                  6.1.7600.16385                ,   
    psisdecd.dll               6.6.7600.16485              Microsoft SI/PSI parser for MPEG2 based networks.
    pstorec.dll                6.1.7600.16385              Protected Storage COM interfaces
    pstorsvc.dll               6.1.7600.16385              Protected storage server
    puiapi.dll                 6.1.7600.16385               DLL puiapi
    puiobj.dll                 6.1.7600.16385               DLL  PrintUI
    pvsonydll.dll              0.9.3.1927                  PVSonyDl
    pwrshplugin.dll            6.1.7600.16385              pwrshplugin.dll
    qagent.dll                 6.1.7600.16385                
    qasf.dll                   12.0.7600.16385             DirectShow ASF Support
    qcap.dll                   6.6.7600.16385                DirecxX DirectShow.
    qcliprov.dll               6.1.7600.16385               WMI   
    qdv.dll                    6.6.7600.16385                DirecxX DirectShow.
    qdvd.dll                   6.6.7600.16385              DirectShow DVD PlayBack Runtime.
    qedit.dll                  6.6.7600.16385               DirectShow
    qedwipes.dll               6.6.7600.16385              DirectShow Editing SMPTE Wipes
    qmgrprxy.dll               7.5.7600.16385              Background Intelligent Transfer Service Proxy
    qshvhost.dll               6.1.7600.16385                SHV
    qsvrmgmt.dll               6.1.7600.16385                
    quartz.dll                 6.6.7600.16490                DirecxX DirectShow.
    query.dll                  6.1.7600.16385                  
    qutil.dll                  6.1.7600.16385                
    qwave.dll                  6.1.7600.16385              Windows NT
    racengn.dll                6.1.7600.16385                  
    racpldlg.dll               6.1.7600.16385                 
    radardt.dll                6.1.7600.16385                   Windows
    radarrs.dll                6.1.7600.16385                   Microsoft Windows
    rasadhlp.dll               6.1.7600.16385              Remote Access AutoDial Helper
    rasapi32.dll               6.1.7600.16385              Remote Access API
    rascfg.dll                 6.1.7600.16385                RAS
    raschap.dll                6.1.7600.16385                 PPP CHAP
    rasctrs.dll                6.1.7600.16385                     Windows NT
    rasdiag.dll                6.1.7600.16385                  RAS
    rasdlg.dll                 6.1.7600.16385              API     
    rasgcw.dll                 6.1.7600.16385                RAS
    rasman.dll                 6.1.7600.16385              Remote Access Connection Manager
    rasmm.dll                  6.1.7600.16385                RAS
    rasmontr.dll               6.1.7600.16385                RAS
    rasmxs.dll                 6.1.7600.16385              Remote Access Device DLL for modems, PADs and switches
    rasplap.dll                6.1.7600.16385                 RAS PLAP
    rasppp.dll                 6.1.7600.16385              Remote Access PPP
    rasser.dll                 6.1.7600.16385              Remote Access Media DLL for COM ports
    rastapi.dll                6.1.7600.16385              Remote Access TAPI Compliance Layer
    rastls.dll                 6.1.7600.16385                 PPP EAP-TLS
    rdpcore.dll                6.1.7600.16385              RDP Core DLL
    rdpd3d.dll                 6.1.7600.16385              RDP Direct3D Remoting DLL
    rdpencom.dll               6.1.7600.16385              RDPSRAPI COM Objects
    rdpendp.dll                6.1.7600.16385                 RDP
    rdprefdrvapi.dll           6.1.7600.16385              Reflector Driver API
    reagent.dll                6.1.7600.16385               DLL   Microsoft Windows
    regapi.dll                 6.1.7600.16385              Registry Configuration APIs
    regctrl.dll                6.1.7600.16385              RegCtrl
    remotepg.dll               6.1.7600.16385              CPL-  
    resampledmo.dll            6.1.7600.16385              Windows Media Resampler
    resutils.dll               6.1.7600.16385              Microsoft Cluster Resource Utility DLL
    rgb9rast.dll               6.1.7600.16385              Microsoft Windows Operating System
    riched20.dll               5.31.23.1229                Rich Text Edit Control, v3.1
    riched32.dll               6.1.7600.16385              Wrapper Dll for Richedit 1.0
    rnr20.dll                  6.1.7600.16385              Windows Socket2 NameSpace DLL
    rpcdiag.dll                6.1.7600.16385              RPC Diagnostics
    rpchttp.dll                6.1.7600.16385              RPC HTTP DLL
    rpcndfp.dll                1.0.0.1                        RPC NDF
    rpcns4.dll                 6.1.7600.16385                    (RPC)
    rpcnsh.dll                 6.1.7600.16385                RPC Netshell
    rpcrt4.dll                 6.1.7600.16385                 
    rpcrtremote.dll            6.1.7600.16385              Remote RPC Extension
    rsaenh.dll                 6.1.7600.16385              Microsoft Enhanced Cryptographic Provider
    rshx32.dll                 6.1.7600.16385                
    rstrtmgr.dll               6.1.7600.16385               
    rtffilt.dll                2008.0.7600.16385            RTF
    rtm.dll                    6.1.7600.16385                
    rtutils.dll                6.1.7600.16385              Routing Utilities
    samcli.dll                 6.1.7600.16385              Security Accounts Manager Client DLL
    samlib.dll                 6.1.7600.16385              SAM Library DLL
    sampleres.dll              6.1.7600.16385               (Microsoft)
    sas.dll                    6.1.7600.16385              WinLogon Software SAS Library
    sbe.dll                    6.6.7600.16385              DirectShow Stream Buffer Filter.
    sbeio.dll                  12.0.7600.16385             Stream Buffer IO DLL
    sberes.dll                 6.6.7600.16385                  DirectShow.
    scansetting.dll            6.1.7600.16385                    Microsoft Windows(TM)
    scarddlg.dll               6.1.7600.16385              SCardDlg -   -
    scecli.dll                 6.1.7600.16385                 
    scesrv.dll                 6.1.7600.16385                
    schannel.dll               6.1.7600.16385              TLS / SSL Security Provider
    schedcli.dll               6.1.7600.16385              Scheduler Service Client DLL
    scksp.dll                  6.1.7600.16385              Microsoft Smart Card Key Storage Provider
    scripto.dll                6.6.7600.16385              Microsoft ScriptO
    scrobj.dll                 5.8.7600.16385              Windows  Script Component Runtime
    scrptadm.dll               6.1.7600.16385                
    scrrun.dll                 5.8.7600.16385              Microsoft  Script Runtime
    sdiageng.dll               6.1.7600.16385                 
    sdiagprv.dll               6.1.7600.16385              API    Windows
    sdohlp.dll                 6.1.7600.16385                 SDO NPS
    searchfolder.dll           6.1.7600.16385              SearchFolder
    sechost.dll                6.1.7600.16385              Host for SCM/SDDL/LSA Lookup APIs
    secproc.dll                6.1.7600.16506              Windows Rights Management Desktop Security Processor
    secproc_isv.dll            6.1.7600.16506              Windows Rights Management Desktop Security Processor
    secproc_ssp.dll            6.1.7600.16506              Windows Rights Management Services Server Security Processor
    secproc_ssp_isv.dll        6.1.7600.16506              Windows Rights Management Services Server Security Processor (Pre-production)
    secur32.dll                6.1.7600.16385              Security Support Provider Interface
    security.dll               6.1.7600.16385              Security Support Provider Interface
    sendmail.dll               6.1.7600.16385               
    sens.dll                   6.1.7600.16385                   (SENS)
    sensapi.dll                6.1.7600.16385              SENS Connectivity API DLL
    sensorsapi.dll             6.1.7600.16385              Sensor API
    sensorscpl.dll             6.1.7600.16385                "    "
    serialui.dll               6.1.7600.16385                
    serwvdrv.dll               6.1.7600.16385                Unimodem
    sessenv.dll                6.1.7600.16385                   
    setupapi.dll               6.1.7600.16385              Windows Setup API
    setupcln.dll               6.1.7600.16385                
    sfc.dll                    6.1.7600.16385              Windows File Protection
    sfc_os.dll                 6.1.7600.16385              Windows File Protection
    shacct.dll                 6.1.7600.16385              Shell Accounts Classes
    shdocvw.dll                6.1.7600.16385                    
    shell32.dll                6.1.7600.16385                 Windows
    shellstyle.dll             6.1.7600.16385              Windows Shell Style Resource Dll
    shfolder.dll               6.1.7600.16385              Shell Folder Service
    shgina.dll                 6.1.7600.16385              Windows Shell User Logon
    shimeng.dll                6.1.7600.16385              Shim Engine DLL
    shimgvw.dll                6.1.7600.16385               
    shlwapi.dll                6.1.7600.16385                 
    shpafact.dll               6.1.7600.16385              Windows Shell LUA/PA Elevation Factory Dll
    shsetup.dll                6.1.7600.16385              Shell setup helper
    shsvcs.dll                 6.1.7600.16385               DLL   Windows
    shunimpl.dll               6.1.7600.16385              Windows Shell Obsolete APIs
    shwebsvc.dll               6.1.7600.16385              -  Windows
    signdrv.dll                6.1.7600.16385              WMI provider for Signed Drivers
    sirenacm.dll               14.0.8089.726               Messenger Audio Codec
    sisbkup.dll                6.1.7600.16385              Single-Instance Store Backup Support Functions
    slc.dll                    6.1.7600.16385              Software Licensing Client DLL
    slcext.dll                 6.1.7600.16385              Software Licensing Client Extension Dll
    slwga.dll                  6.1.7600.16385              Software Licensing WGA API
    smartcardcredentialprovider.dll  6.1.7600.16385                 - Windows
    smbhelperclass.dll         1.0.0.1                        SMB (   )    
    sndvolsso.dll              6.1.7600.16385               SCA 
    snmpapi.dll                6.1.7600.16385              SNMP Utility Library
    softkbd.dll                6.1.7600.16385                  
    softpub.dll                6.1.7600.16385              Softpub Forwarder DLL
    sortserver2003compat.dll   6.1.7600.16385              Sort Version Server 2003
    sortwindows6compat.dll     6.1.7600.16385              Sort Version Windows 6.0
    spbcd.dll                  6.1.7600.16385              BCD Sysprep Plugin
    spfileq.dll                6.1.7600.16385              Windows SPFILEQ
    spinf.dll                  6.1.7600.16385              Windows SPINF
    spnet.dll                  6.1.7600.16385              Net Sysprep Plugin
    spopk.dll                  6.1.7600.16385              OPK Sysprep Plugin
    spp.dll                    6.1.7600.16385                  Microsoft Windows
    sppc.dll                   6.1.7600.16385              Software Licensing Client DLL
    sppcc.dll                  6.1.7600.16385                  
    sppcext.dll                6.1.7600.16385              Software Protection Platform Client Extension Dll
    sppcomapi.dll              6.1.7600.16385                 
    sppcommdlg.dll             6.1.7600.16385              API     
    sppinst.dll                6.1.7600.16385              SPP CMI Installer Plug-in DLL
    sppwmi.dll                 6.1.7600.16385              Software Protection Platform WMI provider
    spwinsat.dll               6.1.7600.16385              WinSAT Sysprep Plugin
    spwizeng.dll               6.1.7600.16385              Setup Wizard Framework
    spwizimg.dll               6.1.7600.16385              Setup Wizard Framework Resources
    spwizres.dll               6.1.7600.16385                 
    spwmp.dll                  6.1.7600.16385              Windows Media Player System Preparation DLL
    sqlceoledb30.dll           3.0.7600.0                  Microsoft SQL Mobile
    sqlceqp30.dll              3.0.7600.0                  Microsoft SQL Mobile
    sqlcese30.dll              3.0.7600.0                  Microsoft SQL Mobile
    sqloledb.dll               6.1.7600.16385              OLE DB Provider for SQL Server
    sqlsrv32.dll               6.1.7600.16385              SQL Server ODBC Driver
    sqlunirl.dll               2000.80.728.0               String Function .DLL for SQL Enterprise Components
    sqlwid.dll                 1999.10.20.0                Unicode Function .DLL for SQL Enterprise Components
    sqlwoa.dll                 1999.10.20.0                Unicode/ANSI Function .DLL for SQL Enterprise Components
    sqlxmlx.dll                6.1.7600.16385              XML extensions for SQL Server
    sqmapi.dll                 6.1.7600.16385              SQM Client
    srchadmin.dll              7.0.7600.16385               
    srclient.dll               6.1.7600.16385              Microsoft Windows System Restore Client Library
    srhelper.dll               6.1.7600.16385              Microsoft Windows driver and windows update enumeration library
    srpuxnativesnapin.dll      6.1.7600.16385                     
    srvcli.dll                 6.1.7600.16385              Server Service Client DLL
    sscore.dll                 6.1.7600.16385               DLL-  
    ssdpapi.dll                6.1.7600.16385              SSDP Client API DLL
    sspicli.dll                6.1.7600.16385              Security Support Provider Interface
    ssshim.dll                 6.1.7600.16385              Windows Componentization Platform Servicing API
    stclient.dll               2001.12.8530.16385          COM+ Configuration Catalog Client
    sti.dll                    6.1.7600.16385                   
    stobject.dll               6.1.7600.16385                 Systray
    storage.dll                2.10.35.35                  OLE 2.1 16/32 Interoperability Library
    storagecontexthandler.dll  6.1.7600.16385                   
    storprop.dll               6.1.7600.16385                  
    structuredquery.dll        7.0.7600.16385              Structured Query
    sud.dll                    6.1.7600.16385                SUD
    sxproxy.dll                6.1.7600.16385                  Microsoft Windows
    sxs.dll                    6.1.7600.16385              Fusion 2.5
    sxshared.dll               6.1.7600.16385              Microsoft Windows SX Shared Library
    sxsstore.dll               6.1.7600.16385              Sxs Store DLL
    synccenter.dll             6.1.7600.16385                
    synceng.dll                6.1.7600.16385              Windows Briefcase Engine
    synchostps.dll             6.1.7600.16385              Proxystub for sync host
    syncinfrastructure.dll     6.1.7600.16385                Microsoft Windows.
    syncinfrastructureps.dll   6.1.7600.16385              Microsoft Windows sync infrastructure proxy stub.
    syncreg.dll                2007.94.7600.16385          Microsoft Synchronization Framework Registration
    syncui.dll                 6.1.7600.16385               Windows
    syssetup.dll               6.1.7600.16385              Windows NT System Setup
    systemcpl.dll              6.1.7600.16385              CPL 
    t2embed.dll                6.1.7600.16444              Microsoft T2Embed Font Embedding
    tapi3.dll                  6.1.7600.16385              Microsoft TAPI3
    tapi32.dll                 6.1.7600.16385               API  Microsoft Windows
    tapimigplugin.dll          6.1.7600.16385              Microsoft Windows(TM) TAPI Migration Plugin Dll
    tapiperf.dll               6.1.7600.16385              Microsoft Windows(TM) Telephony Performance Monitor
    tapisrv.dll                6.1.7600.16385                 Microsoft Windows
    tapisysprep.dll            6.1.7600.16385              Microsoft Windows(TM) Telephony Sysprep Work
    tapiui.dll                 6.1.7600.16385               DLL   Microsoft Windows
    taskcomp.dll               6.1.7600.16385                  
    taskschd.dll               6.1.7600.16385              Task Scheduler COM API
    taskschdps.dll             6.1.7600.16385              Task Scheduler Interfaces Proxy
    tbs.dll                    6.1.7600.16385              TBS
    tcpipcfg.dll               6.1.7600.16385                
    tdh.dll                    6.1.7600.16385                 
    termmgr.dll                6.1.7600.16385              Microsoft TAPI3 Terminal Manager
    thawbrkr.dll               6.1.7600.16385              Thai Word Breaker
    themecpl.dll               6.1.7600.16385              CPL 
    themeui.dll                6.1.7600.16385              API   Windows
    thumbcache.dll             6.1.7600.16385                
    timedatemuicallback.dll    6.1.7600.16385              Time Date Control UI Language Change plugin
    tlscsp.dll                 6.1.7600.16385              Microsoft Remote Desktop Services Cryptographic Utility
    tpmcompc.dll               6.1.7600.16385                
    tquery.dll                 7.0.7600.16385              tquery.dll
    traffic.dll                6.1.7600.16385              Microsoft Traffic Control 1.0 DLL
    trapi.dll                  6.1.7600.16385              Microsoft Narrator Text Renderer
    tsbyuv.dll                 6.1.7600.16490              Toshiba Video Codec
    tschannel.dll              6.1.7600.16385              Task Scheduler Proxy
    tsgqec.dll                 6.1.7600.16385                      
    tsmf.dll                   6.1.7600.16385                MF    
    tspkg.dll                  6.1.7600.16385              Web Service Security Package
    tsworkspace.dll            6.1.7600.16385                      RemoteApp
    tvratings.dll              6.6.7600.16385              Module for managing TV ratings
    twext.dll                  6.1.7600.16385              :  
    txflog.dll                 2001.12.8530.16385          COM+
    txfw32.dll                 6.1.7600.16385              TxF Win32 DLL
    typelib.dll                2.10.3029.1                 OLE 2.1 16/32 Interoperability Library
    tzres.dll                  6.1.7600.16518               DLL   
    ubpm.dll                   6.1.7600.16385               DLL    
    ucmhc.dll                  6.1.7600.16385                 UCM
    udhisapi.dll               6.1.7600.16385              UPnP Device Host ISAPI Extension
    uexfat.dll                 6.1.7600.16385              eXfat Utility DLL
    ufat.dll                   6.1.7600.16385              FAT Utility DLL
    uianimation.dll            6.1.7600.16385              Windows Animation Manager
    uiautomationcore.dll       7.0.0.0                        Microsoft UI
    uicom.dll                  6.1.7600.16385              Add/Remove Modems
    uiribbon.dll               6.1.7600.16385                Windows
    uiribbonres.dll            6.1.7600.16385              Windows Ribbon Framework Resources
    ulib.dll                   6.1.7600.16385              DLL   
    umdmxfrm.dll               6.1.7600.16385              Unimodem Tranform Module
    unimdmat.dll               6.1.7600.16385              - AT   Unimodem
    uniplat.dll                6.1.7600.16385              Unimodem AT Mini Driver Platform Driver for Windows NT
    unrar.dll                  3.92.100.40                 
    untfs.dll                  6.1.7600.16385              NTFS Utility DLL
    upnp.dll                   6.1.7600.16385              API   UPnP
    upnphost.dll               6.1.7600.16385                PNP-
    ureg.dll                   6.1.7600.16385              Registry Utility DLL
    url.dll                    8.0.7600.16385              Internet Shortcut Shell Extension DLL
    urlmon.dll                 8.0.7600.16490               OLE32  Win32
    usbceip.dll                6.1.7600.16385               USBCEIP
    usbperf.dll                6.1.7600.16385               DLL   USB
    usbui.dll                  6.1.7600.16385              USB UI Dll
    user32.dll                 6.1.7600.16385                 USER API Windows
    useraccountcontrolsettings.dll  6.1.7600.16385                  
    usercpl.dll                6.1.7600.16385                
    userenv.dll                6.1.7600.16385              Userenv
    usp10.dll                  1.626.7600.16385            Uniscribe Unicode script processor
    utildll.dll                6.1.7600.16385                WinStation
    uudf.dll                   6.1.7600.16385              UDF Utility DLL
    uxinit.dll                 6.1.7600.16385              Windows User Experience Session Initialization Dll
    uxlib.dll                  6.1.7600.16385              Setup Wizard Framework
    uxlibres.dll               6.1.7600.16385              UXLib Resources
    uxtheme.dll                6.1.7600.16385                UxTheme (Microsoft)
    van.dll                    6.1.7600.16385                
    vault.dll                  6.1.7600.16385                -  Windows
    vaultcli.dll               6.1.7600.16385              Credential Vault Client Library
    vbajet32.dll               6.0.1.9431                  Visual Basic for Applications Development Environment - Expression Service Loader
    vbscript.dll               5.8.7600.16385              Microsoft  VBScript
    vdmdbg.dll                 6.1.7600.16385              VDMDBG.DLL
    vds_ps.dll                 6.1.7600.16385              Microsoft Virtual Disk Service proxy/stub
    vdsbas.dll                 6.1.7600.16385                  
    vdsdyn.dll                 6.1.7600.16385                  VDS,  2.1.0.1
    vdsvd.dll                  6.1.7600.16385              VDS Virtual Disk Provider, Version 1.0
    verifier.dll               6.1.7600.16385              Standard application verifier provider dll
    version.dll                6.1.7600.16385              Version Checking and File Installation Libraries
    vfpodbc.dll                1.0.2.0                     vfpodbc
    vfwwdm32.dll               6.1.7600.16385               VfW MM Driver    WDM-
    vidreszr.dll               6.1.7600.16385              Windows Media Resizer
    virtdisk.dll               6.1.7600.16385              Virtual Disk API DLL
    vpnikeapi.dll              6.1.7600.16385              VPN IKE API's
    vss_ps.dll                 6.1.7600.16385              Microsoft Volume Shadow Copy Service proxy/stub
    vssapi.dll                 6.1.7600.16385              Microsoft Volume Shadow Copy Requestor/Writer Services API DLL
    vsstrace.dll               6.1.7600.16385                    Microsoft
    w32topl.dll                6.1.7600.16385              Windows NT Topology Maintenance Tool
    wab32.dll                  6.1.7600.16385              Microsoft (R) Contacts DLL
    wab32res.dll               6.1.7600.16385               Microsoft (R) DLL
    wabsyncprovider.dll        6.1.7600.16385                 Microsoft Windows
    wavemsp.dll                6.1.7600.16385              Microsoft Wave MSP
    wbemcomn.dll               6.1.7600.16385              WMI
    wcnapi.dll                 6.1.7600.16385              Windows Connect Now - API Helper DLL
    wcncsvc.dll                6.1.7600.16385                Windows -   
    wcneapauthproxy.dll        6.1.7600.16385              Windows Connect Now - WCN EAP Authenticator Proxy
    wcneappeerproxy.dll        6.1.7600.16385              Windows Connect Now - WCN EAP PEER Proxy
    wcnwiz.dll                 6.1.7600.16385                Windows Connect Now
    wcspluginservice.dll       6.1.7600.16385               DLL WcsPlugInService
    wdc.dll                    6.1.7600.16385               
    wdi.dll                    6.1.7600.16385                Windows
    wdigest.dll                6.1.7600.16385              Microsoft Digest Access
    wdscore.dll                6.1.7600.16385              Panther Engine Module
    webcheck.dll               8.0.7600.16385               -
    webclnt.dll                6.1.7600.16385               DLL - DAV
    webio.dll                  6.1.7600.16385              API    
    webservices.dll            6.1.7600.16385                - Windows
    wecapi.dll                 6.1.7600.16385              Event Collector Configuration API
    wer.dll                    6.1.7600.16385                  Windows
    werdiagcontroller.dll      6.1.7600.16385              WER Diagnostic Controller
    werui.dll                  6.1.7600.16385               DLL      Windows
    wevtapi.dll                6.1.7600.16385              API    
    wevtfwd.dll                6.1.7600.16385              WS-Management Event Forwarding Plug-in
    wfapigp.dll                6.1.7600.16385              Windows Firewall GPO Helper dll
    wfhc.dll                   6.1.7600.16385               Windows.   
    whealogr.dll               6.1.7600.16385                WHEA
    whhelper.dll               6.1.7600.16385              DLL     winHttp
    wiaaut.dll                 6.1.7600.16385               WIA-
    wiadefui.dll               6.1.7600.16385                  WIA
    wiadss.dll                 6.1.7600.16385               WIA -  TWAIN
    wiaextensionhost64.dll     6.1.7600.16385              WIA Extension Host for thunking APIs from 32-bit to 64-bit process
    wiascanprofiles.dll        6.1.7600.16385              Microsoft Windows ScanProfiles
    wiashext.dll               6.1.7600.16385                     
    wiatrace.dll               6.1.7600.16385              WIA Tracing
    wiavideo.dll               6.1.7600.16385              WIA Video
    wimgapi.dll                6.1.7600.16385               Windows Imaging
    win32spl.dll               6.1.7600.16385                    
    winbio.dll                 6.1.7600.16385              API   Windows
    winbrand.dll               6.1.7600.16385              Windows Branding Resources
    wincredprovider.dll        6.1.7600.16385               DLL wincredprovider
    windowscodecs.dll          6.1.7600.16385              Microsoft Windows Codecs Library
    windowscodecsext.dll       6.1.7600.16385              Microsoft Windows Codecs Extended Library
    winfax.dll                 6.1.7600.16385              Microsoft  Fax API Support DLL
    winhttp.dll                6.1.7600.16385               HTTP Windows
    wininet.dll                8.0.7600.16490                 Win32
    winipsec.dll               6.1.7600.16385              Windows IPsec SPD Client DLL
    winmm.dll                  6.1.7600.16385              MCI API DLL
    winnsi.dll                 6.1.7600.16385              Network Store Information RPC interface
    winrnr.dll                 6.1.7600.16385              LDAP RnR Provider DLL
    winrscmd.dll               6.1.7600.16385              remtsvc
    winrsmgr.dll               6.1.7600.16385              WSMan Shell API
    winrssrv.dll               6.1.7600.16385              winrssrv
    winsatapi.dll              6.1.7600.16385              Windows System Assessment Tool API
    winscard.dll               6.1.7600.16385              API - (Microsoft)
    winshfhc.dll               6.1.7600.16385              File Risk Estimation
    winsockhc.dll              6.1.7600.16385                   Winsock
    winsrpc.dll                6.1.7600.16385              WINS RPC LIBRARY
    winsta.dll                 6.1.7600.16385              Winstation Library
    winsync.dll                2007.94.7600.16385          Synchronization Framework
    winsyncmetastore.dll       2007.94.7600.16385          Windows Synchronization Metadata Store
    winsyncproviders.dll       2007.94.7600.16385          Windows Synchronization Provider Framework
    wintrust.dll               6.1.7600.16385              Microsoft Trust Verification APIs
    winusb.dll                 6.1.7600.16385              Windows USB Driver User Library
    wkscli.dll                 6.1.7600.16385              Workstation Service Client DLL
    wksprtps.dll               6.1.7600.16385              WorkspaceRuntime ProxyStub DLL
    wlanapi.dll                6.1.7600.16385              Windows WLAN AutoConfig Client Side API DLL
    wlancfg.dll                6.1.7600.16385               DLL    Netsh  WLAN
    wlanconn.dll               6.1.7600.16385                Dot11
    wlandlg.dll                6.1.7600.16385                   
    wlangpui.dll               6.1.7600.16385               "   "
    wlanhlp.dll                6.1.7600.16385              Windows Wireless LAN 802.11 Client Side Helper API
    wlaninst.dll               6.1.7600.16385              Windows NET Device Class Co-Installer for Wireless LAN
    wlanmm.dll                 6.1.7600.16385                Dot11   
    wlanmsm.dll                6.1.7600.16385              Windows Wireless LAN 802.11 MSM DLL
    wlanpref.dll               6.1.7600.16385                
    wlansec.dll                6.1.7600.16385              Windows Wireless LAN 802.11 MSM Security Module DLL
    wlanui.dll                 6.1.7600.16385                 
    wlanutil.dll               6.1.7600.16385               DLL     Windows   802.11
    wldap32.dll                6.1.7600.16385              Win32 LDAP API DLL
    wlgpclnt.dll               6.1.7600.16385                 802.11
    wls0wndh.dll               6.1.7600.16385              Session0 Viewer Window Hook DLL
    wmadmod.dll                6.1.7600.16385              Windows Media Audio Decoder
    wmadmoe.dll                6.1.7600.16385              Windows Media Audio 10 Encoder/Transcoder
    wmasf.dll                  12.0.7600.16385             Windows Media ASF DLL
    wmcodecdspps.dll           6.1.7600.16385              Windows Media CodecDSP Proxy Stub Dll
    wmdmlog.dll                12.0.7600.16385             Windows Media Device Manager Logger
    wmdmps.dll                 12.0.7600.16385             Windows Media Device Manager Proxy Stub
    wmdrmdev.dll               12.0.7600.16385             Windows Media DRM for Network Devices Registration DLL
    wmdrmnet.dll               12.0.7600.16385             Windows Media DRM for Network Devices DLL
    wmdrmsdk.dll               11.0.7600.16385             Windows Media DRM SDK DLL
    wmerror.dll                12.0.7600.16385               Windows Media ()
    wmi.dll                    6.1.7600.16385              WMI DC and DP functionality
    wmidx.dll                  12.0.7600.16385             Windows Media Indexer DLL
    wmiprop.dll                6.1.7600.16385                  WDM
    wmnetmgr.dll               12.0.7600.16385             Windows Media Network Plugin Manager DLL
    wmp.dll                    12.0.7600.16415             Windows Media Player
    wmpcm.dll                  12.0.7600.16385             Windows Media Player Compositing Mixer
    wmpdui.dll                 12.0.7600.16385             Windows Media Player UI Engine
    wmpdxm.dll                 12.0.7600.16385             Windows Media Player Extension
    wmpeffects.dll             12.0.7600.16385             Windows Media Player Effects
    wmpencen.dll               12.0.7600.16385             Windows Media Player Encoding Module
    wmphoto.dll                6.1.7600.16385               Windows Media
    wmploc.dll                 12.0.7600.16415               Windows Media
    wmpmde.dll                 12.0.7600.16385             WMPMDE DLL
    wmpps.dll                  12.0.7600.16385             Windows Media Player Proxy Stub Dll
    wmpshell.dll               12.0.7600.16385                Windows Media
    wmpsrcwp.dll               12.0.7600.16385             WMPSrcWp Module
    wmsgapi.dll                6.1.7600.16385              WinLogon IPC Client
    wmspdmod.dll               6.1.7600.16385              Windows Media Audio Voice Decoder
    wmspdmoe.dll               6.1.7600.16385              Windows Media Audio Voice Encoder
    wmvcore.dll                12.0.7600.16385             Windows Media Playback/Authoring DLL
    wmvdecod.dll               6.1.7600.16385              Windows Media Video Decoder
    wmvdspa.dll                6.1.7600.16385              Windows Media Video DSP Components - Advanced
    wmvencod.dll               6.1.7600.16385              Windows Media Video 9 Encoder
    wmvsdecd.dll               6.1.7600.16385              Windows Media Screen Decoder
    wmvsencd.dll               6.1.7600.16385              Windows Media Screen Encoder
    wmvxencd.dll               6.1.7600.16385              Windows Media Video Encoder
    wow32.dll                  6.1.7600.16491              Wow32
    wpc.dll                    1.0.0.1                        
    wpcao.dll                  6.1.7600.16385                WPC
    wpcsvc.dll                 1.0.0.1                         Windows
    wpdshext.dll               6.1.7600.16385                  
    wpdshserviceobj.dll        6.1.7600.16385              Windows Portable Device Shell Service Object
    wpdsp.dll                  6.1.7600.16385              WMDM Service Provider for Windows Portable Devices
    wpdwcn.dll                 6.1.7600.16385                    WCN
    ws2_32.dll                 6.1.7600.16385              32-  Windows Socket 2.0
    ws2help.dll                6.1.7600.16385              Windows Socket 2.0 Helper for Windows NT
    wscapi.dll                 6.1.7600.16385              Windows Security Center API
    wscinterop.dll             6.1.7600.16385              Windows Health Center WSC Interop
    wscisvif.dll               6.1.7600.16385              Windows Security Center ISV API
    wscmisetup.dll             6.1.7600.16385              Installers for Winsock Transport and Name Space Providers
    wscproxystub.dll           6.1.7600.16385              Windows Security Center ISV Proxy Stub
    wsdapi.dll                 6.1.7600.16385              -   DLL API- 
    wsdchngr.dll               6.1.7600.16385              WSD Challenge Component
    wsecedit.dll               6.1.7600.16385                 
    wshbth.dll                 6.1.7600.16385              Windows Sockets Helper DLL
    wshcon.dll                 5.8.7600.16385              Microsoft  Windows Script Controller
    wshelper.dll               6.1.7600.16385               DLL    Winsock Net
    wshext.dll                 5.8.7600.16385              Microsoft  Shell Extension for Windows Script Host
    wship6.dll                 6.1.7600.16385               DLL  Winsock2 (TL/IPv6)
    wshirda.dll                6.1.7600.16385              Windows Sockets Helper DLL
    wshqos.dll                 6.1.7600.16385               DLL   QoS Winsock2
    wshrm.dll                  6.1.7600.16385                DLL   Windows  PGM
    wshtcpip.dll               6.1.7600.16385               DLL   Winsock2 (TL/IPv4)
    wsmanmigrationplugin.dll   6.1.7600.16385              WinRM Migration Plugin
    wsmauto.dll                6.1.7600.16385              WSMAN Automation
    wsmplpxy.dll               6.1.7600.16385              wsmplpxy
    wsmres.dll                 6.1.7600.16385               DLL  WSMan
    wsmsvc.dll                 6.1.7600.16385               WSMan
    wsmwmipl.dll               6.1.7600.16385              WSMAN WMI Provider
    wsnmp32.dll                6.1.7600.16385              Microsoft WinSNMP v2.0 Manager API
    wsock32.dll                6.1.7600.16385              Windows Socket 32-Bit DLL
    wtsapi32.dll               6.1.7600.16385              Windows Remote Desktop Session Host Server SDK APIs
    wuapi.dll                  7.3.7600.16385              API    Windows
    wudriver.dll               7.3.7600.16385              Windows Update WUDriver Stub
    wups.dll                   7.3.7600.16385              Windows Update client proxy stub
    wuwebv.dll                 7.3.7600.16385              Windows Update Vista Web Control
    wvc.dll                    6.1.7600.16385              Windows Visual Components
    wwanapi.dll                6.1.7600.16385              Mbnapi
    wwapi.dll                  8.1.2.0                     WWAN API
    wzcdlg.dll                 6.1.7600.16385              Windows Connect Now - Flash Config Enrollee
    xinput9_1_0.dll            6.1.7600.16385                XNA
    xmlfilter.dll              2008.0.7600.16385            XML
    xmllite.dll                1.3.1000.0                  Microsoft XmlLite Library
    xmlprovi.dll               6.1.7600.16385              Network Provisioning Service Client API
    xolehlp.dll                2001.12.8530.16385          Microsoft Distributed Transaction Coordinator Helper APIs DLL
    xpsfilt.dll                6.1.7600.16385              XML Paper Specification Document IFilter
    xpsgdiconverter.dll        6.1.7600.16385              XPS to GDI Converter
    xpsprint.dll               6.1.7600.16385              XPS Printing DLL
    xpsrasterservice.dll       6.1.7600.16385              XPS Rasterization Service Component
    xpsservices.dll            6.1.7600.16385              Xps Object Model in memory creation and deserialization
    xpsshhdr.dll               6.1.7600.16385              Package Document Shell Extension Handler
    xpssvcs.dll                6.1.7600.16385              Native Code Xps Services Library
    xraidapi.dll               1.17.33.0                   JMB36X RAID API Dynamic Link Library
    xvidcore.dll                                           
    xvidvfw.dll                                            
    xwizards.dll               6.1.7600.16385                 
    xwreg.dll                  6.1.7600.16385              Extensible Wizard Registration Manager Module
    xwtpdui.dll                6.1.7600.16385                   DUI
    xwtpw32.dll                6.1.7600.16385                   Win32
    yv12vfw.dll                1.2.0.0                     Helix YV12 YUV Codec
    zipfldr.dll                6.1.7600.16385               ZIP-


--------[   ]------------------------------------------------------------------------------------------------

     :
                         17.03.2010 10:45:22
                           17.03.2010 10:48:00
                                            17.03.2010 11:44:17
                                             3391  (0 ., 0 , 56 , 31 )

      :
                                     16.03.2010 11:04:45
                            16.03.2010 11:03:40
                                        15104  (0 ., 4 , 11 , 44 )
                                       365235  (4 ., 5 , 27 , 15 )
                                  5774  (0 ., 1 , 36 , 14 )
                                 60384  (0 ., 16 , 46 , 24 )
                                       21
                                3.97%

      (" "):
                                              0

    :
                                                    


--------[   ]-----------------------------------------------------------------------------------------------

    Users                                                                              C:\Users
    ADMIN$                                   Remote Admin                              C:\Windows
    C$                                       Default share                             C:\
    D$                                       Default share                             D:\
    IPC$                            IPC           Remote IPC                                


--------[  ]------------------------------------------------------------------------------------------------

       :
                                          
                                             AJEKC-PC
                              
                      
      ./.                      0 / 42 .
                                  0 
                                     
                                       
                                30 
                                30 


--------[    ]----------------------------------------------------------------------------------------------

    AJEKC                                         AJEKC-PC                  AJEKC-PC
    AJEKC                                         AJEKC-PC                  AJEKC-PC


--------[  ]------------------------------------------------------------------------------------------------

  [ Administrator ]

     :
                                         Administrator
                                               Administrator
                                             Built-in account for administering the computer/domain
                                               HomeUsers; Administrators
                                     1
                                           -

     :
                         
                                     
                             
                                  
                                         
                                      
                            

  [ AJEKC ]

     :
                                         AJEKC
                                               AJEKC
                                               HomeUsers; Administrators
                                     17
                                           -

     :
                         
                                     
                             
                                  
                                         
                                      
                            

  [ Guest ]

     :
                                         Guest
                                               Guest
                                             Built-in account for guest access to the computer/domain
                                               Guests
                                     0
                                           -

     :
                         
                                     
                             
                                  
                                         
                                      
                            

  [ HomeGroupUser$ ]

     :
                                         HomeGroupUser$
                                               HomeGroupUser$
                                             Built-in account for homegroup access to the computer
                                               HomeUsers
                                     0
                                           -

     :
                         
                                     
                             
                                  
                                         
                                      
                            


--------[   ]--------------------------------------------------------------------------------------------

  [ Administrators ]

      :
                                             Administrators have complete and unrestricted access to the computer/domain

     :
      Administrator                                     
      AJEKC                                             

  [ Backup Operators ]

      :
                                             Backup Operators can override security restrictions for the sole purpose of backing up or restoring files

  [ Cryptographic Operators ]

      :
                                             Members are authorized to perform cryptographic operations.

  [ Distributed COM Users ]

      :
                                             Members are allowed to launch, activate and use Distributed COM objects on this machine.

  [ Event Log Readers ]

      :
                                             Members of this group can read event logs from local machine

  [ Guests ]

      :
                                             Guests have the same access as members of the Users group by default, except for the Guest account which is further restricted

     :
      Guest                                             

  [ HomeUsers ]

      :
                                             HomeUsers Security Group

     :
      Administrator                                     
      AJEKC                                             
      HomeGroupUser$                                    HomeGroupUser$

  [ IIS_IUSRS ]

      :
                                             Built-in group used by Internet Information Services.

     :
      IUSR                                              

  [ Network Configuration Operators ]

      :
                                             Members in this group can have some administrative privileges to manage configuration of networking features

  [ Performance Log Users ]

      :
                                             Members of this group may schedule logging of performance counters, enable trace providers, and collect event traces both locally and via remote access to this computer

  [ Performance Monitor Users ]

      :
                                             Members of this group can access performance counter data locally and remotely

  [ Power Users ]

      :
                                             Power Users are included for backwards compatibility and possess limited administrative powers

  [ Remote Desktop Users ]

      :
                                             Members in this group are granted the right to logon remotely

  [ Replicator ]

      :
                                             Supports file replication in a domain

  [ Users ]

      :
                                             Users are prevented from making accidental or intentional system-wide changes and can run most applications

     :
      Authenticated Users                               
      INTERACTIVE                                       


--------[   ]-------------------------------------------------------------------------------------------

  [ None ]

      :
                                             Ordinary users

     :
      Administrator                                     
      AJEKC                                             
      Guest                                             
      HomeGroupUser$                                    HomeGroupUser$


--------[  Windows ]-----------------------------------------------------------------------------------------------

  [ NVIDIA GeForce 9800 GT ]

     :
                                      NVIDIA GeForce 9800 GT
                                          GeForce 9800 GT
       BIOS                                       Version 62.92.53.0.0
                                      GeForce 9800 GT
       DAC                                           Integrated RAMDAC
                                            11.01.2010
                                          8.17.11.9621 - nVIDIA ForceWare 196.21
                                       NVIDIA
                                           1024 

     :
      nvd3dumx                                          8.17.11.9621
      nvwgf2umx                                         8.17.11.9621
      nvwgf2umx                                         8.17.11.9621
      nvd3dum                                           8.17.11.9621 - nVIDIA ForceWare 196.21
      nvwgf2um                                          8.17.11.9621
      nvwgf2um                                          8.17.11.9621

     :
                                                   NVIDIA Corporation
                                     http://www.nvidia.com/page/products.html
                                       http://www.nvidia.com/content/drivers/drivers.asp
                                     http://driveragent.com?ref=59

  [ NVIDIA GeForce 9800 GT ]

     :
                                      NVIDIA GeForce 9800 GT
                                          GeForce 9800 GT
       BIOS                                       Version 62.92.53.0.0
                                      GeForce 9800 GT
       DAC                                           Integrated RAMDAC
                                            11.01.2010
                                          8.17.11.9621 - nVIDIA ForceWare 196.21
                                       NVIDIA
                                           1024 

     :
      nvd3dumx                                          8.17.11.9621
      nvwgf2umx                                         8.17.11.9621
      nvwgf2umx                                         8.17.11.9621
      nvd3dum                                           8.17.11.9621 - nVIDIA ForceWare 196.21
      nvwgf2um                                          8.17.11.9621
      nvwgf2um                                          8.17.11.9621

     :
                                                   NVIDIA Corporation
                                     http://www.nvidia.com/page/products.html
                                       http://www.nvidia.com/content/drivers/drivers.asp
                                     http://driveragent.com?ref=59


--------[  PCI / AGP ]---------------------------------------------------------------------------------------------

    nVIDIA GeForce 9800 GT (Asus EN9800GT)                                            
    nVIDIA GeForce 9800 GT                                                            3D-


--------[   ]---------------------------------------------------------------------------------------

  [ PCI Express 2.0 x16: Asus EN9800GT ]

      :
                                            Asus EN9800GT
       BIOS                                       62.92.53.00
                                       G92GT
      PCI-                                    10DE-0605 / 1043-82A0  (Rev A2)
                                       754 .
                                  55 nm
                                                 PCI Express 2.0 x16 @ x16
                                           1 
        (Geometric Domain)                     602   (: 600 MHz)
        (Shader Domain)                        1512   (: 1500 MHz)
       RAMDAC                                    400 
                                     16
      TMU                                     1
                                     112  (v4.0)
        DirectX                      DirectX v10
                            9632 /
                            [ TRIAL VERSION ]

      :
                                                 GDDR3
                                              256 
                                         900  (DDR)  (: 900 MHz)
                                      1800 
                                   [ TRIAL VERSION ]

      :
                                                   NVIDIA Corporation
                                     http://www.nvidia.com/page/products.html
                                       http://www.nvidia.com/content/drivers/drivers.asp
                                     http://driveragent.com?ref=59

    nVIDIA GPU Registers:
      nv-000000                                         092280A2
      nv-0010F0                                         00000000
      nv-001218                                         00000000
      nv-001540                                         F30F00F7
      nv-0015F4                                         00000000
      nv-0015F8                                         00000000
      nv-0015FC                                         00000000
      nv-001600                                         00000000
      nv-001850                                         00000000
      nv-004000                                         00000000
      nv-004004                                         00000000
      nv-004008                                         8018E400
      nv-00400C                                         00001903
      nv-004018                                         00001200
      nv-00401C                                         00001C03
      nv-004020                                         80000000
      nv-004024                                         00001C02
      nv-004028                                         A0000000
      nv-00402C                                         00002707
      nv-00C040                                         2E80DBB3
      nv-00E114                                         00001047
      nv-00E118                                         000005B2
      nv-00E11C                                         00000001
      nv-00E120                                         00000000
      nv-020008                                         C0083788
      nv-020014                                         FE5B0384
      nv-020400                                         0000003A
      nv-100000                                         0000C042
      nv-100200                                         01001000
      nv-10020C                                         40000000
      nv-100214                                         00002222
      nv-100474                                         00000000
      nv-100714                                         00033122
      nv-100914                                         00000000
      nv-101000                                         8F42948E

  [ nVIDIA SLI ]

    nVIDIA SLI:
       SLI                                        


--------[  ]-----------------------------------------------------------------------------------------------------

  [ Samsung SyncMaster 940N/MagicSyncMaster CX915N/CX916N/CX917N ]

     :
                                             Samsung SyncMaster 940N/MagicSyncMaster CX915N/CX916N/CX917N
      ID                                        SAM01E1
                                                  SyncMaster
                                             19" LCD (SXGA)
                                              16 / 2007
                                           HS4P418472
      .                         38 cm x 30 cm (19.1")
                                       5:4
                                            30 - 81 
                                           56 - 75 
      Maximum Pixel Clock                               750 
                                  1280 x 1024
                                                   2.20
        DPMS                        Active-Off

     :
      640 x 480                                         75 
      800 x 480                                         75 
      800 x 600                                         75 
      1024 x 600                                        75 
      1024 x 768                                        75 
      1152 x 864                                        75 
      1280 x 720                                        75 
      1280 x 768                                        75 
      1280 x 800                                        75 
      1280 x 1024                                       75 

     :
                                                   Samsung
                                     http://www.samsung.com/us/consumer/type/type.do?group=computersperipherals&type=monitors
                                       http://www.samsung.com/us/support/download/supportDownMain.do
                                     http://driveragent.com?ref=59


--------[   ]------------------------------------------------------------------------------------------------

      :
                                     
                                              1280 x 1024
                                            32 
                                       1
                                        96 dpi
        /                         36 / 36
                                     51
                                      75 
                                    C:\Users\AJEKC\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg

      :
       -                             
                                              
                                      
                              
      ClearType                                         
             
                                
                                  
                                      
                                  
                                 
                                            
                                   
       /           
                                           
                              
                               
                            
                              
      Windows Aero                                      
       Windows Plus!                               


--------[  ]-----------------------------------------------------------------------------------------------

    \\.\DISPLAY1           (0,0)          (1280,1024)


--------[  ]-------------------------------------------------------------------------------------------------

    640 x 480           8   59 Hz
    640 x 480           8   60 Hz
    [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]
    640 x 480           8   75 Hz
    640 x 480          16   59 Hz
    [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]
    640 x 480          16   72 Hz
    640 x 480          16   75 Hz
    [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]
    640 x 480          32   60 Hz
    640 x 480          32   72 Hz
    [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]
    720 x 480           8   56 Hz
    720 x 480           8   56 Hz
    [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]
    720 x 480           8   60 Hz
    720 x 480           8   60 Hz
    [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]
    720 x 480           8   72 Hz
    720 x 480           8   72 Hz
    [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]
    720 x 480           8   75 Hz
    720 x 480           8   75 Hz
    [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]
    720 x 480          16   56 Hz
    720 x 480          16   56 Hz
    [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]
    720 x 480          16   60 Hz
    720 x 480          16   60 Hz
    [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]
    720 x 480          16   72 Hz
    720 x 480          16   72 Hz
    [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]
    720 x 480          16   75 Hz
    720 x 480          16   75 Hz
    [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]
    720 x 480          32   56 Hz
    720 x 480          32   56 Hz
    [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]
    720 x 480          32   60 Hz
    720 x 480          32   60 Hz
    [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]
    720 x 480          32   72 Hz
    720 x 480          32   72 Hz
    [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]
    720 x 480          32   75 Hz
    720 x 480          32   75 Hz
    [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]
    720 x 576           8   56 Hz
    720 x 576           8   56 Hz
    [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]
    720 x 576           8   60 Hz
    720 x 576           8   60 Hz
    [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]
    720 x 576           8   72 Hz
    720 x 576           8   72 Hz
    [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]
    720 x 576           8   75 Hz
    720 x 576           8   75 Hz
    [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]
    720 x 576          16   56 Hz
    720 x 576          16   56 Hz
    [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]
    720 x 576          16   60 Hz
    720 x 576          16   60 Hz
    [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]
    720 x 576          16   72 Hz
    720 x 576          16   72 Hz
    [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]
    720 x 576          16   75 Hz
    720 x 576          16   75 Hz
    [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]
    720 x 576          32   56 Hz
    720 x 576          32   56 Hz
    [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]
    720 x 576          32   60 Hz
    720 x 576          32   60 Hz
    [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]
    720 x 576          32   72 Hz
    720 x 576          32   72 Hz
    [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]
    720 x 576          32   75 Hz
    720 x 576          32   75 Hz
    [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]
    800 x 600           8   56 Hz
    800 x 600           8   60 Hz
    [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]
    800 x 600           8   75 Hz
    800 x 600          16   56 Hz
    [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]
    800 x 600          16   72 Hz
    800 x 600          16   75 Hz
    [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]
    800 x 600          32   60 Hz
    800 x 600          32   72 Hz
    [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]
    1024 x 768          8   60 Hz
    1024 x 768          8   70 Hz
    [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]
    1024 x 768         16   60 Hz
    1024 x 768         16   70 Hz
    [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]
    1024 x 768         32   60 Hz
    1024 x 768         32   70 Hz
    [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]
    1152 x 864          8   75 Hz
    1152 x 864         16   75 Hz
    [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]
    1280 x 720          8   60 Hz
    1280 x 720          8   60 Hz
    [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]
    1280 x 720         16   60 Hz
    1280 x 720         16   60 Hz
    [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]
    1280 x 720         32   60 Hz
    1280 x 720         32   60 Hz
    [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]
    1280 x 768          8   60 Hz
    1280 x 768          8   60 Hz
    [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]
    1280 x 768         16   60 Hz
    1280 x 768         16   60 Hz
    [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]
    1280 x 768         32   60 Hz
    1280 x 768         32   60 Hz
    [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]
    1280 x 800          8   60 Hz
    1280 x 800          8   60 Hz
    [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]
    1280 x 800         16   60 Hz
    1280 x 800         16   60 Hz
    [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]
    1280 x 800         32   60 Hz
    1280 x 800         32   60 Hz
    [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]
    1280 x 960          8   60 Hz
    1280 x 960         16   60 Hz
    [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]
    1280 x 1024         8   60 Hz
    1280 x 1024         8   75 Hz
    [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]
    1280 x 1024        16   75 Hz
    1280 x 1024        32   60 Hz
    [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]


--------[ GPGPU ]-------------------------------------------------------------------------------------------------------

  [ CUDA: GeForce 9800 GT ]

     :
                                           GeForce 9800 GT
                                                 1500 
      /                             14 / 112
      Max Threads Per Block                             512
      Max Registers Per Block                           8192
      Warp Size                                         32 threads
      Max Block Size                                    512 x 512 x 64
      Max Grid Size                                     65535 x 65535 x 1
      Compute Capability                                1.1
      CUDA DLL                                          nvcuda.dll (8.17.11.9621 - nVIDIA ForceWare 196.21)

     :
      Total Memory                                      1024 
      Total Constant Memory                             64 
      Max Shared Memory Per Block                       16 
      Max Memory Pitch                                  256 
      Texture Alignment                                 256 

     :
      32-bit Atomic Operations                          
      64-bit Atomic Operations                           
      Concurrent Memory Copy & Execute                  
      Double-Precision Floating-Point                    
      Warp Vote Functions                                

     :
                                                   NVIDIA Corporation
                                     http://www.nvidia.com/page/products.html
                                       http://www.nvidia.com/content/drivers/drivers.asp
                                     http://driveragent.com?ref=59

  [ Direct3D: NVIDIA GeForce 9800 GT  ]

     :
                                           NVIDIA GeForce 9800 GT 
                                             nvd3dum.dll
                                          8.17.11.9621 - nVIDIA ForceWare 196.21
      Shader Model                                      SM 4.0
      Max Threads                                       768
      Multiple UAV Access                                
      Thread Dispatch                                   2D
      Thread Local Storage                              16 

     :
      Append/Consume Buffers                             
      Atomic Operations                                  
      Double-Precision Floating-Point                    
      Gather4                                            
      Indirect Compute Dispatch                          

     :
                                                   NVIDIA Corporation
                                     http://www.nvidia.com/page/products.html
                                       http://www.nvidia.com/content/drivers/drivers.asp
                                     http://driveragent.com?ref=59


--------[  ]------------------------------------------------------------------------------------------------------

    @Batang                                   Roman       Regular        Baltic                  16 x 32   40 %
    @Batang                                   Roman       Regular        Central European        16 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    @Batang                                   Roman       Regular        Greek                   16 x 32   40 %
    @Batang                                   Roman       Regular        Hangul                  16 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    @Batang                                   Roman       Regular        Western                 16 x 32   40 %
    @BatangChe                                Modern      Regular        Baltic                  16 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    @BatangChe                                Modern      Regular        Cyrillic                16 x 32   40 %
    @BatangChe                                Modern      Regular        Greek                   16 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    @BatangChe                                Modern      Regular        Turkish                 16 x 32   40 %
    @BatangChe                                Modern      Regular        Western                 16 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    @DFKai-SB                                 Script      Regular        Western                 16 x 32   40 %
    @Dotum                                    Swiss       Regular        Baltic                  16 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    @Dotum                                    Swiss       Regular        Cyrillic                16 x 32   40 %
    @Dotum                                    Swiss       Regular        Greek                   16 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    @Dotum                                    Swiss       Regular        Turkish                 16 x 32   40 %
    @Dotum                                    Swiss       Regular        Western                 16 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    @DotumChe                                 Modern      Regular        Central European        16 x 32   40 %
    @DotumChe                                 Modern      Regular        Cyrillic                16 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    @DotumChe                                 Modern      Regular        Hangul                  16 x 32   40 %
    @DotumChe                                 Modern      Regular        Turkish                 16 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    @FangSong                                 Modern              CHINESE_GB2312          16 x 32   40 %
    @FangSong                                 Modern              Western                 16 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    @Gulim                                    Swiss       Regular        Central European        16 x 32   40 %
    @Gulim                                    Swiss       Regular        Cyrillic                16 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    @Gulim                                    Swiss       Regular        Hangul                  16 x 32   40 %
    @Gulim                                    Swiss       Regular        Turkish                 16 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    @GulimChe                                 Modern      Regular        Baltic                  16 x 32   40 %
    @GulimChe                                 Modern      Regular        Central European        16 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    @GulimChe                                 Modern      Regular        Greek                   16 x 32   40 %
    @GulimChe                                 Modern      Regular        Hangul                  16 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    @GulimChe                                 Modern      Regular        Western                 16 x 32   40 %
    @Gungsuh                                  Roman       Regular        Baltic                  16 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    @Gungsuh                                  Roman       Regular        Cyrillic                16 x 32   40 %
    @Gungsuh                                  Roman       Regular        Greek                   16 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    @Gungsuh                                  Roman       Regular        Turkish                 16 x 32   40 %
    @Gungsuh                                  Roman       Regular        Western                 16 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    @GungsuhChe                               Modern      Regular        Central European        16 x 32   40 %
    @GungsuhChe                               Modern      Regular        Cyrillic                16 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    @GungsuhChe                               Modern      Regular        Hangul                  16 x 32   40 %
    @GungsuhChe                               Modern      Regular        Turkish                 16 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    @KaiTi                                    Modern              CHINESE_GB2312          16 x 32   40 %
    @KaiTi                                    Modern              Western                 16 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       15 x 43   40 %
    @Malgun Gothic                            Swiss       Regular        Western                 15 x 43   40 %
    @Meiryo UI                                Swiss               Baltic                  17 x 41   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       17 x 41   40 %
    @Meiryo UI                                Swiss               Cyrillic                17 x 41   40 %
    @Meiryo UI                                Swiss               Greek                   17 x 41   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       17 x 41   40 %
    @Meiryo UI                                Swiss               Turkish                 17 x 41   40 %
    @Meiryo UI                                Swiss               Western                 17 x 41   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       31 x 48   40 %
    @Meiryo                                   Swiss               Central European        31 x 48   40 %
    @Meiryo                                   Swiss               Cyrillic                31 x 48   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       31 x 48   40 %
    @Meiryo                                   Swiss               Japanese                31 x 48   40 %
    @Meiryo                                   Swiss               Turkish                 31 x 48   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       31 x 48   40 %
    @Microsoft JhengHei                       Swiss               CHINESE_BIG5            15 x 43   40 %
    @Microsoft JhengHei                       Swiss               Greek                   15 x 43   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       15 x 43   40 %
    @Microsoft YaHei                          Swiss               Central European        15 x 42   40 %
    @Microsoft YaHei                          Swiss               CHINESE_GB2312          15 x 42   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       15 x 42   40 %
    @Microsoft YaHei                          Swiss               Greek                   15 x 42   40 %
    @Microsoft YaHei                          Swiss               Turkish                 15 x 42   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       15 x 42   40 %
    @MingLiU                                  Modern      Regular        CHINESE_BIG5            16 x 32   40 %
    @MingLiU                                  Modern      Regular        Western                 16 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    @MingLiU_HKSCS                            Roman       Regular        Western                 16 x 32   40 %
    @MingLiU_HKSCS-ExtB                       Roman       Regular        CHINESE_BIG5            16 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    @MingLiU-ExtB                             Roman       Regular        CHINESE_BIG5            16 x 32   40 %
    @MingLiU-ExtB                             Roman       Regular        Western                 16 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    @MS Gothic                                Modern      Regular        Central European        16 x 32   40 %
    @MS Gothic                                Modern      Regular        Cyrillic                16 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    @MS Gothic                                Modern      Regular        Japanese                16 x 32   40 %
    @MS Gothic                                Modern      Regular        Turkish                 16 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    @MS Mincho                                Modern      Regular        Baltic                  16 x 32   40 %
    @MS Mincho                                Modern      Regular        Central European        16 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    @MS Mincho                                Modern      Regular        Greek                   16 x 32   40 %
    @MS Mincho                                Modern      Regular        Japanese                16 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    @MS Mincho                                Modern      Regular        Western                 16 x 32   40 %
    @MS PGothic                               Swiss       Regular        Baltic                  13 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       13 x 32   40 %
    @MS PGothic                               Swiss       Regular        Cyrillic                13 x 32   40 %
    @MS PGothic                               Swiss       Regular        Greek                   13 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       13 x 32   40 %
    @MS PGothic                               Swiss       Regular        Turkish                 13 x 32   40 %
    @MS PGothic                               Swiss       Regular        Western                 13 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       13 x 32   40 %
    @MS PMincho                               Roman       Regular        Central European        13 x 32   40 %
    @MS PMincho                               Roman       Regular        Cyrillic                13 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       13 x 32   40 %
    @MS PMincho                               Roman       Regular        Japanese                13 x 32   40 %
    @MS PMincho                               Roman       Regular        Turkish                 13 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       13 x 32   40 %
    @MS UI Gothic                             Swiss       Regular        Baltic                  13 x 32   40 %
    @MS UI Gothic                             Swiss       Regular        Central European        13 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       13 x 32   40 %
    @MS UI Gothic                             Swiss       Regular        Greek                   13 x 32   40 %
    @MS UI Gothic                             Swiss       Regular        Japanese                13 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       13 x 32   40 %
    @MS UI Gothic                             Swiss       Regular        Western                 13 x 32   40 %
    @NSimSun                                  Modern      Regular        CHINESE_GB2312          16 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    @PMingLiU                                 Roman       Regular        CHINESE_BIG5            16 x 32   40 %
    @PMingLiU                                 Roman       Regular        Western                 16 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    @PMingLiU-ExtB                            Roman       Regular        Western                 16 x 32   40 %
    @SimHei                                   Modern              CHINESE_GB2312          16 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    @SimSun                                   Special     Regular        CHINESE_GB2312          16 x 32   40 %
    @SimSun                                   Special     Regular        Western                 16 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    @SimSun-ExtB                              Modern              Western                 16 x 32   40 %
    Aharoni                                   Special          Hebrew                  15 x 32   70 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       15 x 49   40 %
    Andalus                                   Roman       Regular        Western                 15 x 49   40 %
    Angsana New                               Roman               Thai                     8 x 43   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]        8 x 43   40 %
    AngsanaUPC                                Roman               Thai                     8 x 43   40 %
    AngsanaUPC                                Roman               Western                  8 x 43   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 38   40 %
    Arabic Typesetting                        Script              Arabic                   9 x 36   40 %
    Arabic Typesetting                        Script              Baltic                   9 x 36   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]        9 x 36   40 %
    Arabic Typesetting                        Script              Turkish                  9 x 36   40 %
    Arabic Typesetting                        Script              Western                  9 x 36   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       18 x 45   90 %
    Arial Black                               Swiss               Central European        18 x 45   90 %
    Arial Black                               Swiss               Cyrillic                18 x 45   90 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       18 x 45   90 %
    Arial Black                               Swiss               Turkish                 18 x 45   90 %
    Arial Black                               Swiss               Western                 18 x 45   90 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       14 x 36   40 %
    Arial                                     Swiss               Baltic                  14 x 36   40 %
    Arial                                     Swiss               Central European        14 x 36   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       14 x 36   40 %
    Arial                                     Swiss               Greek                   14 x 36   40 %
    Arial                                     Swiss               Hebrew                  14 x 36   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       14 x 36   40 %
    Arial                                     Swiss               Vietnamese              14 x 36   40 %
    Arial                                     Swiss               Western                 14 x 36   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    Batang                                    Roman       Regular        Central European        16 x 32   40 %
    Batang                                    Roman       Regular        Cyrillic                16 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    Batang                                    Roman       Regular        Hangul                  16 x 32   40 %
    Batang                                    Roman       Regular        Turkish                 16 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    BatangChe                                 Modern      Regular        Baltic                  16 x 32   40 %
    BatangChe                                 Modern      Regular        Central European        16 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    BatangChe                                 Modern      Regular        Greek                   16 x 32   40 %
    BatangChe                                 Modern      Regular        Hangul                  16 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    BatangChe                                 Modern      Regular        Western                 16 x 32   40 %
    Browallia New                             Swiss       Regular        Thai                     9 x 40   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]        9 x 40   40 %
    BrowalliaUPC                              Swiss       Regular        Thai                     9 x 40   40 %
    BrowalliaUPC                              Swiss       Regular        Western                  9 x 40   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       17 x 39   40 %
    Calibri                                   Swiss       Regular        Central European        17 x 39   40 %
    Calibri                                   Swiss       Regular        Cyrillic                17 x 39   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       17 x 39   40 %
    Calibri                                   Swiss       Regular        Turkish                 17 x 39   40 %
    Calibri                                   Swiss       Regular        Vietnamese              17 x 39   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       17 x 39   40 %
    Cambria Math                              Roman       Regular        Baltic                  20 x 179   40 %
    Cambria Math                              Roman       Regular        Central European        20 x 179   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       20 x 179   40 %
    Cambria Math                              Roman       Regular        Greek                   20 x 179   40 %
    Cambria Math                              Roman       Regular        Turkish                 20 x 179   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       20 x 179   40 %
    Cambria Math                              Roman       Regular        Western                 20 x 179   40 %
    Cambria                                   Roman       Regular        Baltic                  20 x 40   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       20 x 40   40 %
    Cambria                                   Roman       Regular        Cyrillic                20 x 40   40 %
    Cambria                                   Roman       Regular        Greek                   20 x 40   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       20 x 40   40 %
    Cambria                                   Roman       Regular        Vietnamese              20 x 40   40 %
    Cambria                                   Roman       Regular        Western                 20 x 40   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       17 x 39   40 %
    Candara                                   Swiss       Regular        Central European        17 x 39   40 %
    Candara                                   Swiss       Regular        Cyrillic                17 x 39   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       17 x 39   40 %
    Candara                                   Swiss       Regular        Turkish                 17 x 39   40 %
    Candara                                   Swiss       Regular        Vietnamese              17 x 39   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       17 x 39   40 %
    Comic Sans MS                             Script              Baltic                  15 x 45   40 %
    Comic Sans MS                             Script              Central European        15 x 45   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       15 x 45   40 %
    Comic Sans MS                             Script              Greek                   15 x 45   40 %
    Comic Sans MS                             Script              Turkish                 15 x 45   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       15 x 45   40 %
    Consolas                                  Modern      Regular        Baltic                  18 x 37   40 %
    Consolas                                  Modern      Regular        Central European        18 x 37   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       18 x 37   40 %
    Consolas                                  Modern      Regular        Greek                   18 x 37   40 %
    Consolas                                  Modern      Regular        Turkish                 18 x 37   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       18 x 37   40 %
    Consolas                                  Modern      Regular        Western                 18 x 37   40 %
    Constantia                                Roman       Regular        Baltic                  17 x 39   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       17 x 39   40 %
    Constantia                                Roman       Regular        Cyrillic                17 x 39   40 %
    Constantia                                Roman       Regular        Greek                   17 x 39   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       17 x 39   40 %
    Constantia                                Roman       Regular        Vietnamese              17 x 39   40 %
    Constantia                                Roman       Regular        Western                 17 x 39   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       17 x 39   40 %
    Corbel                                    Swiss       Regular        Central European        17 x 39   40 %
    Corbel                                    Swiss       Regular        Cyrillic                17 x 39   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       17 x 39   40 %
    Corbel                                    Swiss       Regular        Turkish                 17 x 39   40 %
    Corbel                                    Swiss       Regular        Vietnamese              17 x 39   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       17 x 39   40 %
    Cordia New                                Swiss       Regular        Thai                     9 x 44   40 %
    Cordia New                                Swiss       Regular        Western                  9 x 44   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]        9 x 44   40 %
    CordiaUPC                                 Swiss       Regular        Western                  9 x 44   40 %
    Courier New                               Modern              Arabic                  19 x 36   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       19 x 36   40 %
    Courier New                               Modern              Central European        19 x 36   40 %
    Courier New                               Modern              Cyrillic                19 x 36   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       19 x 36   40 %
    Courier New                               Modern              Hebrew                  19 x 36   40 %
    Courier New                               Modern              Turkish                 19 x 36   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       19 x 36   40 %
    Courier New                               Modern              Western                 19 x 36   40 %
    Courier                                   Roman                      Cyrillic                 8 x 13   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       12 x 43   40 %
    David                                     Swiss       Regular        Hebrew                  13 x 31   40 %
    DFKai-SB                                  Script      Regular        CHINESE_BIG5            16 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    DilleniaUPC                               Roman               Thai                     9 x 42   40 %
    DilleniaUPC                               Roman               Western                  9 x 42   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       19 x 62   40 %
    DokChampa                                 Swiss               Western                 19 x 62   40 %
    Dotum                                     Swiss       Regular        Baltic                  16 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    Dotum                                     Swiss       Regular        Cyrillic                16 x 32   40 %
    Dotum                                     Swiss       Regular        Greek                   16 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    Dotum                                     Swiss       Regular        Turkish                 16 x 32   40 %
    Dotum                                     Swiss       Regular        Western                 16 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    DotumChe                                  Modern      Regular        Central European        16 x 32   40 %
    DotumChe                                  Modern      Regular        Cyrillic                16 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    DotumChe                                  Modern      Regular        Hangul                  16 x 32   40 %
    DotumChe                                  Modern      Regular        Turkish                 16 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    Ebrima                                    Special             Baltic                  19 x 43   40 %
    Ebrima                                    Special             Central European        19 x 43   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       19 x 43   40 %
    Ebrima                                    Special             Western                 19 x 43   40 %
    Estrangelo Edessa                         Script              Western                 16 x 36   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]        9 x 39   40 %
    EucrosiaUPC                               Roman               Western                  9 x 39   40 %
    Euphemia                                  Swiss       Regular        Western                 22 x 42   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    FangSong                                  Modern              Western                 16 x 32   40 %
    Fixedsys                                  Swiss                      Cyrillic                 8 x 16   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       14 x 36   40 %
    Franklin Gothic Medium                    Swiss               Central European        14 x 36   40 %
    Franklin Gothic Medium                    Swiss               Cyrillic                14 x 36   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       14 x 36   40 %
    Franklin Gothic Medium                    Swiss               Turkish                 14 x 36   40 %
    Franklin Gothic Medium                    Swiss               Western                 14 x 36   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       13 x 30   40 %
    FreesiaUPC                                Swiss       Regular        Thai                     9 x 38   40 %
    FreesiaUPC                                Swiss       Regular        Western                  9 x 38   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 59   40 %
    Gabriola                                  Decorative  Regular        Central European        16 x 59   40 %
    Gabriola                                  Decorative  Regular        Cyrillic                16 x 59   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 59   40 %
    Gabriola                                  Decorative  Regular        Turkish                 16 x 59   40 %
    Gabriola                                  Decorative  Regular        Western                 16 x 59   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       18 x 56   40 %
    Georgia                                   Roman               Baltic                  14 x 36   40 %
    Georgia                                   Roman               Central European        14 x 36   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       14 x 36   40 %
    Georgia                                   Roman               Greek                   14 x 36   40 %
    Georgia                                   Roman               Turkish                 14 x 36   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       14 x 36   40 %
    Gisha                                     Swiss               Hebrew                  16 x 38   40 %
    Gisha                                     Swiss               Western                 16 x 38   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    Gulim                                     Swiss       Regular        Central European        16 x 32   40 %
    Gulim                                     Swiss       Regular        Cyrillic                16 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    Gulim                                     Swiss       Regular        Hangul                  16 x 32   40 %
    Gulim                                     Swiss       Regular        Turkish                 16 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    GulimChe                                  Modern      Regular        Baltic                  16 x 32   40 %
    GulimChe                                  Modern      Regular        Central European        16 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    GulimChe                                  Modern      Regular        Greek                   16 x 32   40 %
    GulimChe                                  Modern      Regular        Hangul                  16 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    GulimChe                                  Modern      Regular        Western                 16 x 32   40 %
    Gungsuh                                   Roman       Regular        Baltic                  16 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    Gungsuh                                   Roman       Regular        Cyrillic                16 x 32   40 %
    Gungsuh                                   Roman       Regular        Greek                   16 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    Gungsuh                                   Roman       Regular        Turkish                 16 x 32   40 %
    Gungsuh                                   Roman       Regular        Western                 16 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    GungsuhChe                                Modern      Regular        Central European        16 x 32   40 %
    GungsuhChe                                Modern      Regular        Cyrillic                16 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    GungsuhChe                                Modern      Regular        Hangul                  16 x 32   40 %
    GungsuhChe                                Modern      Regular        Turkish                 16 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    Impact                                    Swiss               Baltic                  13 x 39   40 %
    Impact                                    Swiss               Central European        13 x 39   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       13 x 39   40 %
    Impact                                    Swiss               Greek                   13 x 39   40 %
    Impact                                    Swiss               Turkish                 13 x 39   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       13 x 39   40 %
    IrisUPC                                   Swiss       Regular        Thai                     9 x 40   40 %
    IrisUPC                                   Swiss       Regular        Western                  9 x 40   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       22 x 36   40 %
    JasmineUPC                                Roman       Regular        Thai                     9 x 34   40 %
    JasmineUPC                                Roman       Regular        Western                  9 x 34   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    KaiTi                                     Modern              Western                 16 x 32   40 %
    Kalinga                                   Swiss       Regular        Western                 19 x 48   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       27 x 46   40 %
    Khmer UI                                  Swiss               Western                 21 x 36   40 %
    KodchiangUPC                              Roman       Regular        Thai                     9 x 31   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]        9 x 31   40 %
    Kokila                                    Swiss       Regular        Western                 13 x 37   40 %
    Lao UI                                    Swiss               Western                 18 x 43   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       23 x 44   40 %
    Leelawadee                                Swiss               Thai                    17 x 38   40 %
    Leelawadee                                Swiss               Western                 17 x 38   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 42   40 %
    LilyUPC                                   Swiss               Thai                     9 x 30   40 %
    LilyUPC                                   Swiss               Western                  9 x 30   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       19 x 32   40 %
    Lucida Console                            Modern              Cyrillic                19 x 32   40 %
    Lucida Console                            Modern              Greek                   19 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       19 x 32   40 %
    Lucida Console                            Modern              Western                 19 x 32   40 %
    Lucida Sans Unicode                       Swiss               Baltic                  16 x 49   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 49   40 %
    Lucida Sans Unicode                       Swiss               Cyrillic                16 x 49   40 %
    Lucida Sans Unicode                       Swiss               Greek                   16 x 49   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 49   40 %
    Lucida Sans Unicode                       Swiss               Turkish                 16 x 49   40 %
    Lucida Sans Unicode                       Swiss               Western                 16 x 49   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       15 x 43   40 %
    Malgun Gothic                             Swiss       Regular        Western                 15 x 43   40 %
    Mangal                                    Roman       Regular        Western                 19 x 54   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       31 x 32   50 %
    Meiryo UI                                 Swiss               Baltic                  17 x 41   40 %
    Meiryo UI                                 Swiss               Central European        17 x 41   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       17 x 41   40 %
    Meiryo UI                                 Swiss               Greek                   17 x 41   40 %
    Meiryo UI                                 Swiss               Japanese                17 x 41   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       17 x 41   40 %
    Meiryo UI                                 Swiss               Western                 17 x 41   40 %
    Meiryo                                    Swiss               Baltic                  31 x 48   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       31 x 48   40 %
    Meiryo                                    Swiss               Cyrillic                31 x 48   40 %
    Meiryo                                    Swiss               Greek                   31 x 48   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       31 x 48   40 %
    Meiryo                                    Swiss               Turkish                 31 x 48   40 %
    Meiryo                                    Swiss               Western                 31 x 48   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       13 x 32   40 %
    Microsoft JhengHei                        Swiss               CHINESE_BIG5            15 x 43   40 %
    Microsoft JhengHei                        Swiss               Greek                   15 x 43   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       15 x 43   40 %
    Microsoft New Tai Lue                     Swiss       Regular        Western                 19 x 42   40 %
    Microsoft PhagsPa                         Swiss       Regular        Western                 24 x 41   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       14 x 36   40 %
    Microsoft Sans Serif                      Swiss               Baltic                  14 x 36   40 %
    Microsoft Sans Serif                      Swiss               Central European        14 x 36   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       14 x 36   40 %
    Microsoft Sans Serif                      Swiss               Greek                   14 x 36   40 %
    Microsoft Sans Serif                      Swiss               Hebrew                  14 x 36   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       14 x 36   40 %
    Microsoft Sans Serif                      Swiss               Turkish                 14 x 36   40 %
    Microsoft Sans Serif                      Swiss               Vietnamese              14 x 36   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       14 x 36   40 %
    Microsoft Tai Le                          Swiss       Regular        Western                 19 x 41   40 %
    Microsoft Uighur                          Special             Arabic                  13 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       13 x 32   40 %
    Microsoft YaHei                           Swiss               Central European        15 x 42   40 %
    Microsoft YaHei                           Swiss               CHINESE_GB2312          15 x 42   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       15 x 42   40 %
    Microsoft YaHei                           Swiss               Greek                   15 x 42   40 %
    Microsoft YaHei                           Swiss               Turkish                 15 x 42   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       15 x 42   40 %
    Microsoft Yi Baiti                        Script              Western                 21 x 32   40 %
    MingLiU                                   Modern      Regular        CHINESE_BIG5            16 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    MingLiU_HKSCS                             Roman       Regular        CHINESE_BIG5            16 x 32   40 %
    MingLiU_HKSCS                             Roman       Regular        Western                 16 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    MingLiU_HKSCS-ExtB                        Roman       Regular        Western                 16 x 32   40 %
    MingLiU-ExtB                              Roman       Regular        CHINESE_BIG5            16 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    Miriam Fixed                              Modern      Regular        Hebrew                  19 x 32   40 %
    Miriam                                    Swiss       Regular        Hebrew                  13 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       19 x 37   40 %
    Mongolian Baiti                           Script              Western                 14 x 34   40 %
    MoolBoran                                 Swiss               Western                 13 x 43   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    MS Gothic                                 Modern      Regular        Central European        16 x 32   40 %
    MS Gothic                                 Modern      Regular        Cyrillic                16 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    MS Gothic                                 Modern      Regular        Japanese                16 x 32   40 %
    MS Gothic                                 Modern      Regular        Turkish                 16 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    MS Mincho                                 Modern      Regular        Baltic                  16 x 32   40 %
    MS Mincho                                 Modern      Regular        Central European        16 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    MS Mincho                                 Modern      Regular        Greek                   16 x 32   40 %
    MS Mincho                                 Modern      Regular        Japanese                16 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    MS Mincho                                 Modern      Regular        Western                 16 x 32   40 %
    MS PGothic                                Swiss       Regular        Baltic                  13 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       13 x 32   40 %
    MS PGothic                                Swiss       Regular        Cyrillic                13 x 32   40 %
    MS PGothic                                Swiss       Regular        Greek                   13 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       13 x 32   40 %
    MS PGothic                                Swiss       Regular        Turkish                 13 x 32   40 %
    MS PGothic                                Swiss       Regular        Western                 13 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       13 x 32   40 %
    MS PMincho                                Roman       Regular        Central European        13 x 32   40 %
    MS PMincho                                Roman       Regular        Cyrillic                13 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       13 x 32   40 %
    MS PMincho                                Roman       Regular        Japanese                13 x 32   40 %
    MS PMincho                                Roman       Regular        Turkish                 13 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       13 x 32   40 %
    MS Sans Serif                             Swiss                      Cyrillic                 5 x 13   40 %
    MS Serif                                  Roman                      Cyrillic                 5 x 13   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       13 x 32   40 %
    MS UI Gothic                              Swiss       Regular        Central European        13 x 32   40 %
    MS UI Gothic                              Swiss       Regular        Cyrillic                13 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       13 x 32   40 %
    MS UI Gothic                              Swiss       Regular        Japanese                13 x 32   40 %
    MS UI Gothic                              Swiss       Regular        Turkish                 13 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       13 x 32   40 %
    MV Boli                                   Special             Western                 18 x 52   40 %
    Narkisim                                  Swiss       Regular        Hebrew                  12 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    NSimSun                                   Modern      Regular        Western                 16 x 32   40 %
    Nyala                                     Special             Baltic                  18 x 33   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       18 x 33   40 %
    Nyala                                     Special             Turkish                 18 x 33   40 %
    Nyala                                     Special             Western                 18 x 33   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       14 x 43   40 %
    Palatino Linotype                         Roman               Central European        14 x 43   40 %
    Palatino Linotype                         Roman               Cyrillic                14 x 43   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       14 x 43   40 %
    Palatino Linotype                         Roman               Turkish                 14 x 43   40 %
    Palatino Linotype                         Roman               Vietnamese              14 x 43   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       14 x 43   40 %
    Plantagenet Cherokee                      Roman               Western                 14 x 41   40 %
    PMingLiU                                  Roman       Regular        CHINESE_BIG5            16 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    PMingLiU-ExtB                             Roman       Regular        CHINESE_BIG5            16 x 32   40 %
    PMingLiU-ExtB                             Roman       Regular        Western                 16 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       13 x 53   40 %
    Rod                                       Modern      Regular        Hebrew                  19 x 31   40 %
    Roman                                     Roman                      OEM/DOS                 22 x 37   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 45   40 %
    Sakkal Majalla                            Special             Baltic                  16 x 45   40 %
    Sakkal Majalla                            Special             Central European        16 x 45   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 45   40 %
    Sakkal Majalla                            Special             Western                 16 x 45   40 %
    Script                                    Script                     OEM/DOS                 16 x 36   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       21 x 56   40 %
    Segoe Print                               Special     Regular        Central European        21 x 56   40 %
    Segoe Print                               Special     Regular        Cyrillic                21 x 56   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       21 x 56   40 %
    Segoe Print                               Special     Regular        Turkish                 21 x 56   40 %
    Segoe Print                               Special     Regular        Western                 21 x 56   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       22 x 51   40 %
    Segoe Script                              Swiss               Central European        22 x 51   40 %
    Segoe Script                              Swiss               Cyrillic                22 x 51   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       22 x 51   40 %
    Segoe Script                              Swiss               Turkish                 22 x 51   40 %
    Segoe Script                              Swiss               Western                 22 x 51   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       17 x 43   30 %
    Segoe UI Light                            Swiss       Regular        Central European        17 x 43   30 %
    Segoe UI Light                            Swiss       Regular        Cyrillic                17 x 43   30 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       17 x 43   30 %
    Segoe UI Light                            Swiss       Regular        Turkish                 17 x 43   30 %
    Segoe UI Light                            Swiss       Regular        Vietnamese              17 x 43   30 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       17 x 43   30 %
    Segoe UI Semibold                         Swiss       Regular        Baltic                  18 x 43   60 %
    Segoe UI Semibold                         Swiss       Regular        Central European        18 x 43   60 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       18 x 43   60 %
    Segoe UI Semibold                         Swiss       Regular        Greek                   18 x 43   60 %
    Segoe UI Semibold                         Swiss       Regular        Turkish                 18 x 43   60 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       18 x 43   60 %
    Segoe UI Semibold                         Swiss       Regular        Western                 18 x 43   60 %
    Segoe UI Symbol                           Swiss               Western                 23 x 43   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       17 x 43   40 %
    Segoe UI                                  Swiss               Baltic                  17 x 43   40 %
    Segoe UI                                  Swiss               Central European        17 x 43   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       17 x 43   40 %
    Segoe UI                                  Swiss               Greek                   17 x 43   40 %
    Segoe UI                                  Swiss               Turkish                 17 x 43   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       17 x 43   40 %
    Segoe UI                                  Swiss               Western                 17 x 43   40 %
    Shonar Bangla                             Swiss       Regular        Western                 16 x 41   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       14 x 54   40 %
    SimHei                                    Modern              CHINESE_GB2312          16 x 32   40 %
    SimHei                                    Modern              Western                 16 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       19 x 35   40 %
    Simplified Arabic Fixed                   Modern      Regular        Western                 19 x 35   40 %
    Simplified Arabic                         Roman       Regular        Arabic                  13 x 53   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       13 x 53   40 %
    SimSun                                    Special     Regular        CHINESE_GB2312          16 x 32   40 %
    SimSun                                    Special     Regular        Western                 16 x 32   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 32   40 %
    SimSun-ExtB                               Modern              Western                 16 x 32   40 %
    Small Fonts                               Swiss                      Cyrillic                  1 x 3   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       13 x 42   40 %
    Sylfaen                                   Roman               Central European        13 x 42   40 %
    Sylfaen                                   Roman               Cyrillic                13 x 42   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       13 x 42   40 %
    Sylfaen                                   Roman               Turkish                 13 x 42   40 %
    Sylfaen                                   Roman               Western                 13 x 42   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       19 x 39   40 %
    System                                    Swiss                      Cyrillic                 7 x 16   70 %
    Tahoma                                    Swiss               Arabic                  14 x 39   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       14 x 39   40 %
    Tahoma                                    Swiss               Central European        14 x 39   40 %
    Tahoma                                    Swiss               Cyrillic                14 x 39   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       14 x 39   40 %
    Tahoma                                    Swiss               Hebrew                  14 x 39   40 %
    Tahoma                                    Swiss               Thai                    14 x 39   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       14 x 39   40 %
    Tahoma                                    Swiss               Vietnamese              14 x 39   40 %
    Tahoma                                    Swiss               Western                 14 x 39   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]        8 x 12   40 %
    Times New Roman                           Roman               Arabic                  13 x 35   40 %
    Times New Roman                           Roman               Baltic                  13 x 35   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       13 x 35   40 %
    Times New Roman                           Roman               Cyrillic                13 x 35   40 %
    Times New Roman                           Roman               Greek                   13 x 35   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       13 x 35   40 %
    Times New Roman                           Roman               Turkish                 13 x 35   40 %
    Times New Roman                           Roman               Vietnamese              13 x 35   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       13 x 35   40 %
    Traditional Arabic                        Roman       Regular        Arabic                  15 x 48   40 %
    Traditional Arabic                        Roman       Regular        Western                 15 x 48   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       15 x 37   40 %
    Trebuchet MS                              Swiss               Central European        15 x 37   40 %
    Trebuchet MS                              Swiss               Cyrillic                15 x 37   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       15 x 37   40 %
    Trebuchet MS                              Swiss               Turkish                 15 x 37   40 %
    Trebuchet MS                              Swiss               Western                 15 x 37   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       18 x 53   40 %
    Utsaah                                    Swiss       Regular        Western                 13 x 36   40 %
    Vani                                      Swiss       Regular        Western                 23 x 54   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 39   40 %
    Verdana                                   Swiss               Central European        16 x 39   40 %
    Verdana                                   Swiss               Cyrillic                16 x 39   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 39   40 %
    Verdana                                   Swiss               Turkish                 16 x 39   40 %
    Verdana                                   Swiss               Vietnamese              16 x 39   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       16 x 39   40 %
    Vijaya                                    Swiss       Regular        Western                 19 x 32   40 %
    Vrinda                                    Swiss       Regular        Western                 20 x 44   40 %
    [ TRIAL VERSION ]                         [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]       31 x 32   40 %
    Wingdings                                 Special     Regular        Symbol                  28 x 36   40 %


--------[  Windows ]-----------------------------------------------------------------------------------------------

    midi-out.0   0001 001B  Microsoft GS Wavetable Synth
    mixer.0      0001 0068  Speakers (Realtek High Definiti
    mixer.1      0001 0068  Realtek Digital Output (Realtek
    mixer.2      0001 0068  Realtek Digital Input (Realtek 
    mixer.3      0001 0068  Microphone (Realtek High Defini
    wave-in.0    0001 0065  Microphone (Realtek High Defini
    wave-in.1    0001 0065  Realtek Digital Input (Realtek 
    wave-out.0   0001 0064  Speakers (Realtek High Definiti
    wave-out.1   0001 0064  Realtek Digital Output (Realtek


--------[  PCI / PnP ]---------------------------------------------------------------------------------------------

    Realtek ALC888/1200 @ Intel 82801JB ICH10 - High Definition Audio Controller      PCI


--------[ HD Audio ]----------------------------------------------------------------------------------------------------

  [ Intel 82801JB ICH10 - High Definition Audio Controller ]

     :
                                      Intel 82801JB ICH10 - High Definition Audio Controller
        (Windows)                      High Definition Audio (Microsoft)
                                                 PCI
      ID                                      8086-3A3E
                               1458-A002
                                                  00
       ID                                     PCI\VEN_8086&DEV_3A3E&SUBSYS_A0021458&REV_00

  [ Realtek ALC888/1200 ]

     :
                                      Realtek ALC888/1200
        (Windows)                     Realtek High Definition Audio
                                           Audio
                                                 HDAUDIO
      ID                                      10EC-0888
                               1458-A002
                                                  1000
       ID                                     HDAUDIO\FUNC_01&VEN_10EC&DEV_0888&SUBSYS_1458A002&REV_1000


--------[   ]------------------------------------------------------------------------------------------------

    ff_vfw.dll                                                     ffdshow video encoder
    iccvid.dll                 1.10.0.11                            Cinepak
    [ TRIAL VERSION ]          [ TRIAL VERSION ]                   [ TRIAL VERSION ]
    msrle32.dll                6.1.7600.16385 (win7_rtm.090713-1255)  Microsoft RLE Compressor
    msvidc32.dll               6.1.7600.16385 (win7_rtm.090713-1255)    Microsoft Video 1
    [ TRIAL VERSION ]          [ TRIAL VERSION ]                   [ TRIAL VERSION ]
    tsbyuv.dll                 6.1.7600.16490 (win7_gdr.091218-1705)  Toshiba Video Codec
    xvidvfw.dll                                                    Xvid MPEG-4 Video Codec 1.2.2
    [ TRIAL VERSION ]          [ TRIAL VERSION ]                   [ TRIAL VERSION ]


--------[ MCI ]---------------------------------------------------------------------------------------------------------

  [ AVIVideo ]

      MCI:
                                              AVIVideo
                                                       Windows
                                                 MCI Video  Windows
                                                     Digital Video Device
                                                 mciavi32.dll
                                                  

      MCI:
                                     
                                  
                                      
                                         
                                 
                                                  
                                        
      ''                             
                                      
                                         
                                         
                                            
                                          
                                          
                                

  [ CDAudio ]

      MCI:
                                              CDAudio
                                                     -
                                                 MCI   cdaudio
                                                     CD Audio Device
                                                 mcicda.dll
                                                  

      MCI:
                                     
                                  
                                      
                                         
                                                  
                                        
                                          
                                          

  [ MPEGVideo ]

      MCI:
                                              MPEGVideo
                                                     DirectShow
                                                 MCI DirectShow
                                                     Digital Video Device
                                                 mciqtz32.dll
                                                  

      MCI:
                                     
                                  
                                      
                                         
                                 
                                                  
                                        
      ''                             
                                      
                                         
                                         
                                            
                                          
                                          
                                

  [ Sequencer ]

      MCI:
                                              Sequencer
                                                      MIDI
                                                 MCI   MIDI
                                                     Sequencer Device
                                                 mciseq.dll
                                                  

      MCI:
                                     
                                  
                                      
                                         
                                                  
                                        
                                          
                                          

  [ WaveAudio ]

      MCI:
                                              WaveAudio
                                                     Sound
                                                 MCI   
                                                     Waveform Audio Device
                                                 mciwave.dll
                                                  

      MCI:
                                     
                                  
                                      
                                         
                                                  
                                        
                                          
                                          


--------[   Windows ]-------------------------------------------------------------------------------------

  [  ]

     :
                                        Floppy disk drive
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          flpydisk.inf

  [ SAMSUNG HD753LJ ATA Device ]

     :
                                        SAMSUNG HD753LJ ATA Device
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          disk.inf

       :
                                           Samsung
                                  SpinPoint F1
      -                                       3.5"
                                  750 
                                                   3
                                 5
                                      147.0 x 101.5 x 26.1 mm
                                         650 g
                                4.17 ms
                                        7200 RPM
      .                     1400 /
                                      8.9 ms
                                               SATA-II
        '-'                300 /
                                             32 
                                          12 

     :
                                                   Samsung
                                     http://www.samsung.com/global/business/hdd

  [ TSSTcorp CDDVDW SH-S202N SCSI CdRom Device ]

     :
                                        TSSTcorp CDDVDW SH-S202N SCSI CdRom Device
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          cdrom.inf

      :
                                           Toshiba-Samsung
                                           DVD+RW/DVD-RW/DVD-RAM
                                               ATAPI

     :
      DVD+R9 Dual Layer                                 16x
      DVD+R                                             20x
      DVD+RW                                            8x
      DVD-R9 Dual Layer                                 12x
      DVD-R                                             20x
      DVD-RW                                            6x
      DVD-RAM                                           12x
      CD-R                                              48x
      CD-RW                                             32x

     :
      DVD-ROM                                           16x
      CD-ROM                                            48x

     :
                                                   Toshiba Samsung Storage Technology
                                     http://www.tsstorage.com/tsst/index_e.html
       firmware                                 http://www.samsungodd.com/eng/LiveUpdate/LiveUpdate.asp

  [ ATA Channel 0 ]

     :
                                        ATA Channel 0
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          mshdc.inf

  [ ATA Channel 0 ]

     :
                                        ATA Channel 0
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          mshdc.inf

     :
      IRQ                                               14
                                                    01F0-01F7
                                                    03F6-03F6

  [ ATA Channel 1 ]

     :
                                        ATA Channel 1
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          mshdc.inf

  [ ATA Channel 1 ]

     :
                                        ATA Channel 1
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          mshdc.inf

     :
      IRQ                                               15
                                                    0170-0177
                                                    0376-0376

  [ Intel(R) ICH10 Family 2 port Serial ATA Storage Controller 2 - 3A26 ]

     :
                                        Intel(R) ICH10 Family 2 port Serial ATA Storage Controller 2 - 3A26
                                            25.02.2008
                                          9.0.0.1005
                                       Intel
      INF-                                          oem2.inf

     :
      IRQ                                               19
                                                    F100-F10F
                                                    F200-F20F
                                                    F300-F303
                                                    F400-F407
                                                    F500-F503
                                                    F600-F607

  [ Intel(R) ICH10 Family 4 port Serial ATA Storage Controller 1 - 3A20 ]

     :
                                        Intel(R) ICH10 Family 4 port Serial ATA Storage Controller 1 - 3A20
                                            25.02.2008
                                          9.0.0.1005
                                       Intel
      INF-                                          oem2.inf

     :
                                                    F800-F80F
                                                    F900-F90F

  [     ]

     :
                                        Standard floppy disk controller
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          fdc.inf

     :
      DMA                                               02
      IRQ                                               06
                                                    03F0-03F5
                                                    03F7-03F7

  [ GIGABYTE GBB36X Controller ]

     :
                                        GIGABYTE GBB36X Controller
                                            01.10.2008
                                          1.17.42.8
                                       JMicron Technology Corp.
      INF-                                          oem4.inf

     :
      IRQ                                               17
                                                  FD6FE000-FD6FFFFF
                                                    BB00-BB0F
                                                    BC00-BC03
                                                    BD00-BD07
                                                    BE00-BE03
                                                    BF00-BF07


--------[   ]--------------------------------------------------------------------------------------------

    A:                                                                                                                     
    [ TRIAL VERSION ]                                NTFS      [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]
    D: (Data)                                        NTFS         664193      606609       57584     9 %  F854-83B3
    E:                                                                                                               


--------[   ]--------------------------------------------------------------------------------------------

  [  #1 - SAMSUNG HD753LJ (698 ) ]

    #1 ()    NTFS             C:                                              0 MB    51207 MB
    #2               NTFS             D: (Data)                                   51208 MB   664194 MB


--------[   ]---------------------------------------------------------------------------------------

  [ E:\  TSSTcorp CDDVDW SH-S202N SCSI CdRom Device ]

      :
                                      TSSTcorp CDDVDW SH-S202N SCSI CdRom Device
                                           SH-S202NFirmware
       firmware                                   SB02
                                             2 
                                           Toshiba-Samsung
                                           DVD+RW/DVD-RW/DVD-RAM
                                               ATAPI
                                   LightScribe
                                              
                               5
                                      4

     :
      DVD+R9 Dual Layer                                 16x
      DVD+R                                             20x
      DVD+RW                                            8x
      DVD-R9 Dual Layer                                 12x
      DVD-R                                             20x
      DVD-RW                                            6x
      DVD-RAM                                           12x
      CD-R                                              48x
      CD-RW                                             32x

     :
      DVD-ROM                                           16x
      CD-ROM                                            48x

      :
      BD-ROM                                             
      BD-R                                               
      BD-RE                                              
      HD DVD-ROM                                         
      HD DVD-R                                           
      HD DVD-RW                                          
      DVD-ROM                                           
      DVD+R9 Dual Layer                                  + 
      DVD+R                                              + 
      DVD+RW                                             + 
      DVD-R9 Dual Layer                                  + 
      DVD-R                                              + 
      DVD-RW                                             + 
      DVD-RAM                                            + 
      CD-ROM                                            
      CD-R                                               + 
      CD-RW                                              + 

      :
      Buffer Underrun Protection                        
      C2 Error Pointers                                 
      CD+G                                              
      CD-Text                                           
      Hybrid Disc                                        
      JustLink                                          
      LabelFlash                                         
      Layer-Jump Recording                              
      LightScribe                                       
      Mount Rainier                                     
      SMART                                             
      CSS                                               
      CPRM                                              
      AACS                                               
      VCPS                                               
      BD CPS                                             

     :
                                                   Toshiba Samsung Storage Technology
                                     http://www.tsstorage.com/tsst/index_e.html
       firmware                                 http://www.samsungodd.com/eng/LiveUpdate/LiveUpdate.asp


--------[ ASPI ]--------------------------------------------------------------------------------------------------------

    04  00  00       TSSTcorp  CDDVDW SH-S202N   SB02  
    04  07  00  -             JRAID                             


--------[ ATA ]---------------------------------------------------------------------------------------------------------

  [ SAMSUNG HD753LJ (S13UJ1BS100869) ]

      ATA:
      ID                                          SAMSUNG HD753LJ
                                           S13UJ1BS100869
                                                  1AA01113
      World Wide Name                                   5-0000F0-000D16F5A
                                           SATA-II
                                               : 1453519, : 16,   : 63,   : 554
       LBA                                       1465147055
                                                   32767  (Dual Ported, Read Ahead)
                                           16
       ECC                                         4
                                774089 
      ATA Standard                                      ATA/ATAPI-7

      ATA:
      48-bit LBA                                        
       (APM)                            , 
      Automatic Acoustic Management                     , 
      Device Configuration Overlay                      
      DMA Setup Auto-Activate                           , 
      General Purpose Logging                           
      Host Protected Area                               , 
      In-Order Data Delivery                             
      Native Command Queuing                            
      Phy Event Counters                                
                                          , 
      Power-Up In Standby                               , 
      Read Look-Ahead                                   , 
      Release Interrupt                                  
                                       , 
      SMART                                             , 
      SMART Error Logging                               
      SMART Self-Test                                   
      Software Settings Preservation                    , 
      Streaming                                         
      Tagged Command Queuing                             
                                               , 

       ATA:
                                           Samsung
                                  SpinPoint F1
      -                                       3.5"
                                  750 
                                                   3
                                 5
                                      147.0 x 101.5 x 26.1 mm
                                         650 g
                                4.17 ms
                                        7200 RPM
      .                     1400 /
                                      8.9 ms
                                               SATA-II
        '-'                300 /
                                             32 
                                          12 

     ATA-:
                                                   Samsung
                                     http://www.samsung.com/global/business/hdd


--------[ SMART ]-------------------------------------------------------------------------------------------------------

  [ SAMSUNG HD753LJ (S13UJ1BS100869) ]

    01  Raw Read Error Rate                  51   100  100           0  OK:  
    03  Spinup Time                          11   78   78         7530  OK:  
    04  Start/Stop Count                     0    100  100         450  OK:  
    05  Reallocated Sector Count             10   100  100           0  OK:  
    07  Seek Error Rate                      51   100  100           0  OK:  
    08  Seek Time Performance                15   100  100           0  OK:  
    09  Power-On Time Count                  0    99   99         7536  OK:  
    0A  Spinup Retry Count                   51   100  100           0  OK:  
    0B  Calibration Retry Count              0    100  100           0  OK:  
    0C  Power Cycle Count                    0    100  100         394  OK:  
    0D  Soft Read Error Rate                 0    100  100           0  OK:  
    B7  <  >              0    100  100           0  OK:  
    B8  End-to-End Error                     0    100  100           0  OK:  
    BB  Reported Uncorrectable Errors        0    100  100           0  OK:  
    BC  Command Timeout                      0    100  100           0  OK:  
    BE  Airflow Temperature                  0    62   58    640024614  OK:  
    C2  Temperature                          0    61   56    656801831  OK:  
    C3  Hardware ECC Recovered               0    100  100     2832667  OK:  
    C4  Reallocation Event Count             0    100  100           0  OK:  
    C5  Current Pending Sector Count         0    100  100           0  OK:  
    C6  Offline Uncorrectable Sector Count   0    100  100           0  OK:  
    C7  Ultra ATA CRC Error Rate             0    100  100           0  OK:  
    C8  Write Error Rate                     0    100  100           0  OK:  
    C9  Soft Read Error Rate                 0    100  100           0  OK:  


--------[  Windows ]------------------------------------------------------------------------------------------------

  [ Realtek RTL8168D/8111D Family PCI-E Gigabit Ethernet NIC (NDIS 6.20) ]

      :
                                          Realtek RTL8168D/8111D Family PCI-E Gigabit Ethernet NIC (NDIS 6.20)
                                           Gigabit Ethernet
                                         00-1F-D0-DB-E9-F1
                                              Local Area Connection
                                      100 Mbps
      MTU                                               1500 
      DHCP-                               17.03.2010 11:18:02
      DHCP-                               17.03.2010 12:18:02
                                            1399065121 (1334.3 )
                                          1543432031 (1471.9 )

      :
       IP /                                 [ TRIAL VERSION ]
                                                    [ TRIAL VERSION ]
      DHCP                                              [ TRIAL VERSION ]
      DNS                                               [ TRIAL VERSION ]

      :
                                                   Realtek Semiconductor Corp.
                                     http://www.realtek.com.tw/products/productsView.aspx?Langid=1&PNid=7&PFid=10&Level=3&Conn=2
                                       http://www.realtek.com.tw/downloads
                                     http://driveragent.com?ref=59


--------[  PCI / PnP ]----------------------------------------------------------------------------------------------

    Realtek RTL8168D/8111D PCI-E Gigabit Ethernet Adapter (PHY: Realtek RTL8211/8212)  PCI


--------[ IAM ]---------------------------------------------------------------------------------------------------------

  [ Microsoft Communities ]

      :
                                        Microsoft Communities
      ID                                   account{A5DE79DE-64F4-434A-B952-5A9B5E13D99F}.oeaccount
                                         ( )
                                                (IE  )
      NNTP-                                       msnews.microsoft.com

      :
        NNTP                                
        NNTP                     
        NNTP                        
         NNTP             
       NNTP                
       NNTP   HTML                         

  [ Active Directory ]

      :
                                        Active Directory
      ID                                   account{14F76AC1-3232-466D-921E-C48B0FCA0200}.oeaccount
                                        LDAP
                                                (IE  )
      LDAP-                                       NULL:3268
        LDAP                             NULL
        LDAP                               NULL
        LDAP                               1 

      :
        LDAP                      
        LDAP                     
        LDAP                        
         LDAP                     

  [ VeriSign Internet Directory Service ]

      :
                                        VeriSign Internet Directory Service
      ID                                   account{3D06CE56-0485-46E9-88ED-299193BD4177}.oeaccount
                                        LDAP
                                                (IE  )
      LDAP-                                       directory.verisign.com
      LDAP URL                                          http://www.verisign.com
        LDAP                               NULL
        LDAP                               1 

      :
        LDAP                      
        LDAP                     
        LDAP                        
         LDAP                     


--------[  ]----------------------------------------------------------------------------------------------------

     :
                                        http://start.icq.com/
                                          http://go.microsoft.com/fwlink/?LinkId=54896
                               

     :
                                            

    LAN-:
                                            


--------[  ]----------------------------------------------------------------------------------------------------

                  0.0.0.0          0.0.0.0     192.168.10.1  20   192.168.10.101 (Realtek RTL8168D/8111D Family PCI-E Gigabit Ethernet NIC (NDIS 6.20))
                127.0.0.0        255.0.0.0        127.0.0.1  306  127.0.0.1 (Software Loopback Interface 1)
          [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]  306  [ TRIAL VERSION ]
          127.255.255.255  255.255.255.255        127.0.0.1  306  127.0.0.1 (Software Loopback Interface 1)
             192.168.10.0    255.255.255.0   192.168.10.101  276  192.168.10.101 (Realtek RTL8168D/8111D Family PCI-E Gigabit Ethernet NIC (NDIS 6.20))
          [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]  276  [ TRIAL VERSION ]
           192.168.10.255  255.255.255.255   192.168.10.101  276  192.168.10.101 (Realtek RTL8168D/8111D Family PCI-E Gigabit Ethernet NIC (NDIS 6.20))
                224.0.0.0        240.0.0.0        127.0.0.1  306  127.0.0.1 (Software Loopback Interface 1)
          [ TRIAL VERSION ]  [ TRIAL VERSION ]  [ TRIAL VERSION ]  276  [ TRIAL VERSION ]
          255.255.255.255  255.255.255.255        127.0.0.1  306  127.0.0.1 (Software Loopback Interface 1)
          255.255.255.255  255.255.255.255   192.168.10.101  276  192.168.10.101 (Realtek RTL8168D/8111D Family PCI-E Gigabit Ethernet NIC (NDIS 6.20))


--------[ IE Cookie ]---------------------------------------------------------------------------------------------------

    2010-03-16 11:16:11  ajekc@winzip.com/
    2010-03-16 11:56:10  ajekc@youtube.com/
    2010-03-16 13:13:42  ajekc@onlinestores.metaservices.microsoft.com/serviceswitching/
    2010-03-16 17:25:41  ajekc@cdn.store.steampowered.com/
    2010-03-16 17:25:42  ajekc@store.steampowered.com/
    2010-03-16 18:48:28  ajekc@skype.com/
    2010-03-16 18:57:52  ajekc@abmr.net/
    2010-03-16 20:11:54  ajekc@content.yieldmanager.com/
    2010-03-16 20:11:54  ajekc@content.yieldmanager.com/ak/
    2010-03-17 10:49:25  ajekc@atdmt.com/
    2010-03-17 10:49:25  ajekc@bing.com/
    2010-03-17 10:49:25  ajekc@c.live.com/
    2010-03-17 10:49:25  ajekc@c.msn.com/
    2010-03-17 10:49:25  ajekc@windowsmarketplace.com/
    2010-03-17 10:49:25  ajekc@zune.net/
    2010-03-17 10:50:01  ajekc@atwola.com/
    2010-03-17 10:50:19  ajekc@messenger.msn.com/
    2010-03-17 10:50:26  ajekc@icq.com/
    2010-03-17 10:50:31  ajekc@ad.yieldmanager.com/
    2010-03-17 10:54:39  ajekc@yandex.ru/
    2010-03-17 10:57:39  ajekc@msn.com/
    2010-03-17 10:57:40  ajekc@rad.msn.com/
    2010-03-17 10:57:40  ajekc@statistik-gallup.net/
    2010-03-17 11:00:46  ajekc@live.com/


--------[   ]--------------------------------------------------------------------------------------------

    2010-03-17 10:51:36  AJEKC@file:///D:/INSTAL/Soft/bluescreenview.zip
    2010-03-17 10:55:19  AJEKC@http://www.nnscript.com/rss.php
    2010-03-17 10:55:21  [ TRIAL VERSION ]
    2010-03-17 10:57:41  AJEKC@http://ssw.msn.com/lfe/live.gateway.messengertracking/messengerscripttracking.aspx?rad=http://rad.msn.com/ADSAdClient31.dll%3FGetAd=%26PG=IMETT1%26AP=1007&mkt=et-ee
    2010-03-17 11:04:39  AJEKC@http://www.nvidia.ru/Download/index.aspx?lang=ru
    2010-03-17 11:04:59  [ TRIAL VERSION ]
    2010-03-17 11:21:55  AJEKC@file:///D:/INSTAL/report%20blue%20screen/repeort.txt
    2010-03-17 11:25:40  AJEKC@file:///D:/INSTAL/Report.txt
    2010-03-17 11:27:59  [ TRIAL VERSION ]


--------[  DirectX ]-----------------------------------------------------------------------------------------------

    amstream.dll                              6.06.7600.16385   Final Retail                         70656  14.07.2009 3:14:53
    bdaplgin.ax                               6.01.7600.16385   Final Retail                         74240  14.07.2009 3:14:10
    d3d8.dll                                  6.01.7600.16385   Final Retail                    1036800  14.07.2009 3:15:08
    d3d8thk.dll                               6.01.7600.16385   Final Retail                      11264  14.07.2009 3:15:08
    d3d9.dll                                  6.01.7600.16385   Final Retail                    1826816  14.07.2009 3:15:08
    d3dim.dll                                 6.01.7600.16385   Final Retail                     386048  14.07.2009 3:15:08
    d3dim700.dll                              6.01.7600.16385   Final Retail                     817664  14.07.2009 3:15:08
    d3dramp.dll                               6.01.7600.16385   Final Retail                     593920  14.07.2009 3:15:08
    d3dxof.dll                                6.01.7600.16385   Final Retail                      53760  14.07.2009 3:15:08
    ddraw.dll                                 6.01.7600.16385   Final Retail                        531968  14.07.2009 3:15:10
    ddrawex.dll                               6.01.7600.16385   Final Retail                      30208  14.07.2009 3:15:10
    devenum.dll                               6.06.7600.16385   Final Retail                         66560  14.07.2009 3:15:10
    dinput.dll                                6.01.7600.16385   Final Retail                        136704  14.07.2009 3:15:11
    dinput8.dll                               6.01.7600.16385   Final Retail                        145408  14.07.2009 3:15:11
    dmband.dll                                6.01.7600.16385   Final Retail                      30720  14.07.2009 3:15:12
    dmcompos.dll                              6.01.7600.16385   Final Retail                      63488  14.07.2009 3:15:12
    dmime.dll                                 6.01.7600.16385   Final Retail                     179712  14.07.2009 3:15:12
    dmloader.dll                              6.01.7600.16385   Final Retail                      38400  14.07.2009 3:15:12
    dmscript.dll                              6.01.7600.16385   Final Retail                      86016  14.07.2009 3:15:12
    dmstyle.dll                               6.01.7600.16385   Final Retail                     105984  14.07.2009 3:15:12
    dmsynth.dll                               6.01.7600.16385   Final Retail                     105472  14.07.2009 3:15:12
    dmusic.dll                                6.01.7600.16385   Final Retail                        101376  14.07.2009 3:15:12
    dplaysvr.exe                              6.01.7600.16385   Final Retail                         29184  14.07.2009 3:14:18
    dplayx.dll                                6.01.7600.16385   Final Retail                     213504  14.07.2009 3:15:12
    dpmodemx.dll                              6.01.7600.16385   Final Retail                         23040  14.07.2009 3:15:12
    dpnaddr.dll                               6.01.7600.16385   Final Retail                       2048  14.07.2009 3:04:52
    dpnet.dll                                 6.01.7600.16385   Final Retail                        376832  14.07.2009 3:15:12
    dpnhpast.dll                              6.01.7600.16385   Final Retail                       7168  14.07.2009 3:15:12
    dpnhupnp.dll                              6.01.7600.16385   Final Retail                       7168  14.07.2009 3:15:12
    dpnlobby.dll                              6.01.7600.16385   Final Retail                       2560  14.07.2009 3:04:52
    dpnsvr.exe                                6.01.7600.16385   Final Retail                         33280  14.07.2009 3:14:18
    dpwsockx.dll                              6.01.7600.16385   Final Retail                         44032  14.07.2009 3:15:12
    dsdmo.dll                                 6.01.7600.16385   Final Retail                     173568  14.07.2009 3:15:13
    dsound.dll                                6.01.7600.16385   Final Retail                        453632  14.07.2009 3:15:13
    dswave.dll                                6.01.7600.16385   Final Retail                      20992  14.07.2009 3:15:13
    dxdiagn.dll                               6.01.7600.16385   Final Retail                        210432  14.07.2009 3:15:13
    dxmasf.dll                                12.00.7600.16385  Final Retail                       4096  14.07.2009 3:16:14
    encapi.dll                                6.01.7600.16385   Final Retail                      20992  14.07.2009 3:15:14
    gcdef.dll                                 6.01.7600.16385   Final Retail                        120832  14.07.2009 3:15:22
    iac25_32.ax                               2.00.0005.0053    Final Retail                        197632  14.07.2009 3:14:10
    ir41_32.ax                                4.51.0016.0003    Final Retail                        839680  14.07.2009 3:14:10
    ir41_qc.dll                               4.30.0062.0002    Final Retail                     120320  14.07.2009 3:15:34
    ir41_qcx.dll                              4.30.0062.0002    Final Retail                     120320  14.07.2009 3:15:34
    ir50_32.dll                               5.2562.0015.0055  Final Retail                        746496  14.07.2009 3:15:34
    ir50_qc.dll                               5.00.0063.0048    Final Retail                     200192  14.07.2009 3:15:34
    ir50_qcx.dll                              5.00.0063.0048    Final Retail                     200192  14.07.2009 3:15:34
    ivfsrc.ax                                 5.10.0002.0051    Final Retail                        146944  14.07.2009 3:14:10
    joy.cpl                                   6.01.7600.16385   Final Retail                        138240  14.07.2009 3:14:09
    ksproxy.ax                                6.01.7600.16385   Final Retail                        194048  14.07.2009 3:14:11
    kstvtune.ax                               6.01.7600.16385   Final Retail                         84480  14.07.2009 3:14:11
    ksuser.dll                                6.01.7600.16385   Final Retail                          4608  14.07.2009 3:15:35
    kswdmcap.ax                               6.01.7600.16385   Final Retail                        107008  14.07.2009 3:14:11
    ksxbar.ax                                 6.01.7600.16385   Final Retail                         48640  14.07.2009 3:14:11
    mciqtz32.dll                              6.06.7600.16385   Final Retail                         36352  14.07.2009 3:15:37
    mfc40.dll                                 4.01.0000.6140    Final Retail                        924944  14.07.2009 3:15:38
    mfc42.dll                                 6.06.8063.0000    Beta Retail                        1136640  14.07.2009 3:15:39
    mpeg2data.ax                              6.06.7600.16385   Final Retail                         72704  14.07.2009 3:14:11
    mpg2splt.ax                               6.06.7600.16385   Final Retail                     199680  14.07.2009 3:14:11
    msdmo.dll                                 6.06.7600.16385   Final Retail                      30208  14.07.2009 3:15:43
    msdvbnp.ax                                6.06.7600.16385   Final Retail                         59904  14.07.2009 3:14:11
    msvidctl.dll                              6.05.7600.16385   Final Retail                       2291712  14.07.2009 3:15:50
    msyuv.dll                                 6.01.7600.16490   Final Retail                      22016  19.12.2009 11:02:46
    pid.dll                                   6.01.7600.16385   Final Retail                      36352  14.07.2009 3:16:12
    psisdecd.dll                              6.06.7600.16485   Final Retail                        465408  13.12.2009 11:30:50
    psisrndr.ax                               6.06.7600.16385   Final Retail                         75776  14.07.2009 3:14:11
    qasf.dll                                  12.00.7600.16385  Final Retail                     206848  14.07.2009 3:16:12
    qcap.dll                                  6.06.7600.16385   Final Retail                        190976  14.07.2009 3:16:12
    qdv.dll                                   6.06.7600.16385   Final Retail                        283136  14.07.2009 3:16:12
    qdvd.dll                                  6.06.7600.16385   Final Retail                        514560  14.07.2009 3:16:12
    qedit.dll                                 6.06.7600.16385   Final Retail                        509440  14.07.2009 3:16:12
    qedwipes.dll                              6.06.7600.16385   Final Retail                     733184  14.07.2009 3:09:35
    quartz.dll                                6.06.7600.16490   Final Retail                       1328640  19.12.2009 11:02:48
    vbisurf.ax                                6.01.7600.16385   Final Retail                      33280  14.07.2009 3:14:11
    vfwwdm32.dll                              6.01.7600.16385   Final Retail                         56832  14.07.2009 3:16:17
    wsock32.dll                               6.01.7600.16385   Final Retail                         15360  14.07.2009 3:16:20


--------[ DirectX -  ]---------------------------------------------------------------------------------------------

  [   ]

     DirectDraw:
        DirectDraw                           display
        DirectDraw                       
                                       nvd3dum.dll (8.17.11.9621 - nVIDIA ForceWare 196.21)
                                      NVIDIA GeForce 9800 GT 

     Direct3D:
                                8, 16, 32
        Z-                          16, 24, 32
      Multisample Anti-Aliasing Modes                   MSAA 2x, MSAA 4x, MSAA 8x, CSAA 8x, CSAA 8xQ, CSAA 16x, CSAA 16xQ
                               1 x 1
                              8192 x 8192
      Unified Shader Version                            4.0
        DirectX                      DirectX v10.0

     Direct3D:
      Additive Texture Blending                         
      AGP Texturing                                     
      Anisotropic Filtering                             
      Automatic Mipmap Generation                       
      Bilinear Filtering                                
      Compute Shader                                    
      Cubic Environment Mapping                         
      Cubic Filtering                                    
      Decal-Alpha Texture Blending                      
      Decal Texture Blending                            
      DirectX Texture Compression                        
      DirectX Volumetric Texture Compression             
      Dithering                                         
      Dot3 Texture Blending                             
      Double-Precision Floating-Point                    
      Driver Concurrent Creates                         
      Driver Command Lists                               
      Dynamic Textures                                  
      Edge Anti-Aliasing                                
      Environmental Bump Mapping                        
      Environmental Bump Mapping + Luminance            
      Factor Alpha Blending                             
      Geometric Hidden-Surface Removal                   
      Geometry Shader                                   
      Guard Band                                        
      Hardware Scene Rasterization                      
      Hardware Transform & Lighting                     
      Legacy Depth Bias                                 
      Mipmap LOD Bias Adjustments                       
      Mipmapped Cube Textures                           
      Mipmapped Volume Textures                         
      Modulate-Alpha Texture Blending                   
      Modulate Texture Blending                         
      Non-Square Textures                               
      N-Patches                                          
      Perspective Texture Correction                    
      Point Sampling                                    
      Projective Textures                               
      Quintic Bezier Curves & B-Splines                  
      Range-Based Fog                                   
      Rectangular & Triangular Patches                   
      Rendering In Windowed Mode                        
      Scissor Test                                      
      Slope-Scale Based Depth Bias                      
      Specular Flat Shading                             
      Specular Gouraud Shading                          
      Specular Phong Shading                             
      Spherical Mapping                                 
      Stencil Buffers                                   
      Sub-Pixel Accuracy                                
      Subtractive Texture Blending                      
      Table Fog                                         
      Texture Alpha Blending                            
      Texture Clamping                                  
      Texture Mirroring                                 
      Texture Transparency                              
      Texture Wrapping                                  
      Triangle Culling                                   
      Trilinear Filtering                               
      Two-Sided Stencil Test                            
      Vertex Alpha Blending                             
      Vertex Fog                                        
      Vertex Tweening                                    
      Volume Textures                                   
      W-Based Fog                                       
      W-Buffering                                        
      Z-Based Fog                                       
      Z-Bias                                            
      Z-Test                                            

      FourCC:
      3x11                                              
      3x16                                              
      AI44                                              
      AI88                                              
      AIP8                                              
      ATOC                                              
      AV12                                              
      AYUV                                              
      NV12                                              
      NV24                                              
      NVDB                                              
      NVDP                                              
      NVMD                                              
      PLFF                                              
      SSAA                                              
      UYVY                                              
      YUY2                                              
      YV12                                              

     :
                                                   NVIDIA Corporation
                                     http://www.nvidia.com/page/products.html
                                       http://www.nvidia.com/content/drivers/drivers.asp
                                     http://driveragent.com?ref=59


--------[ DirectX -  ]----------------------------------------------------------------------------------------------

  [    ]

     DirectSound:
                                        
                                          
                                         1
      ./.          100 / 200000 
                             8 , 16 , , 
                             8 , 16 , , 
       /                   1 / 0
       /        1 / 0
       /           1 / 0
       /   3D-                0 / 0
       /    3D-    0 / 0
       /    3D-       0 / 0

     DirectSound:
                                
                                      
                                    
      DirectSound3D                                      
      Creative EAX 1.0                                   
      Creative EAX 2.0                                   
      Creative EAX 3.0                                   
      Creative EAX 4.0                                   
      Creative EAX 5.0                                   
      I3DL2                                              
      Sensaura ZoomFX                                    

  [ Speakers (Realtek High Definition Audio) ]

     DirectSound:
                                      Speakers (Realtek High Definition Audio)
                                          {0.0.0.00000000}.{8a016dcb-f8bc-4b12-9ab0-7f397afea182}
                                         1
      ./.          100 / 200000 
                             8 , 16 , , 
                             8 , 16 , , 
       /                   1 / 0
       /        1 / 0
       /           1 / 0
       /   3D-                0 / 0
       /    3D-    0 / 0
       /    3D-       0 / 0

     DirectSound:
                                
                                      
                                    
      DirectSound3D                                      
      Creative EAX 1.0                                   
      Creative EAX 2.0                                   
      Creative EAX 3.0                                   
      Creative EAX 4.0                                   
      Creative EAX 5.0                                   
      I3DL2                                              
      Sensaura ZoomFX                                    

  [ Realtek Digital Output (Realtek High Definition Audio) ]

     DirectSound:
                                      Realtek Digital Output (Realtek High Definition Audio)
                                          {0.0.0.00000000}.{89673eeb-ac7b-41d9-bbde-f2d0857e4642}
                                         1
      ./.          100 / 200000 
                             8 , 16 , , 
                             8 , 16 , , 
       /                   1 / 0
       /        1 / 0
       /           1 / 0
       /   3D-                0 / 0
       /    3D-    0 / 0
       /    3D-       0 / 0

     DirectSound:
                                
                                      
                                    
      DirectSound3D                                      
      Creative EAX 1.0                                   
      Creative EAX 2.0                                   
      Creative EAX 3.0                                   
      Creative EAX 4.0                                   
      Creative EAX 5.0                                   
      I3DL2                                              
      Sensaura ZoomFX                                    


--------[ DirectX -  ]--------------------------------------------------------------------------------------------

  [ Microsoft MIDI Mapper [] ]

     DirectMusic:
                                      Microsoft MIDI Mapper []
                                          
                                          
                                           Windows Multimedia
       MIDI                                       16

     DirectMusic:
         GM                  
         Roland GS                 
      DirectSound                                        
        DLS L1                           
        DLS L2                           
        MIDI                                 
         DLS                    
                                         
                                               
                                           
                                       

  [ Microsoft GS Wavetable Synth [] ]

     DirectMusic:
                                      Microsoft GS Wavetable Synth []
                                          
                                          
                                           Windows Multimedia
       MIDI                                       16

     DirectMusic:
         GM                  
         Roland GS                 
      DirectSound                                        
        DLS L1                           
        DLS L2                           
        MIDI                                 
         DLS                    
                                         
                                               
                                           
                                       

  [ Microsoft Synthesizer ]

     DirectMusic:
                                      Microsoft Synthesizer
                                          
                                          
                                           User-Mode Synthesizer
                                             2
       MIDI                                       16000
                                                  1000
                                          

     DirectMusic:
         GM                  
         Roland GS                 
      DirectSound                                       
        DLS L1                          
        DLS L2                          
        MIDI                                 
         DLS                    
                                          
                                               
                                           
                                      


--------[ DirectX -  ]----------------------------------------------------------------------------------------------

  [  ]

     DirectInput:
                                      
                                           
                                        
                                                     3
      /                                    8

     DirectInput:
                                      
      Alias Device                                      
      Polled Device                                     
      Polled Data Format                                
      Attack Force Feedback                              
      Deadband Force Feedback                            
      Fade Force Feedback                                
      Force Feedback                                     
      Saturation Force Feedback                          
      +/- Force Feedback Coefficients                    
      +/- Force Feedback Saturation                      

  [  ]

     DirectInput:
                                      
                                           
                                        
      /                                    128

     DirectInput:
                                      
      Alias Device                                      
      Polled Device                                     
      Polled Data Format                                
      Attack Force Feedback                              
      Deadband Force Feedback                            
      Fade Force Feedback                                
      Force Feedback                                     
      Saturation Force Feedback                          
      +/- Force Feedback Coefficients                    
      +/- Force Feedback Saturation                      

  [ Microsoft USB Wireless IntelliMouse Explorer ]

     DirectInput:
                                      Microsoft USB Wireless IntelliMouse Explorer
                                           
                                        

     DirectInput:
                                      
      Alias Device                                      
      Polled Device                                     
      Polled Data Format                                
      Attack Force Feedback                              
      Deadband Force Feedback                            
      Fade Force Feedback                                
      Force Feedback                                     
      Saturation Force Feedback                          
      +/- Force Feedback Coefficients                    
      +/- Force Feedback Saturation                      

  [ USB Gaming Mouse ]

     DirectInput:
                                      USB Gaming Mouse
                                           
                                        

     DirectInput:
                                      
      Alias Device                                      
      Polled Device                                     
      Polled Data Format                                
      Attack Force Feedback                              
      Deadband Force Feedback                            
      Fade Force Feedback                                
      Force Feedback                                     
      Saturation Force Feedback                          
      +/- Force Feedback Coefficients                    
      +/- Force Feedback Saturation                      

  [ USB Gaming Mouse ]

     DirectInput:
                                      USB Gaming Mouse
                                           
                                        

     DirectInput:
                                      
      Alias Device                                      
      Polled Device                                     
      Polled Data Format                                
      Attack Force Feedback                              
      Deadband Force Feedback                            
      Fade Force Feedback                                
      Force Feedback                                     
      Saturation Force Feedback                          
      +/- Force Feedback Coefficients                    
      +/- Force Feedback Saturation                      


--------[  Windows ]------------------------------------------------------------------------------------------

  [  ]

    DVD  CD-ROM :
      TSSTcorp CDDVDW SH-S202N SCSI CdRom Device        6.1.7600.16385

    IDE ATA/ATAPI :
      ATA Channel 0                                     6.1.7600.16385
      ATA Channel 0                                     6.1.7600.16385
      ATA Channel 1                                     6.1.7600.16385
      ATA Channel 1                                     6.1.7600.16385
      Intel(R) ICH10 Family 2 port Serial ATA Storage Controller 2 - 3A269.0.0.1005
      Intel(R) ICH10 Family 4 port Serial ATA Storage Controller 1 - 3A209.0.0.1005

    :
      NVIDIA GeForce 9800 GT                            8.17.11.9621

      :
                                                6.1.7600.16385

     :
      SAMSUNG HD753LJ ATA Device                        6.1.7600.16385

      :
      Ancillary Function Driver for Winsock             
      Beep                                              
      CNG                                               
      gdrv                                              
      Hardware Policy Driver                            
      HTTP                                              
      Kaspersky Anti-Virus NDIS 6 Filter                
      Kaspersky Lab Boot Guard Driver                   
      Kernel Mode Driver Frameworks service             
      kl1                                               
      KSecDD                                            
      KSecPkg                                           
      LDDM Graphics Subsystem                           
      Link-Layer Topology Discovery Mapper I/O Driver   
      Link-Layer Topology Discovery Responder           
      msisadrv                                          
      NDProxy                                           
      NETBT                                             
      NSI proxy service driver.                         
      Null                                              
      PEAUTH                                            
      Performance Counters for Windows Driver           
      RDP Encoder Mirror Driver                         
      RDPCDD                                            
      Reflector Display Driver used to gain access to graphics data
      Security Driver                                   
      Security Processor Loader Driver                  
      Storage volumes                                   
      System Attribute Cache                            
      TCP/IP Registry Compatibility                     
      VgaSave                                           
      WFP Lightweight Filter                            
            
                              
                               
                                 
         Windows           
        NetIO Legacy TDI                
        TCP/IP                          
         IPv6 ARP               
          Bitlocker        
        (CLFS)                               
        QoS                           
        NDIS                            

    ,    :
      Realtek High Definition Audio                     6.0.1.5672

    :
        PS/2                       6.1.7600.16385

    :
      ACPI x64-based PC                                 6.1.7600.16385

     USB:
       USB-                         6.1.7600.16385
       USB-                         6.1.7600.16385
       USB-                         6.1.7600.16385
       USB-                         6.1.7600.16385
       USB-                         6.1.7600.16385
       USB-                         6.1.7600.16385
       USB-                         6.1.7600.16385
       USB-                         6.1.7600.16385
       - USB   Intel(R) ICH10 - 3A3A6.1.7600.16385
       - USB   Intel(R) ICH10 - 3A3C6.1.7600.16385
       USB                           6.1.7600.16385
       - USB   Intel(R) ICH10 - 3A346.1.7600.16385
       - USB   Intel(R) ICH10 - 3A356.1.7600.16385
       - USB   Intel(R) ICH10 - 3A366.1.7600.16385
       - USB   Intel(R) ICH10 - 3A376.1.7600.16385
       - USB   Intel(R) ICH10 - 3A386.1.7600.16385
       - USB   Intel(R) ICH10 - 3A396.1.7600.16385

      :
                       6.1.7600.16385

      :
      GIGABYTE GBB36X Controller                        1.17.42.8

    :
      SyncMaster 940N,SyncMaster Magic CX915N/CX916N/CX917N3.0.0.0

        :
      HID-                               6.1.7600.16385
      Microsoft USB Wireless IntelliMouse Explorer      6.1.7600.16385

     (COM  LPT):
      Communications Port (COM1)                        6.1.7600.16385

    :
      Intel(R) Core(TM) i7 CPU         920  @ 2.67GHz   6.1.7600.16385
      Intel(R) Core(TM) i7 CPU         920  @ 2.67GHz   6.1.7600.16385
      Intel(R) Core(TM) i7 CPU         920  @ 2.67GHz   6.1.7600.16385
      Intel(R) Core(TM) i7 CPU         920  @ 2.67GHz   6.1.7600.16385
      Intel(R) Core(TM) i7 CPU         920  @ 2.67GHz   6.1.7600.16385
      Intel(R) Core(TM) i7 CPU         920  @ 2.67GHz   6.1.7600.16385
      Intel(R) Core(TM) i7 CPU         920  @ 2.67GHz   6.1.7600.16385
      Intel(R) Core(TM) i7 CPU         920  @ 2.67GHz   6.1.7600.16385

     :
      Microsoft ISATAP Adapter #2                       6.1.7600.16385
      Teredo Tunneling Pseudo-Interface                 6.1.7600.16385
      WAN Miniport (IKEv2)                              6.1.7600.16385
       Microsoft ISATAP                          6.1.7600.16385
       WAN (IP)                                 6.1.7600.16385
       WAN (IPv6)                               6.1.7600.16385
       WAN (L2TP)                               6.1.7600.16385
       WAN (PPPoE)                              6.1.7600.16385
       WAN (PPTP)                               6.1.7600.16385
      - WAN (SSTP)                              6.1.7600.16385
       WAN ( )                    6.1.7600.16385
        Realtek RTL8168D/8111D Family PCI-E Gigabit Ethernet NIC (NDIS 6.20)7.2.1127.2008

     :
      CMOS                                         6.1.7600.16385
      Intel(R) 5520/5500/X58 I/O Hub to ESI Port - 3405 9.1.1.1026
      Intel(R) 7500/5520/5500 Physical and Link Layer Registers Port 1 - 34279.1.1.1026
      Intel(R) 7500/5520/5500 Routing and Protocol Layer Register Port 1 - 34289.1.1.1026
      Intel(R) 7500/5520/5500/X58 I/O Hub Control Status and RAS Registers - 34239.1.1.1026
      Intel(R) 7500/5520/5500/X58 I/O Hub GPIO and Scratch Pad Registers - 34229.1.1.1026
      Intel(R) 7500/5520/5500/X58 I/O Hub I/OxAPIC Interrupt Controller - 342D9.1.1.1026
      Intel(R) 7500/5520/5500/X58 I/O Hub PCI Express Root Port 1 - 34089.1.1.1026
      Intel(R) 7500/5520/5500/X58 I/O Hub PCI Express Root Port 3 - 340A9.1.1.1026
      Intel(R) 7500/5520/5500/X58 I/O Hub PCI Express Root Port 7 - 340E9.1.1.1026
      Intel(R) 7500/5520/5500/X58 I/O Hub PCI Express Root Port 9 - 34109.1.1.1026
      Intel(R) 7500/5520/5500/X58 I/O Hub System Management Registers - 342E9.1.1.1026
      Intel(R) 7500/5520/5500/X58 Physical and Link Layer Registers Port 0 - 34259.1.1.1026
      Intel(R) 7500/5520/5500/X58 Routing and Protocol Layer Registers Port 0 - 34269.1.1.1026
      Intel(R) 7500/5520/5500/X58 Trusted Execution Technology Registers - 342F9.1.1.1026
      Intel(R) 7500/5520/X58 I/O Hub PCI Express Root Port 5 - 340C9.1.1.1026
      Intel(R) 82801 PCI  - 244E                    6.1.7600.16385
      Intel(R) 82802 Firmware               6.1.7600.16385
      Microsoft ACPI-                 6.1.7600.16385
      Microsoft System Management BIOS           6.1.7600.16385
      Remote Desktop Device Redirector Bus              6.1.7600.16385
      UMBus                    6.1.7600.16385
      UMBus                                6.1.7600.16385
                               6.1.7600.16385
                                       6.1.7600.16385
                               6.1.7600.16385
                                          6.1.7600.16385
                      6.1.7600.16385
                            6.1.7600.16385
          ()6.1.7600.16385
                               6.1.7600.16385
        ACPI                               6.1.7600.16385
       High Definition Audio (Microsoft)      6.1.7600.16385
       LPC- Intel(R) ICH10R - 3A16  6.1.7600.16385
       SMBus  Intel(R) ICH10 - 3A30  6.1.7600.16385
                         6.1.7600.16385
        PCI Express 1  Intel(R) ICH10 - 3A406.1.7600.16385
        PCI Express 2  Intel(R) ICH10 - 3A426.1.7600.16385
        PCI Express 5  Intel(R) ICH10 - 3A486.1.7600.16385
                            6.1.7600.16385
         Plug and Play 6.1.7600.16385
                     6.1.7600.16385
                                   6.1.7600.16385
                                   6.1.7600.16385
                                   6.1.7600.16385
                                          6.1.7600.16385
                                         6.1.7600.16385
         ACPI          6.1.7600.16385
       PCI                                          6.1.7600.16385

        :
                           6.1.7600.16385
                           6.1.7600.16385
                           6.1.7600.16385
                           6.1.7600.16385
                           6.1.7600.16385
                           6.1.7600.16385
                           6.1.7600.16385

      :
                                        6.1.7600.16385
                                        6.1.7600.16385

     HID (Human Interface Devices):
      HID Non-User Input Data Filter (KB 911895)        7.0.258.0
      HID-                         6.1.7600.16385
      HID-                         6.1.7600.16385
      Microsoft USB Wireless IntelliMouse Explorer      6.1.7600.16385
      USB-                               6.1.7600.16385
      USB-                               6.1.7600.16385

    -  IEEE 1394:
      Texas Instruments 1394 OHCI- -6.1.7600.16385

  [ DVD  CD-ROM  / TSSTcorp CDDVDW SH-S202N SCSI CdRom Device ]

     :
                                        TSSTcorp CDDVDW SH-S202N SCSI CdRom Device
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          cdrom.inf
       ID                                     SCSI\CdRomTSSTcorpCDDVDW_SH-S202N_SB02
                                     Bus Number 0, Target ID 0, LUN 0

  [ IDE ATA/ATAPI  / ATA Channel 0 ]

     :
                                        ATA Channel 0
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          mshdc.inf
       ID                                     Intel-3a26
                                     Channel 0

  [ IDE ATA/ATAPI  / ATA Channel 0 ]

     :
                                        ATA Channel 0
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          mshdc.inf
       ID                                     Intel-3a20
                                     Channel 0

     :
      IRQ                                               14
                                                    01F0-01F7
                                                    03F6-03F6

  [ IDE ATA/ATAPI  / ATA Channel 1 ]

     :
                                        ATA Channel 1
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          mshdc.inf
       ID                                     Intel-3a26
                                     Channel 1

  [ IDE ATA/ATAPI  / ATA Channel 1 ]

     :
                                        ATA Channel 1
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          mshdc.inf
       ID                                     Intel-3a20
                                     Channel 1

     :
      IRQ                                               15
                                                    0170-0177
                                                    0376-0376

  [ IDE ATA/ATAPI  / Intel(R) ICH10 Family 2 port Serial ATA Storage Controller 2 - 3A26 ]

     :
                                        Intel(R) ICH10 Family 2 port Serial ATA Storage Controller 2 - 3A26
                                            25.02.2008
                                          9.0.0.1005
                                       Intel
      INF-                                          oem2.inf
       ID                                     PCI\VEN_8086&DEV_3A26&SUBSYS_B0021458&REV_00
                                     @system32\DRIVERS\pci.sys,#65536;PCI bus %1, device %2, function %3;(0,31,5)
      PCI-                                    Intel 82801JB ICH10 - 2-port SATA Controller

     :
      IRQ                                               19
                                                    F100-F10F
                                                    F200-F20F
                                                    F300-F303
                                                    F400-F407
                                                    F500-F503
                                                    F600-F607

  [ IDE ATA/ATAPI  / Intel(R) ICH10 Family 4 port Serial ATA Storage Controller 1 - 3A20 ]

     :
                                        Intel(R) ICH10 Family 4 port Serial ATA Storage Controller 1 - 3A20
                                            25.02.2008
                                          9.0.0.1005
                                       Intel
      INF-                                          oem2.inf
       ID                                     PCI\VEN_8086&DEV_3A20&SUBSYS_B0021458&REV_00
                                     @system32\DRIVERS\pci.sys,#65536;PCI bus %1, device %2, function %3;(0,31,2)
      PCI-                                    Intel 82801JB ICH10 - 4-port SATA Controller

     :
                                                    F800-F80F
                                                    F900-F90F

  [  / NVIDIA GeForce 9800 GT ]

     :
                                        NVIDIA GeForce 9800 GT
                                            11.01.2010
                                          8.17.11.9621
                                       NVIDIA
      INF-                                          oem9.inf
       ID                                     PCI\VEN_10DE&DEV_0605&SUBSYS_82A01043&REV_A2
                                     @system32\DRIVERS\pci.sys,#65536;PCI bus %1, device %2, function %3;(2,0,0)
      PCI-                                    Asus EN9800GT Video Adapter

     :
      IRQ                                               16
                                                  000A0000-000BFFFF
                                                  D0000000-DFFFFFFF
                                                  F8000000-F9FFFFFF
                                                  FA000000-FAFFFFFF
                                                    03B0-03BB
                                                    03C0-03DF
                                                    EF00-EF7F

  [    /  ]

     :
                                        Floppy disk drive
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          flpydisk.inf
       ID                                     FDC\GENERIC_FLOPPY_DRIVE

  [   / SAMSUNG HD753LJ ATA Device ]

     :
                                        SAMSUNG HD753LJ ATA Device
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          disk.inf
       ID                                     IDE\DiskSAMSUNG_HD753LJ_________________________1AA01113
                                     Channel 1, Target 0, Lun 0

  [    / Ancillary Function Driver for Winsock ]

     :
                                        Ancillary Function Driver for Winsock

  [    / Beep ]

     :
                                        Beep

  [    / CNG ]

     :
                                        CNG

  [    / gdrv ]

     :
                                        gdrv

  [    / Hardware Policy Driver ]

     :
                                        Hardware Policy Driver

  [    / HTTP ]

     :
                                        HTTP

  [    / Kaspersky Anti-Virus NDIS 6 Filter ]

     :
                                        Kaspersky Anti-Virus NDIS 6 Filter

  [    / Kaspersky Lab Boot Guard Driver ]

     :
                                        Kaspersky Lab Boot Guard Driver

  [    / Kernel Mode Driver Frameworks service ]

     :
                                        Kernel Mode Driver Frameworks service

  [    / kl1 ]

     :
                                        kl1

  [    / KSecDD ]

     :
                                        KSecDD

  [    / KSecPkg ]

     :
                                        KSecPkg

  [    / LDDM Graphics Subsystem ]

     :
                                        LDDM Graphics Subsystem

  [    / Link-Layer Topology Discovery Mapper I/O Driver ]

     :
                                        Link-Layer Topology Discovery Mapper I/O Driver

  [    / Link-Layer Topology Discovery Responder ]

     :
                                        Link-Layer Topology Discovery Responder

  [    / msisadrv ]

     :
                                        msisadrv

  [    / NDProxy ]

     :
                                        NDProxy

  [    / NETBT ]

     :
                                        NETBT

  [    / NSI proxy service driver. ]

     :
                                        NSI proxy service driver.

  [    / Null ]

     :
                                        Null

  [    / PEAUTH ]

     :
                                        PEAUTH

  [    / Performance Counters for Windows Driver ]

     :
                                        Performance Counters for Windows Driver

  [    / RDP Encoder Mirror Driver ]

     :
                                        RDP Encoder Mirror Driver

  [    / RDPCDD ]

     :
                                        RDPCDD

  [    / Reflector Display Driver used to gain access to graphics data ]

     :
                                        Reflector Display Driver used to gain access to graphics data

  [    / Security Driver ]

     :
                                        Security Driver

  [    / Security Processor Loader Driver ]

     :
                                        Security Processor Loader Driver

  [    / Storage volumes ]

     :
                                        Storage volumes

  [    / System Attribute Cache ]

     :
                                        System Attribute Cache

  [    / TCP/IP Registry Compatibility ]

     :
                                        TCP/IP Registry Compatibility

  [    / VgaSave ]

     :
                                        VgaSave

  [    / WFP Lightweight Filter ]

     :
                                        WFP Lightweight Filter

  [    /        ]

     :
                                              

  [    /    ]

     :
                                          

  [    /    ]

     :
                                          

  [    /    ]

     :
                                          

  [    /    Windows ]

     :
                                           Windows

  [    /   NetIO Legacy TDI ]

     :
                                          NetIO Legacy TDI

  [    /   TCP/IP ]

     :
                                          TCP/IP

  [    /    IPv6 ARP ]

     :
                                           IPv6 ARP

  [    /     Bitlocker ]

     :
                                            Bitlocker

  [    /   (CLFS) ]

     :
                                          (CLFS)

  [    /   QoS ]

     :
                                          QoS

  [    /   NDIS ]

     :
                                          NDIS

  [ ,     / Realtek High Definition Audio ]

     :
                                        Realtek High Definition Audio
                                            24.07.2008
                                          6.0.1.5672
                                       Realtek Semiconductor Corp.
      INF-                                          oem3.inf
       ID                                     HDAUDIO\FUNC_01&VEN_10EC&DEV_0888&SUBSYS_1458A002&REV_1000
                                     Internal High Definition Audio Bus

  [  /   PS/2 ]

     :
                                        Standard PS/2 Keyboard
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          keyboard.inf
       ID                                     ACPI\PNP0303
      PnP-                                    101/102-Key or MS Natural Keyboard

     :
      IRQ                                               01
                                                    0060-0060
                                                    0064-0064

  [  / ACPI x64-based PC ]

     :
                                        ACPI x64-based PC
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          hal.inf
       ID                                     acpiapic

  [  USB /  USB- ]

     :
                                        USB Root Hub
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          usbport.inf
       ID                                     USB\ROOT_HUB&VID8086&PID3A35&REV0000

  [  USB /  USB- ]

     :
                                        USB Root Hub
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          usbport.inf
       ID                                     USB\ROOT_HUB&VID8086&PID3A34&REV0000

  [  USB /  USB- ]

     :
                                        USB Root Hub
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          usbport.inf
       ID                                     USB\ROOT_HUB&VID8086&PID3A38&REV0000

  [  USB /  USB- ]

     :
                                        USB Root Hub
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          usbport.inf
       ID                                     USB\ROOT_HUB&VID8086&PID3A37&REV0000

  [  USB /  USB- ]

     :
                                        USB Root Hub
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          usbport.inf
       ID                                     USB\ROOT_HUB&VID8086&PID3A39&REV0000

  [  USB /  USB- ]

     :
                                        USB Root Hub
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          usbport.inf
       ID                                     USB\ROOT_HUB&VID8086&PID3A36&REV0000

  [  USB /  USB- ]

     :
                                        USB Root Hub
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          usbport.inf
       ID                                     USB\ROOT_HUB20&VID8086&PID3A3A&REV0000

  [  USB /  USB- ]

     :
                                        USB Root Hub
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          usbport.inf
       ID                                     USB\ROOT_HUB20&VID8086&PID3A3C&REV0000

  [  USB /  - USB   Intel(R) ICH10 - 3A3A ]

     :
                                        Intel(R) ICH10 Family USB Enhanced Host Controller - 3A3A
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          usbport.inf
       ID                                     PCI\VEN_8086&DEV_3A3A&SUBSYS_50061458&REV_00
                                     @system32\DRIVERS\pci.sys,#65536;PCI bus %1, device %2, function %3;(0,29,7)
      PCI-                                    Intel 82801JB ICH10 - USB2 Enhanced Host Controller

     :
      IRQ                                               23
                                                  FDFFD000-FDFFD3FF

  [  USB /  - USB   Intel(R) ICH10 - 3A3C ]

     :
                                        Intel(R) ICH10 Family USB Enhanced Host Controller - 3A3C
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          usbport.inf
       ID                                     PCI\VEN_8086&DEV_3A3C&SUBSYS_50061458&REV_00
                                     @system32\DRIVERS\pci.sys,#65536;PCI bus %1, device %2, function %3;(0,26,7)
      PCI-                                    Intel 82801JB ICH10 - USB2 Enhanced Host Controller

     :
      IRQ                                               18
                                                  FDFFE000-FDFFE3FF

  [  USB /  USB  ]

     :
                                        USB Composite Device
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          usb.inf
       ID                                     USB\VID_046D&PID_C049&REV_5200
                                     Port_#0001.Hub_#0002

  [  USB /  - USB   Intel(R) ICH10 - 3A34 ]

     :
                                        Intel(R) ICH10 Family USB Universal Host Controller - 3A34
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          usbport.inf
       ID                                     PCI\VEN_8086&DEV_3A34&SUBSYS_50041458&REV_00
                                     @system32\DRIVERS\pci.sys,#65536;PCI bus %1, device %2, function %3;(0,29,0)
      PCI-                                    Intel 82801JB ICH10 - USB Universal Host Controller

     :
      IRQ                                               23
                                                    FC00-FC1F

  [  USB /  - USB   Intel(R) ICH10 - 3A35 ]

     :
                                        Intel(R) ICH10 Family USB Universal Host Controller - 3A35
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          usbport.inf
       ID                                     PCI\VEN_8086&DEV_3A35&SUBSYS_50041458&REV_00
                                     @system32\DRIVERS\pci.sys,#65536;PCI bus %1, device %2, function %3;(0,29,1)
      PCI-                                    Intel 82801JB ICH10 - USB Universal Host Controller

     :
      IRQ                                               19
                                                    FB00-FB1F

  [  USB /  - USB   Intel(R) ICH10 - 3A36 ]

     :
                                        Intel(R) ICH10 Family USB Universal Host Controller - 3A36
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          usbport.inf
       ID                                     PCI\VEN_8086&DEV_3A36&SUBSYS_50041458&REV_00
                                     @system32\DRIVERS\pci.sys,#65536;PCI bus %1, device %2, function %3;(0,29,2)
      PCI-                                    Intel 82801JB ICH10 - USB Universal Host Controller

     :
      IRQ                                               18
                                                    FA00-FA1F

  [  USB /  - USB   Intel(R) ICH10 - 3A37 ]

     :
                                        Intel(R) ICH10 Family USB Universal Host Controller - 3A37
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          usbport.inf
       ID                                     PCI\VEN_8086&DEV_3A37&SUBSYS_50041458&REV_00
                                     @system32\DRIVERS\pci.sys,#65536;PCI bus %1, device %2, function %3;(0,26,0)
      PCI-                                    Intel 82801JB ICH10 - USB Universal Host Controller

     :
      IRQ                                               16
                                                    FF00-FF1F

  [  USB /  - USB   Intel(R) ICH10 - 3A38 ]

     :
                                        Intel(R) ICH10 Family USB Universal Host Controller - 3A38
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          usbport.inf
       ID                                     PCI\VEN_8086&DEV_3A38&SUBSYS_50041458&REV_00
                                     @system32\DRIVERS\pci.sys,#65536;PCI bus %1, device %2, function %3;(0,26,1)
      PCI-                                    Intel 82801JB ICH10 - USB Universal Host Controller

     :
      IRQ                                               21
                                                    FE00-FE1F

  [  USB /  - USB   Intel(R) ICH10 - 3A39 ]

     :
                                        Intel(R) ICH10 Family USB Universal Host Controller - 3A39
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          usbport.inf
       ID                                     PCI\VEN_8086&DEV_3A39&SUBSYS_50041458&REV_00
                                     @system32\DRIVERS\pci.sys,#65536;PCI bus %1, device %2, function %3;(0,26,2)
      PCI-                                    Intel 82801JB ICH10 - USB Universal Host Controller

     :
      IRQ                                               18
                                                    FD00-FD1F

  [    /     ]

     :
                                        Standard floppy disk controller
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          fdc.inf
       ID                                     ACPI\PNP0700
      PnP-                                    Floppy Disk Controller

     :
      DMA                                               02
      IRQ                                               06
                                                    03F0-03F5
                                                    03F7-03F7

  [    / GIGABYTE GBB36X Controller ]

     :
                                        GIGABYTE GBB36X Controller
                                            01.10.2008
                                          1.17.42.8
                                       JMicron Technology Corp.
      INF-                                          oem4.inf
       ID                                     PCI\VEN_197B&DEV_2363&SUBSYS_B0001458&REV_02
                                     @system32\DRIVERS\pci.sys,#65536;PCI bus %1, device %2, function %3;(7,0,0)
      PCI-                                    Gigabyte GBB363 SATA-II RAID Controller

     :
      IRQ                                               17
                                                  FD6FE000-FD6FFFFF
                                                    BB00-BB0F
                                                    BC00-BC03
                                                    BD00-BD07
                                                    BE00-BE03
                                                    BF00-BF07

  [  / SyncMaster 940N,SyncMaster Magic CX915N/CX916N/CX917N ]

     :
                                        SyncMaster 940N,SyncMaster Magic CX915N/CX916N/CX917N
                                            15.02.2007
                                          3.0.0.0
                                       Samsung
      INF-                                          oem8.inf
       ID                                     MONITOR\SAM01E1
                                                 Samsung SyncMaster 940N/MagicSyncMaster CX915N/CX916N/CX917N

  [      / HID-  ]

     :
                                        HID-compliant mouse
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          msmouse.inf
       ID                                     HID\VID_046D&PID_C049&REV_5200&MI_00

  [      / Microsoft USB Wireless IntelliMouse Explorer ]

     :
                                        Microsoft USB Wireless IntelliMouse Explorer
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          msmouse.inf
       ID                                     HID\VID_045E&PID_0059&REV_0016&Col01

  [  (COM  LPT) / Communications Port (COM1) ]

     :
                                        Communications Port (COM1)
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          msports.inf
       ID                                     ACPI\PNP0501
      PnP-                                    16550A-compatible UART Serial Port

     :
      IRQ                                               04
                                                    03F8-03FF

  [  / Intel(R) Core(TM) i7 CPU         920  @ 2.67GHz ]

     :
                                        Intel(R) Core(TM) i7 CPU         920  @ 2.67GHz
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          cpu.inf
       ID                                     ACPI\GenuineIntel_-_Intel64_Family_6_Model_26

  [  / Intel(R) Core(TM) i7 CPU         920  @ 2.67GHz ]

     :
                                        Intel(R) Core(TM) i7 CPU         920  @ 2.67GHz
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          cpu.inf
       ID                                     ACPI\GenuineIntel_-_Intel64_Family_6_Model_26

  [  / Intel(R) Core(TM) i7 CPU         920  @ 2.67GHz ]

     :
                                        Intel(R) Core(TM) i7 CPU         920  @ 2.67GHz
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          cpu.inf
       ID                                     ACPI\GenuineIntel_-_Intel64_Family_6_Model_26

  [  / Intel(R) Core(TM) i7 CPU         920  @ 2.67GHz ]

     :
                                        Intel(R) Core(TM) i7 CPU         920  @ 2.67GHz
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          cpu.inf
       ID                                     ACPI\GenuineIntel_-_Intel64_Family_6_Model_26

  [  / Intel(R) Core(TM) i7 CPU         920  @ 2.67GHz ]

     :
                                        Intel(R) Core(TM) i7 CPU         920  @ 2.67GHz
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          cpu.inf
       ID                                     ACPI\GenuineIntel_-_Intel64_Family_6_Model_26

  [  / Intel(R) Core(TM) i7 CPU         920  @ 2.67GHz ]

     :
                                        Intel(R) Core(TM) i7 CPU         920  @ 2.67GHz
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          cpu.inf
       ID                                     ACPI\GenuineIntel_-_Intel64_Family_6_Model_26

  [  / Intel(R) Core(TM) i7 CPU         920  @ 2.67GHz ]

     :
                                        Intel(R) Core(TM) i7 CPU         920  @ 2.67GHz
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          cpu.inf
       ID                                     ACPI\GenuineIntel_-_Intel64_Family_6_Model_26

  [  / Intel(R) Core(TM) i7 CPU         920  @ 2.67GHz ]

     :
                                        Intel(R) Core(TM) i7 CPU         920  @ 2.67GHz
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          cpu.inf
       ID                                     ACPI\GenuineIntel_-_Intel64_Family_6_Model_26

  [   / Microsoft ISATAP Adapter #2 ]

     :
                                        Microsoft ISATAP Adapter #2
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          nettun.inf
       ID                                     *ISATAP

  [   / Teredo Tunneling Pseudo-Interface ]

     :
                                        Teredo Tunneling Pseudo-Interface
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          nettun.inf
       ID                                     *TEREDO

  [   / WAN Miniport (IKEv2) ]

     :
                                        WAN Miniport (IKEv2)
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          netavpna.inf
       ID                                     ms_agilevpnminiport

  [   /  Microsoft ISATAP ]

     :
                                        Microsoft ISATAP Adapter
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          nettun.inf
       ID                                     *ISATAP

  [   /  WAN (IP) ]

     :
                                        WAN Miniport (IP)
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          netrasa.inf
       ID                                     ms_ndiswanip

  [   /  WAN (IPv6) ]

     :
                                        WAN Miniport (IPv6)
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          netrasa.inf
       ID                                     ms_ndiswanipv6

  [   /  WAN (L2TP) ]

     :
                                        WAN Miniport (L2TP)
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          netrasa.inf
       ID                                     ms_l2tpminiport

  [   /  WAN (PPPoE) ]

     :
                                        WAN Miniport (PPPOE)
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          netrasa.inf
       ID                                     ms_pppoeminiport

  [   /  WAN (PPTP) ]

     :
                                        WAN Miniport (PPTP)
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          netrasa.inf
       ID                                     ms_pptpminiport

  [   / - WAN (SSTP) ]

     :
                                        WAN Miniport (SSTP)
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          netsstpa.inf
       ID                                     ms_sstpminiport

  [   /  WAN ( ) ]

     :
                                        WAN Miniport (Network Monitor)
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          netrasa.inf
       ID                                     ms_ndiswanbh

  [   /   Realtek RTL8168D/8111D Family PCI-E Gigabit Ethernet NIC (NDIS 6.20) ]

     :
                                        Realtek RTL8168D/8111D Family PCI-E Gigabit Ethernet NIC (NDIS 6.20)
                                            26.02.2008
                                          7.2.1127.2008
                                       Microsoft
      INF-                                          netrtx64.inf
       ID                                     PCI\VEN_10EC&DEV_8168&SUBSYS_E0001458&REV_03
                                     @system32\DRIVERS\pci.sys,#65536;PCI bus %1, device %2, function %3;(8,0,0)
      PCI-                                    Realtek RTL8168D/8111D PCI-E Gigabit Ethernet Adapter

     :
      IRQ                                               65536
                                                  FD3F8000-FD3FBFFF
                                                  FD3FF000-FD3FFFFF
                                                    AE00-AEFF

  [   / CMOS   ]

     :
                                        System CMOS/real time clock
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          machine.inf
       ID                                     ACPI\PNP0B00
      PnP-                                    Real-Time Clock

     :
                                                    0070-0073

  [   / Intel(R) 5520/5500/X58 I/O Hub to ESI Port - 3405 ]

     :
                                        Intel(R) 5520/5500/X58 I/O Hub to ESI Port - 3405
                                            08.02.2010
                                          9.1.1.1026
                                       Intel
      INF-                                          oem5.inf
       ID                                     PCI\VEN_8086&DEV_3405&SUBSYS_50001458&REV_12
                                     @system32\DRIVERS\pci.sys,#65536;PCI bus %1, device %2, function %3;(0,0,0)
      PCI-                                    Intel X58 Chipset - ESI Port [B-2]

  [   / Intel(R) 7500/5520/5500 Physical and Link Layer Registers Port 1 - 3427 ]

     :
                                        Intel(R) 7500/5520/5500 Physical and Link Layer Registers Port 1 - 3427
                                            08.02.2010
                                          9.1.1.1026
                                       Intel
      INF-                                          oem5.inf
       ID                                     PCI\VEN_8086&DEV_3427&SUBSYS_00000000&REV_12
                                     @system32\DRIVERS\pci.sys,#65536;PCI bus %1, device %2, function %3;(0,17,0)
      PCI-                                    Intel Tylersburg Chipset - CSI Port 1 [B-2]

  [   / Intel(R) 7500/5520/5500 Routing and Protocol Layer Register Port 1 - 3428 ]

     :
                                        Intel(R) 7500/5520/5500 Routing and Protocol Layer Register Port 1 - 3428
                                            08.02.2010
                                          9.1.1.1026
                                       Intel
      INF-                                          oem5.inf
       ID                                     PCI\VEN_8086&DEV_3428&SUBSYS_00000000&REV_12
                                     @system32\DRIVERS\pci.sys,#65536;PCI bus %1, device %2, function %3;(0,17,1)
      PCI-                                    Intel Tylersburg Chipset - CSI Port 1 [B-2]

  [   / Intel(R) 7500/5520/5500/X58 I/O Hub Control Status and RAS Registers - 3423 ]

     :
                                        Intel(R) 7500/5520/5500/X58 I/O Hub Control Status and RAS Registers - 3423
                                            08.02.2010
                                          9.1.1.1026
                                       Intel
      INF-                                          oem5.inf
       ID                                     PCI\VEN_8086&DEV_3423&SUBSYS_00000000&REV_12
                                     @system32\DRIVERS\pci.sys,#65536;PCI bus %1, device %2, function %3;(0,20,2)
      PCI-                                    Intel Tylersburg Chipset - IOH Control/Status and RAS Registers [B-2]

  [   / Intel(R) 7500/5520/5500/X58 I/O Hub GPIO and Scratch Pad Registers - 3422 ]

     :
                                        Intel(R) 7500/5520/5500/X58 I/O Hub GPIO and Scratch Pad Registers - 3422
                                            08.02.2010
                                          9.1.1.1026
                                       Intel
      INF-                                          oem5.inf
       ID                                     PCI\VEN_8086&DEV_3422&SUBSYS_00000000&REV_12
                                     @system32\DRIVERS\pci.sys,#65536;PCI bus %1, device %2, function %3;(0,20,1)
      PCI-                                    Intel Tylersburg Chipset - Scratchpad/GPIO Registers [B-2]

  [   / Intel(R) 7500/5520/5500/X58 I/O Hub I/OxAPIC Interrupt Controller - 342D ]

     :
                                        Intel(R) 7500/5520/5500/X58 I/O Hub I/OxAPIC Interrupt Controller - 342D
                                            08.02.2010
                                          9.1.1.1026
                                       Intel
      INF-                                          oem5.inf
       ID                                     PCI\VEN_8086&DEV_342D&SUBSYS_00000000&REV_12
                                     @system32\DRIVERS\pci.sys,#65536;PCI bus %1, device %2, function %3;(0,19,0)
      PCI-                                    Intel Tylersburg Chipset - I/OxAPIC Interrupt Controller [B-2]

     :
                                                  FDFFF000-FDFFFFFF

  [   / Intel(R) 7500/5520/5500/X58 I/O Hub PCI Express Root Port 1 - 3408 ]

     :
                                        Intel(R) 7500/5520/5500/X58 I/O Hub PCI Express Root Port 1 - 3408
                                            08.02.2010
                                          9.1.1.1026
                                       Intel
      INF-                                          oem5.inf
       ID                                     PCI\VEN_8086&DEV_3408&SUBSYS_50011458&REV_12
                                     @system32\DRIVERS\pci.sys,#65536;PCI bus %1, device %2, function %3;(0,1,0)
      PCI-                                    Intel Tylersburg Chipset - PCI Express Root Port 1 (x4/x2) [B-2]

     :
      IRQ                                               16
                                                  FDA00000-FDAFFFFF
                                                  FDB00000-FDBFFFFF
                                                    7000-7FFF

  [   / Intel(R) 7500/5520/5500/X58 I/O Hub PCI Express Root Port 3 - 340A ]

     :
                                        Intel(R) 7500/5520/5500/X58 I/O Hub PCI Express Root Port 3 - 340A
                                            08.02.2010
                                          9.1.1.1026
                                       Intel
      INF-                                          oem5.inf
       ID                                     PCI\VEN_8086&DEV_340A&SUBSYS_50011458&REV_12
                                     @system32\DRIVERS\pci.sys,#65536;PCI bus %1, device %2, function %3;(0,3,0)
      PCI-                                    Intel Tylersburg Chipset - PCI Express Root Port 3 (x16/x8/x4) [B-2]

     :
      IRQ                                               16
                                                  000A0000-000BFFFF
                                                  D0000000-DFFFFFFF
                                                  F8000000-FBFFFFFF
                                                    03B0-03BB
                                                    03C0-03DF
                                                    E000-EFFF

  [   / Intel(R) 7500/5520/5500/X58 I/O Hub PCI Express Root Port 7 - 340E ]

     :
                                        Intel(R) 7500/5520/5500/X58 I/O Hub PCI Express Root Port 7 - 340E
                                            08.02.2010
                                          9.1.1.1026
                                       Intel
      INF-                                          oem5.inf
       ID                                     PCI\VEN_8086&DEV_340E&SUBSYS_50011458&REV_12
                                     @system32\DRIVERS\pci.sys,#65536;PCI bus %1, device %2, function %3;(0,7,0)
      PCI-                                    Intel Tylersburg Chipset - PCI Express Root Port 7 (x16/x8/x4) [B-2]

     :
      IRQ                                               16
                                                  FCF00000-FCFFFFFF
                                                  FDE00000-FDEFFFFF
                                                    9000-9FFF

  [   / Intel(R) 7500/5520/5500/X58 I/O Hub PCI Express Root Port 9 - 3410 ]

     :
                                        Intel(R) 7500/5520/5500/X58 I/O Hub PCI Express Root Port 9 - 3410
                                            08.02.2010
                                          9.1.1.1026
                                       Intel
      INF-                                          oem5.inf
       ID                                     PCI\VEN_8086&DEV_3410&SUBSYS_50011458&REV_12
                                     @system32\DRIVERS\pci.sys,#65536;PCI bus %1, device %2, function %3;(0,9,0)
      PCI-                                    Intel Tylersburg Chipset - PCI Express Root Port 9 (x8/x4) [B-2]

     :
      IRQ                                               16
                                                  FDC00000-FDCFFFFF
                                                  FDD00000-FDDFFFFF
                                                    8000-8FFF

  [   / Intel(R) 7500/5520/5500/X58 I/O Hub System Management Registers - 342E ]

     :
                                        Intel(R) 7500/5520/5500/X58 I/O Hub System Management Registers - 342E
                                            08.02.2010
                                          9.1.1.1026
                                       Intel
      INF-                                          oem5.inf
       ID                                     PCI\VEN_8086&DEV_342E&SUBSYS_00000000&REV_12
                                     @system32\DRIVERS\pci.sys,#65536;PCI bus %1, device %2, function %3;(0,20,0)
      PCI-                                    Intel Tylersburg Chipset - System Management Registers [B-2]

  [   / Intel(R) 7500/5520/5500/X58 Physical and Link Layer Registers Port 0 - 3425 ]

     :
                                        Intel(R) 7500/5520/5500/X58 Physical and Link Layer Registers Port 0 - 3425
                                            08.02.2010
                                          9.1.1.1026
                                       Intel
      INF-                                          oem5.inf
       ID                                     PCI\VEN_8086&DEV_3425&SUBSYS_00000000&REV_12
                                     @system32\DRIVERS\pci.sys,#65536;PCI bus %1, device %2, function %3;(0,16,0)
      PCI-                                    Intel Tylersburg Chipset - CSI Port 0 [B-2]

  [   / Intel(R) 7500/5520/5500/X58 Routing and Protocol Layer Registers Port 0 - 3426 ]

     :
                                        Intel(R) 7500/5520/5500/X58 Routing and Protocol Layer Registers Port 0 - 3426
                                            08.02.2010
                                          9.1.1.1026
                                       Intel
      INF-                                          oem5.inf
       ID                                     PCI\VEN_8086&DEV_3426&SUBSYS_00000000&REV_12
                                     @system32\DRIVERS\pci.sys,#65536;PCI bus %1, device %2, function %3;(0,16,1)
      PCI-                                    Intel Tylersburg Chipset - CSI Port 0 [B-2]

  [   / Intel(R) 7500/5520/5500/X58 Trusted Execution Technology Registers - 342F ]

     :
                                        Intel(R) 7500/5520/5500/X58 Trusted Execution Technology Registers - 342F
                                            08.02.2010
                                          9.1.1.1026
                                       Intel
      INF-                                          oem5.inf
       ID                                     PCI\VEN_8086&DEV_342F&SUBSYS_00000000&REV_12
                                     @system32\DRIVERS\pci.sys,#65536;PCI bus %1, device %2, function %3;(0,21,0)
      PCI-                                    Intel Tylersburg Chipset - Trusted Execution Technology Registers [B-2]

  [   / Intel(R) 7500/5520/X58 I/O Hub PCI Express Root Port 5 - 340C ]

     :
                                        Intel(R) 7500/5520/X58 I/O Hub PCI Express Root Port 5 - 340C
                                            08.02.2010
                                          9.1.1.1026
                                       Intel
      INF-                                          oem5.inf
       ID                                     PCI\VEN_8086&DEV_340C&SUBSYS_50011458&REV_12
                                     @system32\DRIVERS\pci.sys,#65536;PCI bus %1, device %2, function %3;(0,5,0)
      PCI-                                    Intel Tylersburg Chipset - PCI Express Root Port 5 (x8/x4) [B-2]

     :
      IRQ                                               16
                                                  FD200000-FD2FFFFF
                                                  FD900000-FD9FFFFF
                                                    D000-DFFF

  [   / Intel(R) 82801 PCI  - 244E ]

     :
                                        Intel(R) 82801 PCI Bridge - 244E
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          machine.inf
       ID                                     PCI\VEN_8086&DEV_244E&SUBSYS_50001458&REV_90
                                     @system32\DRIVERS\pci.sys,#65536;PCI bus %1, device %2, function %3;(0,30,0)
      PCI-                                    Intel 82801JB I/O Controller Hub 10 (ICH10) [A-0]

     :
                                                  FD000000-FD0FFFFF
                                                  FD100000-FD1FFFFF
                                                    6000-6FFF

  [   / Intel(R) 82802 Firmware  ]

     :
                                        Intel(R) 82802 Firmware Hub Device
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          machine.inf
       ID                                     ACPI\INT0800
      PnP-                                    Intel Flash EEPROM

     :
                                                  FFB80000-FFBFFFFF

  [   / Microsoft ACPI-  ]

     :
                                        Microsoft ACPI-Compliant System
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          acpi.inf
       ID                                     ACPI_HAL\PNP0C08
      PnP-                                    ACPI Driver/BIOS

     :
      IRQ                                               100
      IRQ                                               101
      IRQ                                               102
      IRQ                                               103
      IRQ                                               104
      IRQ                                               105
      IRQ                                               106
      IRQ                                               107
      IRQ                                               108
      IRQ                                               109
      IRQ                                               110
      IRQ                                               111
      IRQ                                               112
      IRQ                                               113
      IRQ                                               114
      IRQ                                               115
      IRQ                                               116
      IRQ                                               117
      IRQ                                               118
      IRQ                                               119
      IRQ                                               120
      IRQ                                               121
      IRQ                                               122
      IRQ                                               123
      IRQ                                               124
      IRQ                                               125
      IRQ                                               126
      IRQ                                               127
      IRQ                                               128
      IRQ                                               129
      IRQ                                               130
      IRQ                                               131
      IRQ                                               132
      IRQ                                               133
      IRQ                                               134
      IRQ                                               135
      IRQ                                               136
      IRQ                                               137
      IRQ                                               138
      IRQ                                               139
      IRQ                                               140
      IRQ                                               141
      IRQ                                               142
      IRQ                                               143
      IRQ                                               144
      IRQ                                               145
      IRQ                                               146
      IRQ                                               147
      IRQ                                               148
      IRQ                                               149
      IRQ                                               150
      IRQ                                               151
      IRQ                                               152
      IRQ                                               153
      IRQ                                               154
      IRQ                                               155
      IRQ                                               156
      IRQ                                               157
      IRQ                                               158
      IRQ                                               159
      IRQ                                               160
      IRQ                                               161
      IRQ                                               162
      IRQ                                               163
      IRQ                                               164
      IRQ                                               165
      IRQ                                               166
      IRQ                                               167
      IRQ                                               168
      IRQ                                               169
      IRQ                                               170
      IRQ                                               171
      IRQ                                               172
      IRQ                                               173
      IRQ                                               174
      IRQ                                               175
      IRQ                                               176
      IRQ                                               177
      IRQ                                               178
      IRQ                                               179
      IRQ                                               180
      IRQ                                               181
      IRQ                                               182
      IRQ                                               183
      IRQ                                               184
      IRQ                                               185
      IRQ                                               186
      IRQ                                               187
      IRQ                                               188
      IRQ                                               189
      IRQ                                               190
      IRQ                                               81
      IRQ                                               82
      IRQ                                               83
      IRQ                                               84
      IRQ                                               85
      IRQ                                               86
      IRQ                                               87
      IRQ                                               88
      IRQ                                               89
      IRQ                                               90
      IRQ                                               91
      IRQ                                               92
      IRQ                                               93
      IRQ                                               94
      IRQ                                               95
      IRQ                                               96
      IRQ                                               97
      IRQ                                               98
      IRQ                                               99

  [   / Microsoft System Management BIOS  ]

     :
                                        Microsoft System Management BIOS Driver
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          machine.inf
       ID                                     ROOT\mssmbios

  [   / Remote Desktop Device Redirector Bus ]

     :
                                        Remote Desktop Device Redirector Bus
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          rdpbus.inf
       ID                                     ROOT\RDPBUS

  [   / UMBus    ]

     :
                                        UMBus Root Bus Enumerator
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          umbus.inf
       ID                                     root\umbus

  [   / UMBus  ]

     :
                                        UMBus Enumerator
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          umbus.inf
       ID                                     UMB\UMBUS

  [   /   ]

     :
                                        Numeric data processor
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          machine.inf
       ID                                     ACPI\PNP0C04
      PnP-                                    Numeric Data Processor

     :
      IRQ                                               13
                                                    00F0-00FF

  [   /   ]

     :
                                        System speaker
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          machine.inf
       ID                                     ACPI\PNP0800
      PnP-                                    PC Speaker

     :
                                                    0061-0061

  [   /    ]

     :
                                        High precision event timer
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          machine.inf
       ID                                     ACPI\PNP0103
      PnP-                                    High Precision Event Timer

     :
      IRQ                                               00
      IRQ                                               08
                                                  FED00000-FED003FF

  [   /   ]

     :
                                        Volume Manager
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          machine.inf
       ID                                     ROOT\VOLMGR

  [   /     ]

     :
                                        Terminal Server Keyboard Driver
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          machine.inf
       ID                                     ROOT\RDP_KBD

  [   /     ]

     :
                                        Terminal Server Mouse Driver
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          machine.inf
       ID                                     ROOT\RDP_MOU

  [   /     () ]

     :
                                        Microsoft Virtual Drive Enumerator Driver
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          machine.inf
       ID                                     ROOT\vdrvroot

  [   /      ]

     :
                                        File as Volume Driver
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          blbdrive.inf
       ID                                     ROOT\BLBDRIVE

  [   /   ACPI ]

     :
                                        ACPI Power Button
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          machine.inf
       ID                                     ACPI\PNP0C0C
      PnP-                                    Power Button

  [   /  High Definition Audio (Microsoft) ]

     :
                                        High Definition Audio Controller
                                            13.07.2009
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          hdaudbus.inf
       ID                                     PCI\VEN_8086&DEV_3A3E&SUBSYS_A0021458&REV_00
                                     @system32\DRIVERS\pci.sys,#65536;PCI bus %1, device %2, function %3;(0,27,0)
      PCI-                                    Intel 82801JB ICH10 - High Definition Audio Controller

     :
      IRQ                                               22
                                                  FDFF8000-FDFFBFFF

  [   /  LPC- Intel(R) ICH10R - 3A16 ]

     :
                                        Intel(R) ICH10R LPC Interface Controller - 3A16
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          machine.inf
       ID                                     PCI\VEN_8086&DEV_3A16&SUBSYS_50011458&REV_00
                                     @system32\DRIVERS\pci.sys,#65536;PCI bus %1, device %2, function %3;(0,31,0)
      PCI-                                    Intel 82801JB ICH10R - LPC Bridge

  [   /  SMBus  Intel(R) ICH10 - 3A30 ]

     :
                                        Intel(R) ICH10 Family SMBus Controller - 3A30
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          machine.inf
       ID                                     PCI\VEN_8086&DEV_3A30&SUBSYS_50011458&REV_00
                                     @system32\DRIVERS\pci.sys,#65536;PCI bus %1, device %2, function %3;(0,31,3)
      PCI-                                    Intel 82801JB ICH10 - SMBus Controller

     :
      IRQ                                               07
                                                  FDFFC000-FDFFC0FF
                                                    0500-051F

  [   /      ]

     :
                                        Direct memory access controller
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          machine.inf
       ID                                     ACPI\PNP0200
      PnP-                                    DMA Controller

     :
      DMA                                               04
                                                    0000-000F
                                                    0080-0090
                                                    0094-009F
                                                    00C0-00DF

  [   /   PCI Express 1  Intel(R) ICH10 - 3A40 ]

     :
                                        Intel(R) ICH10 Family PCI Express Root Port 1 - 3A40
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          machine.inf
       ID                                     PCI\VEN_8086&DEV_3A40&SUBSYS_50011458&REV_00
                                     @system32\DRIVERS\pci.sys,#65536;PCI bus %1, device %2, function %3;(0,28,0)
      PCI-                                    Intel 82801JB ICH10 - PCI Express Root Port 1

     :
      IRQ                                               16
                                                  FD700000-FD7FFFFF
                                                  FD800000-FD8FFFFF
                                                    C000-CFFF

  [   /   PCI Express 2  Intel(R) ICH10 - 3A42 ]

     :
                                        Intel(R) ICH10 Family PCI Express Root Port 2 - 3A42
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          machine.inf
       ID                                     PCI\VEN_8086&DEV_3A42&SUBSYS_50011458&REV_00
                                     @system32\DRIVERS\pci.sys,#65536;PCI bus %1, device %2, function %3;(0,28,1)
      PCI-                                    Intel 82801JB ICH10 - PCI Express Root Port 2

     :
      IRQ                                               17
                                                  FD500000-FD5FFFFF
                                                  FD600000-FD6FFFFF
                                                    B000-BFFF

  [   /   PCI Express 5  Intel(R) ICH10 - 3A48 ]

     :
                                        Intel(R) ICH10 Family PCI Express Root Port 5 - 3A48
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          machine.inf
       ID                                     PCI\VEN_8086&DEV_3A48&SUBSYS_50011458&REV_00
                                     @system32\DRIVERS\pci.sys,#65536;PCI bus %1, device %2, function %3;(0,28,4)
      PCI-                                    Intel 82801JB ICH10 - PCI Express Root Port 5

     :
      IRQ                                               16
                                                  FD300000-FD3FFFFF
                                                  FD400000-FD4FFFFF
                                                    A000-AFFF

  [   /    ]

     :
                                        Composite Bus Enumerator
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          compositebus.inf
       ID                                     ROOT\CompositeBus

  [   /    Plug and Play ]

     :
                                        Plug and Play Software Device Enumerator
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          machine.inf
       ID                                     root\swenum

  [   /    ]

     :
                                        Programmable interrupt controller
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          machine.inf
       ID                                     ACPI\PNP0000
      PnP-                                    Programmable Interrupt Controller

     :
                                                    0020-0021
                                                    00A0-00A1

  [   /    ]

     :
                                        Motherboard resources
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          machine.inf
       ID                                     ACPI\PNP0C02
      PnP-                                    Thermal Monitoring ACPI Device

     :
                                                  E0000000-EFFFFFFF

  [   /    ]

     :
                                        Motherboard resources
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          machine.inf
       ID                                     ACPI\PNP0C02
      PnP-                                    Thermal Monitoring ACPI Device

     :
                                                    0010-001F
                                                    0022-003F
                                                    0044-005F
                                                    0062-0063
                                                    0065-006F
                                                    0074-007F
                                                    0091-0093
                                                    00A2-00BF
                                                    00E0-00EF
                                                    0290-0294
                                                    0290-029F
                                                    04D0-04D1
                                                    0800-087F
                                                    0880-088F

  [   /    ]

     :
                                        Motherboard resources
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          machine.inf
       ID                                     ACPI\PNP0C02
      PnP-                                    Thermal Monitoring ACPI Device

     :
                                                    0400-04CF
                                                    04D2-04FF

  [   /   ]

     :
                                        System board
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          machine.inf
       ID                                     ACPI\PNP0C01
      PnP-                                    System Board Extension

     :
                                                  00000000-0009FFFF
                                                  000CD200-000CFFFF
                                                  000E0000-000EFFFF
                                                  000F0000-000F7FFF
                                                  000F8000-000FBFFF
                                                  000FC000-000FFFFF
                                                  00100000-CFEDFFFF
                                                  CFEE0000-CFEFFFFF
                                                  FEC00000-FEC00FFF
                                                  FED10000-FED1DFFF
                                                  FED20000-FED8FFFF
                                                  FEE00000-FEE00FFF
                                                  FFB00000-FFB7FFFF
                                                  FFF00000-FFFFFFFF

  [   /   ]

     :
                                        System timer
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          machine.inf
       ID                                     ACPI\PNP0100
      PnP-                                    System Timer

     :
                                                    0040-0043

  [   /    ACPI ]

     :
                                        ACPI Fixed Feature Button
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          machine.inf
       ID                                     ACPI\FixedButton

  [   /  PCI ]

     :
                                        PCI bus
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          machine.inf
       ID                                     ACPI\PNP0A03
      PnP-                                    PCI Bus

     :
                                                  000A0000-000BFFFF
                                                  000C0000-000DFFFF
                                                  CFF00000-FEBFFFFF
                                                    0000-0CF7
                                                    0D00-FFFF

  [      /     ]

     :
                                        Generic volume shadow copy
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          volsnap.inf
       ID                                     STORAGE\VolumeSnapshot

  [      /     ]

     :
                                        Generic volume shadow copy
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          volsnap.inf
       ID                                     STORAGE\VolumeSnapshot

  [      /     ]

     :
                                        Generic volume shadow copy
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          volsnap.inf
       ID                                     STORAGE\VolumeSnapshot

  [      /     ]

     :
                                        Generic volume shadow copy
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          volsnap.inf
       ID                                     STORAGE\VolumeSnapshot

  [      /     ]

     :
                                        Generic volume shadow copy
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          volsnap.inf
       ID                                     STORAGE\VolumeSnapshot

  [      /     ]

     :
                                        Generic volume shadow copy
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          volsnap.inf
       ID                                     STORAGE\VolumeSnapshot

  [      /     ]

     :
                                        Generic volume shadow copy
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          volsnap.inf
       ID                                     STORAGE\VolumeSnapshot

  [    /   ]

     :
                                        Generic volume
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          volume.inf
       ID                                     STORAGE\Volume

  [    /   ]

     :
                                        Generic volume
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          volume.inf
       ID                                     STORAGE\Volume

  [  HID (Human Interface Devices) / HID Non-User Input Data Filter (KB 911895) ]

     :
                                        HID Non-User Input Data Filter (KB 911895)
                                            08.05.2009
                                          7.0.258.0
                                       Microsoft
      INF-                                          oem1.inf
       ID                                     HID\VID_045E&PID_0059&REV_0016&Col02

  [  HID (Human Interface Devices) / HID-  ]

     :
                                        HID-compliant device
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          input.inf
       ID                                     HID\VID_046D&PID_C049&REV_5200&MI_01&Col01

  [  HID (Human Interface Devices) / HID-  ]

     :
                                        HID-compliant device
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          input.inf
       ID                                     HID\VID_046D&PID_C049&REV_5200&MI_01&Col02

  [  HID (Human Interface Devices) / Microsoft USB Wireless IntelliMouse Explorer ]

     :
                                        Microsoft USB Wireless IntelliMouse Explorer
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          input.inf
       ID                                     USB\VID_045E&PID_0059&REV_0016
                                     Port_#0001.Hub_#0007

  [  HID (Human Interface Devices) / USB-  ]

     :
                                        USB Input Device
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          input.inf
       ID                                     USB\VID_046D&PID_C049&REV_5200&MI_00
                                     0000.001a.0001.001.000.000.000.000.000

  [  HID (Human Interface Devices) / USB-  ]

     :
                                        USB Input Device
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          input.inf
       ID                                     USB\VID_046D&PID_C049&REV_5200&MI_01
                                     0000.001a.0001.001.000.000.000.000.000

  [ -  IEEE 1394 / Texas Instruments 1394 OHCI- - ]

     :
                                        Texas Instruments 1394 OHCI Compliant Host Controller
                                            21.06.2006
                                          6.1.7600.16385
                                       Microsoft
      INF-                                          1394.inf
       ID                                     PCI\VEN_104C&DEV_8024&SUBSYS_10001458&REV_00
                                     @system32\DRIVERS\pci.sys,#65536;PCI bus %1, device %2, function %3;(9,6,0)
      PCI-                                    Texas Instruments TSB43AB23 1394A-2000 OHCI PHY/Link-Layer Controller

     :
      IRQ                                               18
                                                  FD1F8000-FD1FBFFF
                                                  FD1FF000-FD1FF7FF


--------[   ]---------------------------------------------------------------------------------------

     PCI:
       2,  0,  0                   Asus EN9800GT Video Adapter
       7,  0,  0                   Gigabyte GBB363 SATA-II RAID Controller
       0,  30,  0                  Intel 82801JB I/O Controller Hub 10 (ICH10) [A-0]
       0,  31,  5                  Intel 82801JB ICH10 - 2-port SATA Controller
       0,  31,  2                  Intel 82801JB ICH10 - 4-port SATA Controller
       0,  27,  0                  Intel 82801JB ICH10 - High Definition Audio Controller
       0,  28,  0                  Intel 82801JB ICH10 - PCI Express Root Port 1
       0,  28,  1                  Intel 82801JB ICH10 - PCI Express Root Port 2
       0,  28,  4                  Intel 82801JB ICH10 - PCI Express Root Port 5
       0,  31,  3                  Intel 82801JB ICH10 - SMBus Controller
       0,  26,  0                  Intel 82801JB ICH10 - USB Universal Host Controller
       0,  26,  1                  Intel 82801JB ICH10 - USB Universal Host Controller
       0,  26,  2                  Intel 82801JB ICH10 - USB Universal Host Controller
       0,  29,  0                  Intel 82801JB ICH10 - USB Universal Host Controller
       0,  29,  1                  Intel 82801JB ICH10 - USB Universal Host Controller
       0,  29,  2                  Intel 82801JB ICH10 - USB Universal Host Controller
       0,  26,  7                  Intel 82801JB ICH10 - USB2 Enhanced Host Controller
       0,  29,  7                  Intel 82801JB ICH10 - USB2 Enhanced Host Controller
       0,  31,  0                  Intel 82801JB ICH10R - LPC Bridge
       255,  4,  1                 Intel IMC Channel 0 Address Registers
       255,  4,  0                 Intel IMC Channel 0 Control Registers
       255,  4,  2                 Intel IMC Channel 0 Rank Registers
       255,  4,  3                 Intel IMC Channel 0 Thermal Control
       255,  5,  1                 Intel IMC Channel 1 Address Registers
       255,  5,  0                 Intel IMC Channel 1 Control Registers
       255,  5,  2                 Intel IMC Channel 1 Rank Registers
       255,  5,  3                 Intel IMC Channel 1 Thermal Control
       255,  6,  1                 Intel IMC Channel 2 Address Registers
       255,  6,  0                 Intel IMC Channel 2 Control Registers
       255,  6,  2                 Intel IMC Channel 2 Rank Registers
       255,  6,  3                 Intel IMC Channel 2 Thermal Control
       255,  3,  0                 Intel IMC Registers
       255,  3,  1                 Intel IMC Target Address Decoder
       255,  3,  4                 Intel IMC Test Registers
       255,  0,  0                 Intel QuickPath Architecture - Generic Non-Core Registers
       255,  0,  1                 Intel QuickPath Architecture - System Address Decoder (SAD)
       255,  2,  0                 Intel QuickPath Interconnect - QPI Link 0 Control
       255,  2,  1                 Intel QuickPath Interconnect - QPI Physical 0 Control
       0,  16,  0                  Intel Tylersburg Chipset - CSI Port 0 [B-2]
       0,  16,  1                  Intel Tylersburg Chipset - CSI Port 0 [B-2]
       0,  17,  0                  Intel Tylersburg Chipset - CSI Port 1 [B-2]
       0,  17,  1                  Intel Tylersburg Chipset - CSI Port 1 [B-2]
       0,  19,  0                  Intel Tylersburg Chipset - I/OxAPIC Interrupt Controller [B-2]
       0,  20,  2                  Intel Tylersburg Chipset - IOH Control/Status and RAS Registers [B-2]
       0,  1,  0                   Intel Tylersburg Chipset - PCI Express Root Port 1 (x4/x2) [B-2]
       0,  3,  0                   Intel Tylersburg Chipset - PCI Express Root Port 3 (x16/x8/x4) [B-2]
       0,  5,  0                   Intel Tylersburg Chipset - PCI Express Root Port 5 (x8/x4) [B-2]
       0,  7,  0                   Intel Tylersburg Chipset - PCI Express Root Port 7 (x16/x8/x4) [B-2]
       0,  9,  0                   Intel Tylersburg Chipset - PCI Express Root Port 9 (x8/x4) [B-2]
       0,  20,  1                  Intel Tylersburg Chipset - Scratchpad/GPIO Registers [B-2]
       0,  20,  0                  Intel Tylersburg Chipset - System Management Registers [B-2]
       0,  21,  0                  Intel Tylersburg Chipset - Trusted Execution Technology Registers [B-2]
       0,  0,  0                   Intel X58 Chipset - ESI Port [B-2]
       8,  0,  0                   Realtek RTL8168D/8111D PCI-E Gigabit Ethernet Adapter
       9,  6,  0                   Texas Instruments TSB43AB23 1394A-2000 OHCI PHY/Link-Layer Controller

     PnP:
      PNP0303                                           101/102-Key or MS Natural Keyboard
      PNP0501                                           16550A-compatible UART Serial Port
      PNP0C08                                           ACPI Driver/BIOS
      PNP0200                                           DMA Controller
      PNP0700                                           Floppy Disk Controller
      PNP0103                                           High Precision Event Timer
      INT0800                                           Intel Flash EEPROM
      GENUINEINTEL_-_INTEL64_FAMILY_6_MODEL_26_-_INTEL(R)_CORE(TM)_I7_CPU_________920__@_2.67GHZIntel(R) Core(TM) i7 CPU         920  @ 2.67GHz
      GENUINEINTEL_-_INTEL64_FAMILY_6_MODEL_26_-_INTEL(R)_CORE(TM)_I7_CPU_________920__@_2.67GHZIntel(R) Core(TM) i7 CPU         920  @ 2.67GHz
      GENUINEINTEL_-_INTEL64_FAMILY_6_MODEL_26_-_INTEL(R)_CORE(TM)_I7_CPU_________920__@_2.67GHZIntel(R) Core(TM) i7 CPU         920  @ 2.67GHz
      GENUINEINTEL_-_INTEL64_FAMILY_6_MODEL_26_-_INTEL(R)_CORE(TM)_I7_CPU_________920__@_2.67GHZIntel(R) Core(TM) i7 CPU         920  @ 2.67GHz
      GENUINEINTEL_-_INTEL64_FAMILY_6_MODEL_26_-_INTEL(R)_CORE(TM)_I7_CPU_________920__@_2.67GHZIntel(R) Core(TM) i7 CPU         920  @ 2.67GHz
      GENUINEINTEL_-_INTEL64_FAMILY_6_MODEL_26_-_INTEL(R)_CORE(TM)_I7_CPU_________920__@_2.67GHZIntel(R) Core(TM) i7 CPU         920  @ 2.67GHz
      GENUINEINTEL_-_INTEL64_FAMILY_6_MODEL_26_-_INTEL(R)_CORE(TM)_I7_CPU_________920__@_2.67GHZIntel(R) Core(TM) i7 CPU         920  @ 2.67GHz
      GENUINEINTEL_-_INTEL64_FAMILY_6_MODEL_26_-_INTEL(R)_CORE(TM)_I7_CPU_________920__@_2.67GHZIntel(R) Core(TM) i7 CPU         920  @ 2.67GHz
      ISATAP                                            Microsoft ISATAP Adapter #2
      PNP0C04                                           Numeric Data Processor
      PNP0800                                           PC Speaker
      PNP0A03                                           PCI Bus
      PNP0C0C                                           Power Button
      PNP0000                                           Programmable Interrupt Controller
      PNP0B00                                           Real-Time Clock
      PNP0C01                                           System Board Extension
      PNP0100                                           System Timer
      TEREDO                                            Teredo Tunneling Pseudo-Interface
      PNP0C02                                           Thermal Monitoring ACPI Device
      PNP0C02                                           Thermal Monitoring ACPI Device
      PNP0C02                                           Thermal Monitoring ACPI Device
      ISATAP                                             Microsoft ISATAP
      FIXEDBUTTON                                          ACPI

     USB:
      045E 0059                                         Microsoft USB Wireless IntelliMouse Explorer
      046D C049                                         USB- 
      046D C049                                         USB- 
      046D C049                                          USB 

    :
      COM1                                              Communications Port (COM1)


--------[  PCI ]----------------------------------------------------------------------------------------------

  [ Asus EN9800GT Video Adapter ]

     :
                                      Asus EN9800GT Video Adapter
                                                 PCI Express 2.0 x16
       /  /                        2 / 0 / 0
      ID                                      10DE-0605
                               1043-82A0
                                         0300 (VGA Display Controller)
                                                  A2
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

  [ Gigabyte GBB363 SATA-II RAID Controller ]

     :
                                      Gigabyte GBB363 SATA-II RAID Controller
                                                 PCI Express 1.0 x1
       /  /                        7 / 0 / 0
      ID                                      197B-2363
                               1458-B000
                                         0101 (IDE Controller)
                                                  02
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

  [ Intel 82801JB I/O Controller Hub 10 (ICH10) [A-0] ]

     :
                                      Intel 82801JB I/O Controller Hub 10 (ICH10) [A-0]
                                                 PCI
       /  /                        0 / 30 / 0
      ID                                      8086-244E
                               0000-0000
                                         0604 (PCI/PCI Bridge)
                                                  90
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

  [ Intel 82801JB ICH10 - 2-port SATA Controller ]

     :
                                      Intel 82801JB ICH10 - 2-port SATA Controller
                                                 PCI
       /  /                        0 / 31 / 5
      ID                                      8086-3A26
                               1458-B002
                                         0101 (IDE Controller)
                                                  00
      Fast Back-to-Back Transactions                    , 

     :
      66-                                    
      Bus Mastering                                     

  [ Intel 82801JB ICH10 - 4-port SATA Controller ]

     :
                                      Intel 82801JB ICH10 - 4-port SATA Controller
                                                 PCI
       /  /                        0 / 31 / 2
      ID                                      8086-3A20
                               1458-B002
                                         0101 (IDE Controller)
                                                  00
      Fast Back-to-Back Transactions                    , 

     :
      66-                                    
      Bus Mastering                                     

  [ Intel 82801JB ICH10 - High Definition Audio Controller ]

     :
                                      Intel 82801JB ICH10 - High Definition Audio Controller
                                                 PCI Express 1.0
       /  /                        0 / 27 / 0
      ID                                      8086-3A3E
                               1458-A002
                                         0403 (High Definition Audio)
                                                  00
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

  [ Intel 82801JB ICH10 - PCI Express Root Port 1 ]

     :
                                      Intel 82801JB ICH10 - PCI Express Root Port 1
                                                 PCI
       /  /                        0 / 28 / 0
      ID                                      8086-3A40
                               0000-0000
                                         0604 (PCI/PCI Bridge)
                                                  00
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

  [ Intel 82801JB ICH10 - PCI Express Root Port 2 ]

     :
                                      Intel 82801JB ICH10 - PCI Express Root Port 2
                                                 PCI
       /  /                        0 / 28 / 1
      ID                                      8086-3A42
                               0000-0000
                                         0604 (PCI/PCI Bridge)
                                                  00
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

  [ Intel 82801JB ICH10 - PCI Express Root Port 5 ]

     :
                                      Intel 82801JB ICH10 - PCI Express Root Port 5
                                                 PCI
       /  /                        0 / 28 / 4
      ID                                      8086-3A48
                               0000-0000
                                         0604 (PCI/PCI Bridge)
                                                  00
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

  [ Intel 82801JB ICH10 - SMBus Controller ]

     :
                                      Intel 82801JB ICH10 - SMBus Controller
                                                 PCI
       /  /                        0 / 31 / 3
      ID                                      8086-3A30
                               1458-5001
                                         0C05 (SMBus Controller)
                                                  00
      Fast Back-to-Back Transactions                    , 

     :
      66-                                     
      Bus Mastering                                     

  [ Intel 82801JB ICH10 - USB Universal Host Controller ]

     :
                                      Intel 82801JB ICH10 - USB Universal Host Controller
                                                 PCI
       /  /                        0 / 26 / 0
      ID                                      8086-3A37
                               1458-5004
                                         0C03 (USB Controller)
                                                  00
      Fast Back-to-Back Transactions                    , 

     :
      66-                                     
      Bus Mastering                                     

  [ Intel 82801JB ICH10 - USB Universal Host Controller ]

     :
                                      Intel 82801JB ICH10 - USB Universal Host Controller
                                                 PCI
       /  /                        0 / 26 / 1
      ID                                      8086-3A38
                               1458-5004
                                         0C03 (USB Controller)
                                                  00
      Fast Back-to-Back Transactions                    , 

     :
      66-                                     
      Bus Mastering                                     

  [ Intel 82801JB ICH10 - USB Universal Host Controller ]

     :
                                      Intel 82801JB ICH10 - USB Universal Host Controller
                                                 PCI
       /  /                        0 / 26 / 2
      ID                                      8086-3A39
                               1458-5004
                                         0C03 (USB Controller)
                                                  00
      Fast Back-to-Back Transactions                    , 

     :
      66-                                     
      Bus Mastering                                     

  [ Intel 82801JB ICH10 - USB Universal Host Controller ]

     :
                                      Intel 82801JB ICH10 - USB Universal Host Controller
                                                 PCI
       /  /                        0 / 29 / 0
      ID                                      8086-3A34
                               1458-5004
                                         0C03 (USB Controller)
                                                  00
      Fast Back-to-Back Transactions                    , 

     :
      66-                                     
      Bus Mastering                                     

  [ Intel 82801JB ICH10 - USB Universal Host Controller ]

     :
                                      Intel 82801JB ICH10 - USB Universal Host Controller
                                                 PCI
       /  /                        0 / 29 / 1
      ID                                      8086-3A35
                               1458-5004
                                         0C03 (USB Controller)
                                                  00
      Fast Back-to-Back Transactions                    , 

     :
      66-                                     
      Bus Mastering                                     

  [ Intel 82801JB ICH10 - USB Universal Host Controller ]

     :
                                      Intel 82801JB ICH10 - USB Universal Host Controller
                                                 PCI
       /  /                        0 / 29 / 2
      ID                                      8086-3A36
                               1458-5004
                                         0C03 (USB Controller)
                                                  00
      Fast Back-to-Back Transactions                    , 

     :
      66-                                     
      Bus Mastering                                     

  [ Intel 82801JB ICH10 - USB2 Enhanced Host Controller ]

     :
                                      Intel 82801JB ICH10 - USB2 Enhanced Host Controller
                                                 PCI
       /  /                        0 / 26 / 7
      ID                                      8086-3A3C
                               1458-5006
                                         0C03 (USB Controller)
                                                  00
      Fast Back-to-Back Transactions                    , 

     :
      66-                                     
      Bus Mastering                                     

  [ Intel 82801JB ICH10 - USB2 Enhanced Host Controller ]

     :
                                      Intel 82801JB ICH10 - USB2 Enhanced Host Controller
                                                 PCI
       /  /                        0 / 29 / 7
      ID                                      8086-3A3A
                               1458-5006
                                         0C03 (USB Controller)
                                                  00
      Fast Back-to-Back Transactions                    , 

     :
      66-                                     
      Bus Mastering                                     

  [ Intel 82801JB ICH10R - LPC Bridge ]

     :
                                      Intel 82801JB ICH10R - LPC Bridge
                                                 PCI
       /  /                        0 / 31 / 0
      ID                                      8086-3A16
                               1458-5001
                                         0601 (PCI/ISA Bridge)
                                                  00
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

  [ Intel IMC Channel 0 Address Registers ]

     :
                                      Intel IMC Channel 0 Address Registers
                                                 PCI
       /  /                        255 / 4 / 1
      ID                                      8086-2C21
                               1458-5000
                                         0600 (Host/PCI Bridge)
                                                  04
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

  [ Intel IMC Channel 0 Control Registers ]

     :
                                      Intel IMC Channel 0 Control Registers
                                                 PCI
       /  /                        255 / 4 / 0
      ID                                      8086-2C20
                               1458-5000
                                         0600 (Host/PCI Bridge)
                                                  04
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

  [ Intel IMC Channel 0 Rank Registers ]

     :
                                      Intel IMC Channel 0 Rank Registers
                                                 PCI
       /  /                        255 / 4 / 2
      ID                                      8086-2C22
                               1458-5000
                                         0600 (Host/PCI Bridge)
                                                  04
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

  [ Intel IMC Channel 0 Thermal Control ]

     :
                                      Intel IMC Channel 0 Thermal Control
                                                 PCI
       /  /                        255 / 4 / 3
      ID                                      8086-2C23
                               1458-5000
                                         0600 (Host/PCI Bridge)
                                                  04
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

  [ Intel IMC Channel 1 Address Registers ]

     :
                                      Intel IMC Channel 1 Address Registers
                                                 PCI
       /  /                        255 / 5 / 1
      ID                                      8086-2C29
                               1458-5000
                                         0600 (Host/PCI Bridge)
                                                  04
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

  [ Intel IMC Channel 1 Control Registers ]

     :
                                      Intel IMC Channel 1 Control Registers
                                                 PCI
       /  /                        255 / 5 / 0
      ID                                      8086-2C28
                               1458-5000
                                         0600 (Host/PCI Bridge)
                                                  04
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

  [ Intel IMC Channel 1 Rank Registers ]

     :
                                      Intel IMC Channel 1 Rank Registers
                                                 PCI
       /  /                        255 / 5 / 2
      ID                                      8086-2C2A
                               1458-5000
                                         0600 (Host/PCI Bridge)
                                                  04
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

  [ Intel IMC Channel 1 Thermal Control ]

     :
                                      Intel IMC Channel 1 Thermal Control
                                                 PCI
       /  /                        255 / 5 / 3
      ID                                      8086-2C2B
                               1458-5000
                                         0600 (Host/PCI Bridge)
                                                  04
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

  [ Intel IMC Channel 2 Address Registers ]

     :
                                      Intel IMC Channel 2 Address Registers
                                                 PCI
       /  /                        255 / 6 / 1
      ID                                      8086-2C31
                               1458-5000
                                         0600 (Host/PCI Bridge)
                                                  04
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

  [ Intel IMC Channel 2 Control Registers ]

     :
                                      Intel IMC Channel 2 Control Registers
                                                 PCI
       /  /                        255 / 6 / 0
      ID                                      8086-2C30
                               1458-5000
                                         0600 (Host/PCI Bridge)
                                                  04
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

  [ Intel IMC Channel 2 Rank Registers ]

     :
                                      Intel IMC Channel 2 Rank Registers
                                                 PCI
       /  /                        255 / 6 / 2
      ID                                      8086-2C32
                               1458-5000
                                         0600 (Host/PCI Bridge)
                                                  04
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

  [ Intel IMC Channel 2 Thermal Control ]

     :
                                      Intel IMC Channel 2 Thermal Control
                                                 PCI
       /  /                        255 / 6 / 3
      ID                                      8086-2C33
                               1458-5000
                                         0600 (Host/PCI Bridge)
                                                  04
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

  [ Intel IMC Registers ]

     :
                                      Intel IMC Registers
                                                 PCI
       /  /                        255 / 3 / 0
      ID                                      8086-2C18
                               1458-5000
                                         0600 (Host/PCI Bridge)
                                                  04
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

  [ Intel IMC Target Address Decoder ]

     :
                                      Intel IMC Target Address Decoder
                                                 PCI
       /  /                        255 / 3 / 1
      ID                                      8086-2C19
                               1458-5000
                                         0600 (Host/PCI Bridge)
                                                  04
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

  [ Intel IMC Test Registers ]

     :
                                      Intel IMC Test Registers
                                                 PCI
       /  /                        255 / 3 / 4
      ID                                      8086-2C1C
                               1458-5000
                                         0600 (Host/PCI Bridge)
                                                  04
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

  [ Intel QuickPath Architecture - Generic Non-Core Registers ]

     :
                                      Intel QuickPath Architecture - Generic Non-Core Registers
                                                 PCI
       /  /                        255 / 0 / 0
      ID                                      8086-2C41
                               1458-5000
                                         0600 (Host/PCI Bridge)
                                                  04
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

  [ Intel QuickPath Architecture - System Address Decoder (SAD) ]

     :
                                      Intel QuickPath Architecture - System Address Decoder (SAD)
                                                 PCI
       /  /                        255 / 0 / 1
      ID                                      8086-2C01
                               1458-5000
                                         0600 (Host/PCI Bridge)
                                                  04
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

  [ Intel QuickPath Interconnect - QPI Link 0 Control ]

     :
                                      Intel QuickPath Interconnect - QPI Link 0 Control
                                                 PCI
       /  /                        255 / 2 / 0
      ID                                      8086-2C10
                               1458-5000
                                         0600 (Host/PCI Bridge)
                                                  04
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

    QPI Link:
       QPI                                        1.0
                                 1600   (3.20 GT/s)
                                16800   (33.60 GT/s)
                                     2400   (4.80 GT/s)

  [ Intel QuickPath Interconnect - QPI Physical 0 Control ]

     :
                                      Intel QuickPath Interconnect - QPI Physical 0 Control
                                                 PCI
       /  /                        255 / 2 / 1
      ID                                      8086-2C11
                               1458-5000
                                         0600 (Host/PCI Bridge)
                                                  04
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

    QPI Link:
       QPI                                        1.0
                                 1600   (3.20 GT/s)
                                16800   (33.60 GT/s)
                                     2400   (4.80 GT/s)

  [ Intel Tylersburg Chipset - CSI Port 0 [B-2] ]

     :
                                      Intel Tylersburg Chipset - CSI Port 0 [B-2]
                                                 PCI
       /  /                        0 / 16 / 0
      ID                                      8086-3425
                               0000-0000
                                         0800 (Programmable Interrupt Controller)
                                                  12
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

  [ Intel Tylersburg Chipset - CSI Port 0 [B-2] ]

     :
                                      Intel Tylersburg Chipset - CSI Port 0 [B-2]
                                                 PCI
       /  /                        0 / 16 / 1
      ID                                      8086-3426
                               0000-0000
                                         0800 (Programmable Interrupt Controller)
                                                  12
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

  [ Intel Tylersburg Chipset - CSI Port 1 [B-2] ]

     :
                                      Intel Tylersburg Chipset - CSI Port 1 [B-2]
                                                 PCI
       /  /                        0 / 17 / 0
      ID                                      8086-3427
                               0000-0000
                                         0800 (Programmable Interrupt Controller)
                                                  12
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

  [ Intel Tylersburg Chipset - CSI Port 1 [B-2] ]

     :
                                      Intel Tylersburg Chipset - CSI Port 1 [B-2]
                                                 PCI
       /  /                        0 / 17 / 1
      ID                                      8086-3428
                               0000-0000
                                         0800 (Programmable Interrupt Controller)
                                                  12
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

  [ Intel Tylersburg Chipset - I/OxAPIC Interrupt Controller [B-2] ]

     :
                                      Intel Tylersburg Chipset - I/OxAPIC Interrupt Controller [B-2]
                                                 PCI
       /  /                        0 / 19 / 0
      ID                                      8086-342D
                               0000-0000
                                         0800 (Programmable Interrupt Controller)
                                                  12
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

  [ Intel Tylersburg Chipset - IOH Control/Status and RAS Registers [B-2] ]

     :
                                      Intel Tylersburg Chipset - IOH Control/Status and RAS Registers [B-2]
                                                 PCI Express 2.0
       /  /                        0 / 20 / 2
      ID                                      8086-3423
                               0000-0000
                                         0800 (Programmable Interrupt Controller)
                                                  12
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

  [ Intel Tylersburg Chipset - PCI Express Root Port 1 (x4/x2) [B-2] ]

     :
                                      Intel Tylersburg Chipset - PCI Express Root Port 1 (x4/x2) [B-2]
                                                 PCI
       /  /                        0 / 1 / 0
      ID                                      8086-3408
                               0000-0000
                                         0604 (PCI/PCI Bridge)
                                                  12
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

  [ Intel Tylersburg Chipset - PCI Express Root Port 3 (x16/x8/x4) [B-2] ]

     :
                                      Intel Tylersburg Chipset - PCI Express Root Port 3 (x16/x8/x4) [B-2]
                                                 PCI
       /  /                        0 / 3 / 0
      ID                                      8086-340A
                               0000-0000
                                         0604 (PCI/PCI Bridge)
                                                  12
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

  [ Intel Tylersburg Chipset - PCI Express Root Port 5 (x8/x4) [B-2] ]

     :
                                      Intel Tylersburg Chipset - PCI Express Root Port 5 (x8/x4) [B-2]
                                                 PCI
       /  /                        0 / 5 / 0
      ID                                      8086-340C
                               0000-0000
                                         0604 (PCI/PCI Bridge)
                                                  12
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

  [ Intel Tylersburg Chipset - PCI Express Root Port 7 (x16/x8/x4) [B-2] ]

     :
                                      Intel Tylersburg Chipset - PCI Express Root Port 7 (x16/x8/x4) [B-2]
                                                 PCI
       /  /                        0 / 7 / 0
      ID                                      8086-340E
                               0000-0000
                                         0604 (PCI/PCI Bridge)
                                                  12
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

  [ Intel Tylersburg Chipset - PCI Express Root Port 9 (x8/x4) [B-2] ]

     :
                                      Intel Tylersburg Chipset - PCI Express Root Port 9 (x8/x4) [B-2]
                                                 PCI
       /  /                        0 / 9 / 0
      ID                                      8086-3410
                               0000-0000
                                         0604 (PCI/PCI Bridge)
                                                  12
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

  [ Intel Tylersburg Chipset - Scratchpad/GPIO Registers [B-2] ]

     :
                                      Intel Tylersburg Chipset - Scratchpad/GPIO Registers [B-2]
                                                 PCI Express 2.0
       /  /                        0 / 20 / 1
      ID                                      8086-3422
                               0000-0000
                                         0800 (Programmable Interrupt Controller)
                                                  12
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

  [ Intel Tylersburg Chipset - System Management Registers [B-2] ]

     :
                                      Intel Tylersburg Chipset - System Management Registers [B-2]
                                                 PCI Express 2.0
       /  /                        0 / 20 / 0
      ID                                      8086-342E
                               0000-0000
                                         0800 (Programmable Interrupt Controller)
                                                  12
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

  [ Intel Tylersburg Chipset - Trusted Execution Technology Registers [B-2] ]

     :
                                      Intel Tylersburg Chipset - Trusted Execution Technology Registers [B-2]
                                                 PCI
       /  /                        0 / 21 / 0
      ID                                      8086-342F
                               0000-0000
                                         0800 (Programmable Interrupt Controller)
                                                  12
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

  [ Intel X58 Chipset - ESI Port [B-2] ]

     :
                                      Intel X58 Chipset - ESI Port [B-2]
                                                 PCI
       /  /                        0 / 0 / 0
      ID                                      8086-3405
                               1458-5000
                                         0600 (Host/PCI Bridge)
                                                  12
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

  [ Realtek RTL8168D/8111D PCI-E Gigabit Ethernet Adapter ]

     :
                                      Realtek RTL8168D/8111D PCI-E Gigabit Ethernet Adapter
                                                 PCI Express 2.0 x1
       /  /                        8 / 0 / 0
      ID                                      10EC-8168
                               1458-E000
                                         0200 (Ethernet Controller)
                                                  03
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     

  [ Texas Instruments TSB43AB23 1394A-2000 OHCI PHY/Link-Layer Controller ]

     :
                                      Texas Instruments TSB43AB23 1394A-2000 OHCI PHY/Link-Layer Controller
                                                 PCI
       /  /                        9 / 6 / 0
      ID                                      104C-8024
                               1458-1000
                                         0C00 (FireWire Controller)
                                                  00
      Fast Back-to-Back Transactions                     

     :
      66-                                     
      Bus Mastering                                     


--------[  USB ]----------------------------------------------------------------------------------------------

  [ Microsoft USB Wireless IntelliMouse Explorer (Microsoft Wireless Intellimouse Explorer 1.0A) ]

     :
                                      Microsoft USB Wireless IntelliMouse Explorer
      ID                                      045E-0059
                                         03 / 01 (Human Interface Device)
                                      02
                                           Microsoft
                                                 Microsoft Wireless Intellimouse Explorer 1.0A
        USB                         1.10
                                         Low  (USB 1.1)

  [  USB  (USB Gaming Mouse) ]

     :
                                       USB 
      ID                                      046D-C049
                                         03 / 01 (Human Interface Device)
                                      02
                                           Logitech
                                                 USB Gaming Mouse
        USB                         2.00
                                         Full  (USB 1.1)


--------[   ]-------------------------------------------------------------------------------------------

    DMA 02                                  
    DMA 04                                   
    IRQ 00                                 
    IRQ 01                                 PS/2
    IRQ 04                               Communications Port (COM1)
    IRQ 06                                  
    IRQ 07                                         SMBus  Intel(R) ICH10 - 3A30
    IRQ 08                                 
    IRQ 100                              Microsoft ACPI- 
    IRQ 101                              Microsoft ACPI- 
    IRQ 102                              Microsoft ACPI- 
    IRQ 103                              Microsoft ACPI- 
    IRQ 104                              Microsoft ACPI- 
    IRQ 105                              Microsoft ACPI- 
    IRQ 106                              Microsoft ACPI- 
    IRQ 107                              Microsoft ACPI- 
    IRQ 108                              Microsoft ACPI- 
    IRQ 109                              Microsoft ACPI- 
    IRQ 110                              Microsoft ACPI- 
    IRQ 111                              Microsoft ACPI- 
    IRQ 112                              Microsoft ACPI- 
    IRQ 113                              Microsoft ACPI- 
    IRQ 114                              Microsoft ACPI- 
    IRQ 115                              Microsoft ACPI- 
    IRQ 116                              Microsoft ACPI- 
    IRQ 117                              Microsoft ACPI- 
    IRQ 118                              Microsoft ACPI- 
    IRQ 119                              Microsoft ACPI- 
    IRQ 120                              Microsoft ACPI- 
    IRQ 121                              Microsoft ACPI- 
    IRQ 122                              Microsoft ACPI- 
    IRQ 123                              Microsoft ACPI- 
    IRQ 124                              Microsoft ACPI- 
    IRQ 125                              Microsoft ACPI- 
    IRQ 126                              Microsoft ACPI- 
    IRQ 127                              Microsoft ACPI- 
    IRQ 128                              Microsoft ACPI- 
    IRQ 129                              Microsoft ACPI- 
    IRQ 13                                
    IRQ 130                              Microsoft ACPI- 
    IRQ 131                              Microsoft ACPI- 
    IRQ 132                              Microsoft ACPI- 
    IRQ 133                              Microsoft ACPI- 
    IRQ 134                              Microsoft ACPI- 
    IRQ 135                              Microsoft ACPI- 
    IRQ 136                              Microsoft ACPI- 
    IRQ 137                              Microsoft ACPI- 
    IRQ 138                              Microsoft ACPI- 
    IRQ 139                              Microsoft ACPI- 
    IRQ 14                               ATA Channel 0
    IRQ 140                              Microsoft ACPI- 
    IRQ 141                              Microsoft ACPI- 
    IRQ 142                              Microsoft ACPI- 
    IRQ 143                              Microsoft ACPI- 
    IRQ 144                              Microsoft ACPI- 
    IRQ 145                              Microsoft ACPI- 
    IRQ 146                              Microsoft ACPI- 
    IRQ 147                              Microsoft ACPI- 
    IRQ 148                              Microsoft ACPI- 
    IRQ 149                              Microsoft ACPI- 
    IRQ 15                               ATA Channel 1
    IRQ 150                              Microsoft ACPI- 
    IRQ 151                              Microsoft ACPI- 
    IRQ 152                              Microsoft ACPI- 
    IRQ 153                              Microsoft ACPI- 
    IRQ 154                              Microsoft ACPI- 
    IRQ 155                              Microsoft ACPI- 
    IRQ 156                              Microsoft ACPI- 
    IRQ 157                              Microsoft ACPI- 
    IRQ 158                              Microsoft ACPI- 
    IRQ 159                              Microsoft ACPI- 
    IRQ 16                                         - USB   Intel(R) ICH10 - 3A37
    IRQ 16                                        Intel(R) 7500/5520/5500/X58 I/O Hub PCI Express Root Port 1 - 3408
    IRQ 16                                        Intel(R) 7500/5520/5500/X58 I/O Hub PCI Express Root Port 3 - 340A
    IRQ 16                                        Intel(R) 7500/5520/5500/X58 I/O Hub PCI Express Root Port 7 - 340E
    IRQ 16                                        Intel(R) 7500/5520/5500/X58 I/O Hub PCI Express Root Port 9 - 3410
    IRQ 16                                        Intel(R) 7500/5520/X58 I/O Hub PCI Express Root Port 5 - 340C
    IRQ 16                                          PCI Express 1  Intel(R) ICH10 - 3A40
    IRQ 16                                          PCI Express 5  Intel(R) ICH10 - 3A48
    IRQ 16                                        NVIDIA GeForce 9800 GT
    IRQ 160                              Microsoft ACPI- 
    IRQ 161                              Microsoft ACPI- 
    IRQ 162                              Microsoft ACPI- 
    IRQ 163                              Microsoft ACPI- 
    IRQ 164                              Microsoft ACPI- 
    IRQ 165                              Microsoft ACPI- 
    IRQ 166                              Microsoft ACPI- 
    IRQ 167                              Microsoft ACPI- 
    IRQ 168                              Microsoft ACPI- 
    IRQ 169                              Microsoft ACPI- 
    IRQ 17                                        GIGABYTE GBB36X Controller
    IRQ 17                                          PCI Express 2  Intel(R) ICH10 - 3A42
    IRQ 170                              Microsoft ACPI- 
    IRQ 171                              Microsoft ACPI- 
    IRQ 172                              Microsoft ACPI- 
    IRQ 173                              Microsoft ACPI- 
    IRQ 174                              Microsoft ACPI- 
    IRQ 175                              Microsoft ACPI- 
    IRQ 176                              Microsoft ACPI- 
    IRQ 177                              Microsoft ACPI- 
    IRQ 178                              Microsoft ACPI- 
    IRQ 179                              Microsoft ACPI- 
    IRQ 18                                         - USB   Intel(R) ICH10 - 3A3C
    IRQ 18                                         - USB   Intel(R) ICH10 - 3A36
    IRQ 18                                         - USB   Intel(R) ICH10 - 3A39
    IRQ 18                                        Texas Instruments 1394 OHCI- -
    IRQ 180                              Microsoft ACPI- 
    IRQ 181                              Microsoft ACPI- 
    IRQ 182                              Microsoft ACPI- 
    IRQ 183                              Microsoft ACPI- 
    IRQ 184                              Microsoft ACPI- 
    IRQ 185                              Microsoft ACPI- 
    IRQ 186                              Microsoft ACPI- 
    IRQ 187                              Microsoft ACPI- 
    IRQ 188                              Microsoft ACPI- 
    IRQ 189                              Microsoft ACPI- 
    IRQ 19                                         - USB   Intel(R) ICH10 - 3A35
    IRQ 19                                        Intel(R) ICH10 Family 2 port Serial ATA Storage Controller 2 - 3A26
    IRQ 190                              Microsoft ACPI- 
    IRQ 21                                         - USB   Intel(R) ICH10 - 3A38
    IRQ 22                                         High Definition Audio (Microsoft)
    IRQ 23                                         - USB   Intel(R) ICH10 - 3A3A
    IRQ 23                                         - USB   Intel(R) ICH10 - 3A34
    IRQ 65536                              Realtek RTL8168D/8111D Family PCI-E Gigabit Ethernet NIC (NDIS 6.20)
    IRQ 81                               Microsoft ACPI- 
    IRQ 82                               Microsoft ACPI- 
    IRQ 83                               Microsoft ACPI- 
    IRQ 84                               Microsoft ACPI- 
    IRQ 85                               Microsoft ACPI- 
    IRQ 86                               Microsoft ACPI- 
    IRQ 87                               Microsoft ACPI- 
    IRQ 88                               Microsoft ACPI- 
    IRQ 89                               Microsoft ACPI- 
    IRQ 90                               Microsoft ACPI- 
    IRQ 91                               Microsoft ACPI- 
    IRQ 92                               Microsoft ACPI- 
    IRQ 93                               Microsoft ACPI- 
    IRQ 94                               Microsoft ACPI- 
    IRQ 95                               Microsoft ACPI- 
    IRQ 96                               Microsoft ACPI- 
    IRQ 97                               Microsoft ACPI- 
    IRQ 98                               Microsoft ACPI- 
    IRQ 99                               Microsoft ACPI- 
     00000000-0009FFFF              
     000A0000-000BFFFF                       PCI
     000A0000-000BFFFF                      NVIDIA GeForce 9800 GT
     000A0000-000BFFFF               Intel(R) 7500/5520/5500/X58 I/O Hub PCI Express Root Port 3 - 340A
     000C0000-000DFFFF                       PCI
     000CD200-000CFFFF              
     000E0000-000EFFFF              
     000F0000-000F7FFF              
     000F8000-000FBFFF              
     000FC000-000FFFFF              
     00100000-CFEDFFFF              
     CFEE0000-CFEFFFFF              
     CFF00000-FEBFFFFF                       PCI
     D0000000-DFFFFFFF             Intel(R) 7500/5520/5500/X58 I/O Hub PCI Express Root Port 3 - 340A
     D0000000-DFFFFFFF             NVIDIA GeForce 9800 GT
     E0000000-EFFFFFFF               
     F8000000-F9FFFFFF             NVIDIA GeForce 9800 GT
     F8000000-FBFFFFFF             Intel(R) 7500/5520/5500/X58 I/O Hub PCI Express Root Port 3 - 340A
     FA000000-FAFFFFFF             NVIDIA GeForce 9800 GT
     FCF00000-FCFFFFFF             Intel(R) 7500/5520/5500/X58 I/O Hub PCI Express Root Port 7 - 340E
     FD000000-FD0FFFFF             Intel(R) 82801 PCI  - 244E
     FD100000-FD1FFFFF             Intel(R) 82801 PCI  - 244E
     FD1F8000-FD1FBFFF             Texas Instruments 1394 OHCI- -
     FD1FF000-FD1FF7FF             Texas Instruments 1394 OHCI- -
     FD200000-FD2FFFFF             Intel(R) 7500/5520/X58 I/O Hub PCI Express Root Port 5 - 340C
     FD300000-FD3FFFFF               PCI Express 5  Intel(R) ICH10 - 3A48
     FD3F8000-FD3FBFFF               Realtek RTL8168D/8111D Family PCI-E Gigabit Ethernet NIC (NDIS 6.20)
     FD3FF000-FD3FFFFF               Realtek RTL8168D/8111D Family PCI-E Gigabit Ethernet NIC (NDIS 6.20)
     FD400000-FD4FFFFF               PCI Express 5  Intel(R) ICH10 - 3A48
     FD500000-FD5FFFFF               PCI Express 2  Intel(R) ICH10 - 3A42
     FD600000-FD6FFFFF               PCI Express 2  Intel(R) ICH10 - 3A42
     FD6FE000-FD6FFFFF             GIGABYTE GBB36X Controller
     FD700000-FD7FFFFF               PCI Express 1  Intel(R) ICH10 - 3A40
     FD800000-FD8FFFFF               PCI Express 1  Intel(R) ICH10 - 3A40
     FD900000-FD9FFFFF             Intel(R) 7500/5520/X58 I/O Hub PCI Express Root Port 5 - 340C
     FDA00000-FDAFFFFF             Intel(R) 7500/5520/5500/X58 I/O Hub PCI Express Root Port 1 - 3408
     FDB00000-FDBFFFFF             Intel(R) 7500/5520/5500/X58 I/O Hub PCI Express Root Port 1 - 3408
     FDC00000-FDCFFFFF             Intel(R) 7500/5520/5500/X58 I/O Hub PCI Express Root Port 9 - 3410
     FDD00000-FDDFFFFF             Intel(R) 7500/5520/5500/X58 I/O Hub PCI Express Root Port 9 - 3410
     FDE00000-FDEFFFFF             Intel(R) 7500/5520/5500/X58 I/O Hub PCI Express Root Port 7 - 340E
     FDFF8000-FDFFBFFF              High Definition Audio (Microsoft)
     FDFFC000-FDFFC0FF              SMBus  Intel(R) ICH10 - 3A30
     FDFFD000-FDFFD3FF              - USB   Intel(R) ICH10 - 3A3A
     FDFFE000-FDFFE3FF              - USB   Intel(R) ICH10 - 3A3C
     FDFFF000-FDFFFFFF             Intel(R) 7500/5520/5500/X58 I/O Hub I/OxAPIC Interrupt Controller - 342D
     FEC00000-FEC00FFF              
     FED00000-FED003FF               
     FED10000-FED1DFFF              
     FED20000-FED8FFFF              
     FEE00000-FEE00FFF              
     FFB00000-FFB7FFFF              
     FFB80000-FFBFFFFF             Intel(R) 82802 Firmware 
     FFF00000-FFFFFFFF              
     0000-000F                           
     0000-0CF7                                 PCI
     0010-001F                         
     0020-0021                         
     0022-003F                         
     0040-0043                        
     0044-005F                         
     0060-0060                         PS/2
     0061-0061                        
     0062-0063                         
     0064-0064                         PS/2
     0065-006F                         
     0070-0073                       CMOS  
     0074-007F                         
     0080-0090                           
     0091-0093                         
     0094-009F                           
     00A0-00A1                         
     00A2-00BF                         
     00C0-00DF                           
     00E0-00EF                         
     00F0-00FF                        
     0170-0177                       ATA Channel 1
     01F0-01F7                       ATA Channel 0
     0290-0294                         
     0290-029F                         
     0376-0376                       ATA Channel 1
     03B0-03BB                                NVIDIA GeForce 9800 GT
     03B0-03BB                         Intel(R) 7500/5520/5500/X58 I/O Hub PCI Express Root Port 3 - 340A
     03C0-03DF                                NVIDIA GeForce 9800 GT
     03C0-03DF                         Intel(R) 7500/5520/5500/X58 I/O Hub PCI Express Root Port 3 - 340A
     03F0-03F5                          
     03F6-03F6                       ATA Channel 0
     03F7-03F7                          
     03F8-03FF                       Communications Port (COM1)
     0400-04CF                         
     04D0-04D1                         
     04D2-04FF                         
     0500-051F                        SMBus  Intel(R) ICH10 - 3A30
     0800-087F                         
     0880-088F                         
     0D00-FFFF                                 PCI
     6000-6FFF                       Intel(R) 82801 PCI  - 244E
     7000-7FFF                       Intel(R) 7500/5520/5500/X58 I/O Hub PCI Express Root Port 1 - 3408
     8000-8FFF                       Intel(R) 7500/5520/5500/X58 I/O Hub PCI Express Root Port 9 - 3410
     9000-9FFF                       Intel(R) 7500/5520/5500/X58 I/O Hub PCI Express Root Port 7 - 340E
     A000-AFFF                         PCI Express 5  Intel(R) ICH10 - 3A48
     AE00-AEFF                         Realtek RTL8168D/8111D Family PCI-E Gigabit Ethernet NIC (NDIS 6.20)
     B000-BFFF                         PCI Express 2  Intel(R) ICH10 - 3A42
     BB00-BB0F                       GIGABYTE GBB36X Controller
     BC00-BC03                       GIGABYTE GBB36X Controller
     BD00-BD07                       GIGABYTE GBB36X Controller
     BE00-BE03                       GIGABYTE GBB36X Controller
     BF00-BF07                       GIGABYTE GBB36X Controller
     C000-CFFF                         PCI Express 1  Intel(R) ICH10 - 3A40
     D000-DFFF                       Intel(R) 7500/5520/X58 I/O Hub PCI Express Root Port 5 - 340C
     E000-EFFF                       Intel(R) 7500/5520/5500/X58 I/O Hub PCI Express Root Port 3 - 340A
     EF00-EF7F                       NVIDIA GeForce 9800 GT
     F100-F10F                       Intel(R) ICH10 Family 2 port Serial ATA Storage Controller 2 - 3A26
     F200-F20F                       Intel(R) ICH10 Family 2 port Serial ATA Storage Controller 2 - 3A26
     F300-F303                       Intel(R) ICH10 Family 2 port Serial ATA Storage Controller 2 - 3A26
     F400-F407                       Intel(R) ICH10 Family 2 port Serial ATA Storage Controller 2 - 3A26
     F500-F503                       Intel(R) ICH10 Family 2 port Serial ATA Storage Controller 2 - 3A26
     F600-F607                       Intel(R) ICH10 Family 2 port Serial ATA Storage Controller 2 - 3A26
     F800-F80F                       Intel(R) ICH10 Family 4 port Serial ATA Storage Controller 1 - 3A20
     F900-F90F                       Intel(R) ICH10 Family 4 port Serial ATA Storage Controller 1 - 3A20
     FA00-FA1F                        - USB   Intel(R) ICH10 - 3A36
     FB00-FB1F                        - USB   Intel(R) ICH10 - 3A35
     FC00-FC1F                        - USB   Intel(R) ICH10 - 3A34
     FD00-FD1F                        - USB   Intel(R) ICH10 - 3A39
     FE00-FE1F                        - USB   Intel(R) ICH10 - 3A38
     FF00-FF1F                        - USB   Intel(R) ICH10 - 3A37


--------[  ]--------------------------------------------------------------------------------------------------------

  [   PS/2 ]

     :
                                        PS/2
                                           Japanese keyboard
                                     US
        ANSI                             1251 - @%SystemRoot%\system32\mlang.dll,-4611
        OEM                              866 - @%SystemRoot%\system32\mlang.dll,-4645
                                         1
                                         31

  [ HID-  ]

     :
                                            HID- 
                                         16
                                              
                                         1
                                     500 msec
       X / Y                                       6 / 10
                                 3

     :
                               
      ''                                
                
                                            
                   
                                              
      Sonar                                             


--------[  ]----------------------------------------------------------------------------------------------------

  [ Fax ]

     :
                                             Fax
                                      
                                  
                                            SHRFAX:
                                         Microsoft Shared Fax Driver (v4.00)
                                           Fax
                                         winprint
                                     
                                             3:00 - 3:00
                                               1
                                 0
                                                  

     :
                                            Letter, 8.5 x 11 in
                                              
                                          200 x 200 dpi Mono

  [ Microsoft XPS Document Writer ( ) ]

     :
                                             Microsoft XPS Document Writer
                                      
                                  
                                            XPSPort:
                                         Microsoft XPS Document Writer (v6.00)
                                           Microsoft XPS Document Writer
                                         winprint
                                     
                                             3:00 - 3:00
                                               1
                                 0
                                                  

     :
                                            Letter, 8.5 x 11 in
                                              
                                          600 x 600 dpi Color


--------[  ]------------------------------------------------------------------------------------------------

    AVP                                Registry\Common\Run      C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2010\avp.exe 
    ICQ                                Registry\User\Run        C:\PROGRA~2\ICQ7.0\ICQ.exe silent loginmode=4
    JMB36X IDE Setup                   Registry\Common\Run      C:\Windows\RaidTool\xInsIDE.exe 
    msnmsgr                            Registry\User\Run        C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe /background
    RtHDVCpl                           Registry\Common\Run      RAVCpl64.exe 
    Skype                              Registry\User\Run        C:\Program Files (x86)\Skype\Phone\Skype.exe /nosplash /minimized
    Skytel                             Registry\Common\Run      Skytel.exe 
    swg                                Registry\User\Run        C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe 
    uTorrent                           Registry\User\Run        C:\Program Files (x86)\uTorrent\uTorrent.exe 


--------[  ]---------------------------------------------------------------------------------------------

  [ GoogleUpdateTaskMachineCore ]

     :
                                               GoogleUpdateTaskMachineCore
                                                  
                                           C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
                                     /c
                                            
                                             Keeps your Google software up to date. If this task is disabled or stopped, your Google software will not be kept up to date, meaning security vulnerabilities that may arise cannot be fixed and features may not work. This task uninstalls itself when there is no Google software using it.
                                        
                                               
                                         17.03.2010 10:48:29
                                         17.03.2010 12:56:00

     :
       #1                                            
       #2                                         12:56, ,   16.03.2010

  [ GoogleUpdateTaskMachineUA ]

     :
                                               GoogleUpdateTaskMachineUA
                                                  
                                           C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
                                     /ua /installsource scheduler
                                            
                                             Keeps your Google software up to date. If this task is disabled or stopped, your Google software will not be kept up to date, meaning security vulnerabilities that may arise cannot be fixed and features may not work. This task uninstalls itself when there is no Google software using it.
                                        
                                               
                                         17.03.2010 10:56:00
                                         17.03.2010 11:56:00

     :
       #1                                         1 .  12:56  24 . ,   16.03.2010


--------[   ]-------------------------------------------------------------------------------------

    Torrent                                                                                     2.0.0    uTorrent                                                                                
    Adobe  [ TRIAL VERSION ]                                                                 10.0.45.2    Adobe F [ TRIAL VERSION ]                     Adobe Systems Incorporated                
    Adobe  [ TRIAL VERSION ]                                                                 10.0.45.2    Adobe F [ TRIAL VERSION ]                     Adobe Systems Incorporated                
    Driver Genius Professional Edition v9.0.0.186                                                         Driver Genius Professional Edition_is1                                        2010-03-16
    Energy Saver Advance B8.1015.1 []                                              1.10.0000    {7ED169D4-5053-4166-93DF-53B12AE6C539}        GIGABYTE                        2010-03-16
    EVEREST Corporate Edition v5.30                                                               5.30    EVEREST Corporate Edition_is1                 Lavalys, Inc.                   2010-03-17
    Gigabyte Raid Configurer []                                                    1.00.0000    {3A1B5D40-41E9-43FA-8C7B-A8667F5586EF}        Gigabyte Technology Corp.       2010-03-16
    Google Toolbar for Internet Explorer                                                                  {2318C2B1-4965-11d4-9B18-009027A5CD4F}        Google Inc.                               
    Google Toolbar for Internet Explorer                                                         1.0.0    {18455581-E099-4BA8-BC6B-F34B2F06600C}        Google Inc.                     2010-03-16
    Google Update Helper                                                                    1.2.183.17    {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}        Google Inc.                     2010-03-16
    ICQ Toolbar                                                                                  3.0.0    ICQToolbar                                    ICQ                                       
    ICQ7 []                                                                              7.0    {88EB38EF-4D2C-436D-ABD3-56B232674062}        ICQ                             2010-03-16
    Kaspersky Internet Security 2010                                                         9.0.0.736    InstallWIX_{9D8B0949-7C47-476F-9F06-F900D3B078EA}  Kaspersky Lab                             
    Kaspersky Internet Security 2010                                                         9.0.0.736    {9D8B0949-7C47-476F-9F06-F900D3B078EA}        Kaspersky Lab                   2010-03-16
    K-Lite Codec Pack 5.8.3 (Full)                                                               5.8.3    KLiteCodecPack_is1                                                            2010-03-16
    Microsoft Application Error Reporting                                               12.0.6015.5000    {95120000-00B9-0409-1000-0000000FF1CE}        Microsoft Corporation           2010-03-16
    Microsoft Choice Guard                                                                    2.0.48.0    {F0E12BBA-AD66-4022-A453-A1C8A0C4D570}        Microsoft Corporation           2010-03-16
    mIRC                                                                                          6.34    mIRC                                          mIRC Co. Ltd.                             
    Mozilla Firefox (3.6)                                                                     3.6 (ru)    Mozilla Firefox (3.6)                         Mozilla                                   
    MSVCRT                                                                               14.0.1468.721    {22B775E7-6C42-4FC5-8E10-9A5E3257BD94}        Microsoft                       2010-03-16
    NNScript                                                                                      4.22    NoNameScript                                  ESNation                                  
    NNScript                                                                                      4.22    NoNameScript                                  ESNation                                  
    NVIDIA Display Control Panel                                                                  1.10    NVIDIA Display Control Panel                  NVIDIA Corporation                        
    NVIDIA Drivers                                                                                1.10    NVIDIA Drivers                                NVIDIA Corporation                        
    PVSonyDll                                                                                1.00.0001    {3D3E663D-4E7E-4577-A560-7ECDDD45548A}        NVIDIA Corporation              2010-03-16
    Realtek High Definition Audio Driver []                                       6.0.1.5672    {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}        Realtek Semiconductor Corp.     2010-03-16
    Skype Toolbars                                                                            1.0.4051    {981029E0-7FC9-4CF3-AB39-6F133621921A}        Skype Technologies S.A.         2010-03-16
    Skype 4.2                                                                                 4.2.155    {D103C4BA-F905-437A-8049-DB24763BBE36}        Skype Technologies S.A.         2010-03-16
    System Requirements Lab                                                                               SystemRequirementsLab                                                                   
    Window [ TRIAL VERSION ]                                                             14.0.8098.930    {ED00D0 [ TRIAL VERSION ]                     Microsoft Corporation           2010-03-16
    Window [ TRIAL VERSION ]                                                            14.0.8089.0726    {D1C6B6 [ TRIAL VERSION ]                     Microsoft Corporation           2010-03-16
    WinZip [ TRIAL VERSION ]                                                                 14.0.8688    {CD95F6 [ TRIAL VERSION ]                     WinZip Computing, S.L.          2010-03-16
      Windows Live []                                          14.0.8089.0726    WinLiveSuite_Wave3                            Microsoft Corporation                     
      Windows Live []                                           14.0.8089.726    {0AC4AC8D-45D2-4EE9-8A83-B3D71A83029C}        Microsoft Corporation           2010-03-16
        Windows Live [ ()]                                    5.000.818.5    {518A8485-E038-4A8C-A76B-1C868D95F13E}        Microsoft Corporation           2010-03-16
      Windows Live [ ()]                                   14.0.8014.1029    {205C6BDD-7B73-42DE-8505-9A093F35A238}        Microsoft Corporation           2010-03-16
    . 4.3  Internet Explorer                                                    4.3.0.1010    {2B9C002D-F3C1-4F8A-B29A-7F9E9B473D4D}                                  2010-03-16


--------[  ]----------------------------------------------------------------------------------------------------

    Microsoft Internet Explorer 8.0.7600.16385                              22TKD- [ TRIAL VERSION ]
    Microsoft Windows 7 Ultimate                                            22TKD- [ TRIAL VERSION ]


--------[   ]-------------------------------------------------------------------------------------------------

    386               Virtual Device Driver                                            
    3G2               3GPP2 Audio/Video                                                video/3gpp2
    3GP               3GP File                                                         video/3gpp
    3GP2              3GPP2 Audio/Video                                                video/3gpp2
    3GPP              3GPP File                                                        video/3gpp
    7Z                WinZip File                                                      
    AAC               ADTS Audio                                                       audio/vnd.dlna.adts
    ADT               ADTS Audio                                                       audio/vnd.dlna.adts
    ADTS              ADTS Audio                                                       audio/vnd.dlna.adts
    AIF               AIFF Format Sound                                                audio/aiff
    AIFC              AIFF Format Sound                                                audio/aiff
    AIFF              AIFF Format Sound                                                audio/aiff
    ANI               Animated Cursor                                                  
    APPLICATION       Application Manifest                                             application/x-ms-application
    APPREF-MS         Application Reference                                            
    ASA               ASA File                                                         
    ASF               ASF File                                                         video/x-ms-asf
    ASP               ASP File                                                         
    ASX               Windows Media Audio/Video playlist                               video/x-ms-asf
    AU                AU Format Sound                                                  audio/basic
    AVI               AVI Video File                                                   video/avi
    B64               WinZip File                                                      
    BAT               Windows Batch File                                               
    BHX               WinZip File                                                      
    BLG               Performance Monitor File                                         
    BMP               Bitmap Image                                                     image/bmp
    BZ                WinZip File                                                      
    BZ2               WinZip File                                                      
    C2R               C2R File                                                         
    CAB               WinZip File                                                      
    CAMP              WCS Viewing Condition Profile                                    
    CAT               Security Catalog                                                 application/vnd.ms-pki.seccat
    CDA               CD Audio Track                                                   
    CDMP              WCS Device Profile                                               
    CDX               CDX File                                                         
    CER               Security Certificate                                             application/x-x509-ca-cert
    CHESSTITANSSAVE-MS  .ChessTitansSave-ms                                              
    CHK               Recovered File Fragments                                         
    CHM               Compiled HTML Help file                                          
    CMD               Windows Command Script                                           
    COM               MS-DOS Application                                               
    COMFYCAKESSAVE-MS  .ComfyCakesSave-ms                                               
    COMPOSITEFONT     Composite Font File                                              
    CONTACT           Contact File                                                     text/x-ms-contact
    CPL               Control Panel Item                                               
    CRD               Information Card                                                 
    CRDS              Information Card Store                                           
    CRL               Certificate Revocation List                                      application/pkix-crl
    CRT               Security Certificate                                             application/x-x509-ca-cert
    CSS               Cascading Style Sheet Document                                   text/css
    CTT               Messenger Contact List                                           
    CUR               Cursor                                                           
    DB                Data Base File                                                   
    DER               Security Certificate                                             application/x-x509-ca-cert
    DESKLINK          Desktop Shortcut                                                 
    DIAGCAB           Diagnostic Cabinet                                               
    DIAGCFG           Diagnostic Configuration                                         
    DIAGPKG           Diagnostic Document                                              
    DIB               Bitmap Image                                                     image/bmp
    DIVX              DIVX Video File                                                  video/avi
    DLL               Application Extension                                            application/x-msdownload
    DOCX              OOXML Text Document                                              
    DRV               Device Driver                                                    
    DSN               Microsoft OLE DB Provider for ODBC Drivers                       
    DVR               Microsoft Recorded TV Show                                       
    DVR-MS            Microsoft Recorded TV Show                                       
    DWFX              XPS Document                                                     model/vnd.dwfx+xps
    EASMX             XPS Document                                                     model/vnd.easmx+xps
    EDRWX             XPS Document                                                     model/vnd.edrwx+xps
    EMF               EMF File                                                         
    EPRTX             XPS Document                                                     model/vnd.eprtx+xps
    EVT               EVT File                                                         
    EVTX              EVTX File                                                        
    EXE               Application                                                      application/x-msdownload
    FLV               Flash Video File                                                 
    FON               Font file                                                        
    FREECELLSAVE-MS   .FreeCellSave-ms                                                 
    GADGET            Windows Gadget                                                   
    GIF               GIF Image                                                        image/gif
    GMMP              WCS Gamut Mapping Profile                                        
    GROUP             Contact Group File                                               text/x-ms-group
    GRP               Microsoft Program Group                                          
    GZ                WinZip File                                                      application/x-gzip
    H1C               Windows Help Collection Definition File                          
    H1D               Windows Help Validator File                                      
    H1F               Windows Help Include File                                        
    H1H               Windows Help Merged Hierarchy                                    
    H1K               Windows Help Index File                                          
    H1Q               Windows Help Merged Query Index                                  
    H1S               Compiled Windows Help file                                       
    H1T               Windows Help Table of Contents File                              
    H1V               Windows Help Virtual Topic Definition File                       
    H1W               Windows Help Merged Keyword Index                                
    HDMOV             HDMOV Video File                                                 video/quicktime
    HEARTSSAVE-MS     .HeartsSave-ms                                                   
    HLP               Help File                                                        
    HQX               WinZip File                                                      application/mac-binhex40
    HTA               HTML Application                                                 application/hta
    HTM               HTML Document                                                    text/html
    HTML              HTML Document                                                    text/html
    ICC               ICC Profile                                                      
    ICL               Icon Library                                                     
    ICM               ICC Profile                                                      
    ICO               Icon                                                             image/x-icon
    IFO               IFO File                                                         
    IMG               WinZip File                                                      
    INF               Setup Information                                                
    INI               Configuration Settings                                           
    ISO               WinZip File                                                      
    JFIF              JPEG Image                                                       image/jpeg
    JNT               Journal Document                                                 
    JOB               Task Scheduler Task Object                                       
    JOD               Microsoft.Jet.OLEDB.4.0                                          
    JPE               JPEG Image                                                       image/jpeg
    JPEG              JPEG Image                                                       image/jpeg
    JPG               JPEG Image                                                       image/jpeg
    JS                JScript Script File                                              
    JSE               JScript Encoded File                                             
    JTP               Journal Template                                                 
    JTX               XPS Document                                                     application/x-jtx+xps
    LABEL             Property List                                                    
    LHA               WinZip File                                                      
    LIBRARY-MS        Library Folder                                                   application/windows-library+xml
    LNK               Shortcut                                                         
    LOG               Text Document                                                    
    LZH               WinZip File                                                      
    M1V               MPEG Video File                                                  video/mpeg
    M2P               MPEG Video File                                                  video/mpeg
    M2T               MPEG-TS Video File                                               video/vnd.dlna.mpeg-tts
    M2TS              MPEG-TS Video File                                               video/vnd.dlna.mpeg-tts
    M2V               MPEG Video File                                                  video/mpeg
    M3U               M3U file                                                         audio/x-mpegurl
    M4A               MPEG-4 Audio                                                     audio/mp4
    M4V               M4V Video File                                                   video/mp4
    MAHJONGTITANSSAVE-MS  .MahjongTitansSave-ms                                            
    MAPIMAIL          Mail Service                                                     
    MCL               MCL File                                                         
    MFP               Macromedia Flash Paper                                           application/x-shockwave-flash
    MHT               MHTML Document                                                   message/rfc822
    MHTML             MHTML Document                                                   message/rfc822
    MID               MIDI Sequence                                                    audio/mid
    MIDI              MIDI Sequence                                                    audio/mid
    MIG               Migration Store                                                  
    MIM               WinZip File                                                      
    MINESWEEPERSAVE-MS  .MinesweeperSave-ms                                              
    MKV               Matroska Video File                                              video/x-matroska
    MLC               Language Pack File_                                              
    MOD               Movie Clip                                                       video/mpeg
    MOV               QuickTime Video File                                             video/quicktime
    MP2               MP3 Format Sound                                                 audio/mpeg
    MP2V              MPEG Video File                                                  video/mpeg
    MP3               MP3 Format Sound                                                 audio/mpeg
    MP4               MP4 Video File                                                   video/mp4
    MP4V              MP4V Video File                                                  video/mp4
    MPA               Movie Clip                                                       video/mpeg
    MPE               MPEG Video File                                                  video/mpeg
    MPEG              MPEG Video File                                                  video/mpeg
    MPG               MPEG Video File                                                  video/mpeg
    MPLS              Blu-ray Playlist File                                            
    MPV2              MPEG Video File                                                  video/mpeg
    MPV4              MPV4 Video File                                                  video/mpeg
    MSC               Microsoft Common Console Document                                
    MSDVD             MSDVD File                                                       
    MSI               Windows Installer Package                                        
    MSP               Windows Installer Patch                                          
    MSRCINCIDENT      Windows Remote Assistance Invitation                             
    MSSTYLES          Windows Visual Style File                                        
    MSU               Microsoft Update Standalone Package                              
    MTS               MPEG-TS Video File                                               video/vnd.dlna.mpeg-tts
    MYDOCS            MyDocs Drop Target                                               
    NFO               MSInfo Configuration File                                        
    OCX               ActiveX control                                                  
    ODT               ODT File                                                         
    OGM               Ogg Video File                                                   video/x-ogm
    OGV               Ogg Video File                                                   
    OSDX              OpenSearch Description File                                      application/opensearchdescription+xml
    OTF               OpenType Font file                                               
    P10               Certificate Request                                              application/pkcs10
    P12               Personal Information Exchange                                    application/x-pkcs12
    P7B               PKCS #7 Certificates                                             application/x-pkcs7-certificates
    P7C               Digital ID File                                                  application/pkcs7-mime
    P7M               PKCS #7 MIME Message                                             application/pkcs7-mime
    P7R               Certificate Request Response                                     application/x-pkcs7-certreqresp
    P7S               PKCS #7 Signature                                                application/pkcs7-signature
    PBK               Dial-Up Phonebook                                                
    PERFMONCFG        Performance Monitor Configuration                                
    PFM               Type 1 Font file                                                 
    PFX               Personal Information Exchange                                    application/x-pkcs12
    PIF               Shortcut to MS-DOS Program                                       
    PKO               Public Key Security Object                                       application/vnd.ms-pki.pko
    PNF               Precompiled Setup Information                                    
    PNG               PNG Image                                                        image/png
    PRF               PICS Rules File                                                  application/pics-rules
    PRINTEREXPORT     Printer Migration File                                           
    PS1               PS1 File                                                         
    PS1XML            PS1XML File                                                      
    PSC1              PSC1 File                                                        application/PowerShell
    PSD1              PSD1 File                                                        
    PSM1              PSM1 File                                                        
    PURBLEPAIRSSAVE-MS  .PurblePairsSave-ms                                              
    PURBLESHOPSAVE-MS  .PurbleShopSave-ms                                               
    QDS               Directory Query                                                  
    RAR               WinZip File                                                      
    RAT               Rating System File                                               application/rat-file
    RDP               Remote Desktop Connection                                        
    REG               Registration Entries                                             
    RESMONCFG         Resource Monitor Configuration                                   
    RLE               RLE File                                                         
    RLL               Application Extension                                            
    RMI               MIDI Sequence                                                    audio/mid
    RTF               Rich Text Document                                               
    SCF               Windows Explorer Command                                         
    SCP               Text Document                                                    
    SCR               Screen saver                                                     
    SCT               Windows Script Component                                         text/scriptlet
    SEARCHCONNECTOR-MS  Search Connector Folder                                          application/windows-search-connector+xml
    SEARCH-MS         Saved Search                                                     
    SFCACHE           ReadyBoost Cache File                                            
    SHTML             SHTML File                                                       text/html
    SKYPE             Skype Content                                                    application/x-skype
    SLUPKG-MS         XrML Digital License Package                                     application/x-ms-license
    SND               AU Format Sound                                                  audio/basic
    SOLITAIRESAVE-MS  .SolitaireSave-ms                                                
    SPC               PKCS #7 Certificates                                             application/x-pkcs7-certificates
    SPIDERSOLITAIRESAVE-MS  .SpiderSolitaireSave-ms                                          
    SPL               Shockwave Flash Object                                           application/futuresplash
    SST               Microsoft Serialized Certificate Store                           application/vnd.ms-pki.certstore
    STL               Certificate Trust List                                           application/vnd.ms-pki.stl
    SWF               Shockwave Flash Object                                           application/x-shockwave-flash
    SYS               System file                                                      
    TAR               WinZip File                                                      application/x-tar
    TAZ               WinZip File                                                      
    TBZ               WinZip File                                                      
    TBZ2              WinZip File                                                      
    TGZ               WinZip File                                                      application/x-compressed
    THEME             Windows Theme File                                               
    THEMEPACK         Windows Theme Pack                                               
    TIF               TIF File                                                         image/tiff
    TIFF              TIFF File                                                        image/tiff
    TPS               MPEG-TS Video File                                               video/vnd.dlna.mpeg-tts
    TS                MPEG-TS Video File                                               video/vnd.dlna.mpeg-tts
    TTC               TrueType Collection Font file                                    
    TTF               TrueType Font file                                               
    TTS               MPEG-2 TS Video                                                  video/vnd.dlna.mpeg-tts
    TXT               Text Document                                                    text/plain
    TZ                WinZip File                                                      
    UDL               Microsoft Data Link                                              
    URL               URL File                                                         
    UU                WinZip File                                                      
    UUE               WinZip File                                                      
    VBE               VBScript Encoded File                                            
    VBS               VBScript Script File                                             
    VCF               vCard File                                                       text/x-vcard
    VOB               VOB File                                                         video/mpeg
    VXD               Virtual Device Driver                                            
    WAB               Address Book File                                                
    WAV               Wave Sound                                                       audio/wav
    WAX               Windows Media Audio shortcut                                     audio/x-ms-wax
    WBCAT             Windows Backup Catalog File                                      
    WCX               Workspace Configuration File                                     
    WDP               Windows Media Photo                                              image/vnd.ms-photo
    WEBPNP            Web Point And Print File                                         
    WJF               WinZip Job File                                                  
    WM                Windows Media Audio/Video file                                   video/x-ms-wm
    WMA               Windows Media Audio file                                         audio/x-ms-wma
    WMD               Windows Media Player Download Package                            application/x-ms-wmd
    WMDB              Windows Media Library                                            
    WMF               WMF File                                                         
    WMS               Windows Media Player Skin File                                   
    WMV               Windows Media Video File                                         video/x-ms-wmv
    WMX               Windows Media Audio/Video playlist                               video/x-ms-wmx
    WMZ               Windows Media Player Skin Package                                application/x-ms-wmz
    WPL               Windows Media playlist                                           application/vnd.ms-wpl
    WSC               Windows Script Component                                         text/scriptlet
    WSF               Windows Script File                                              
    WSH               Windows Script Host Settings File                                
    WTV               Windows Recorded TV Show                                         
    WTX               Text Document                                                    
    WVX               Windows Media Audio/Video playlist                               video/x-ms-wvx
    WZMUL             WinZip Multi-User Registration File                              
    XAML              Windows Markup File                                              application/xaml+xml
    XBAP              XAML Browser Application                                         application/x-ms-xbap
    XHT               XHT File                                                         application/xhtml+xml
    XHTML             XHTML File                                                       application/xhtml+xml
    XML               XML Document                                                     text/xml
    XPS               XPS Document                                                     application/vnd.ms-xpsdocument
    XRM-MS            XrML Digital License                                             text/xml
    XSL               XSL Stylesheet                                                   text/xml
    XXE               WinZip File                                                      
    Z                 WinZip File                                                      application/x-compress
    ZFSENDTOTARGET    Compressed (zipped) Folder SendTo Target                         
    ZIP               WinZip File                                                      application/x-zip-compressed
    ZIPX              WinZip Zipx File                                                 


--------[    ]--------------------------------------------------------------------------------------

  [ Calendar ]

     :
                                                     Calendar
                                                Browse the days of the calendar.
                                                  1.1.0.0
                                                   Microsoft Corporation
      Copyright                                          2009
      URL                                               http://go.microsoft.com/fwlink/?LinkId=124093
                                                   ProgramFiles
      XML                                               Calendar.Gadget\en-US\gadget.xml

  [ Clock ]

     :
                                                     Clock
                                                Watch the clock in your own time zone or any city in the world.
                                                  1.0.0.0
                                                   Microsoft Corporation
      Copyright                                          2009
      URL                                               http://go.microsoft.com/fwlink/?LinkId=124093
                                                   ProgramFiles
      XML                                               Clock.Gadget\en-US\gadget.xml

  [ CPU Meter ]

     :
                                                     CPU Meter
                                                See the current computer CPU and system memory (RAM).
                                                  1.0.0.0
                                                   Microsoft Corporation
      Copyright                                          2009
      URL                                               http://go.microsoft.com/fwlink/?LinkId=124093
                                                   ProgramFiles
      XML                                               CPU.Gadget\en-US\gadget.xml

  [ Currency ]

     :
                                                     Currency
                                                Convert from one currency to another.
                                                  1.0.0.0
                                                   Microsoft Corporation
      Copyright                                          2009
      URL                                               http://go.microsoft.com/fwlink/?LinkId=124093
                                                   ProgramFiles
      XML                                               Currency.Gadget\en-US\gadget.xml

  [ Feed Headlines ]

     :
                                                     Feed Headlines
                                                Track the latest news, sports, and entertainment headlines.
                                                  1.1.0.0
                                                   Microsoft Corporation
      Copyright                                          2009
      URL                                               http://go.microsoft.com/fwlink/?LinkId=124093
                                                   ProgramFiles
      XML                                               RSSFeeds.Gadget\en-US\gadget.xml

  [ Picture Puzzle ]

     :
                                                     Picture Puzzle
                                                Move the pieces of the puzzle and try to put them in order.
                                                  1.0.0.0
                                                   Microsoft Corporation
      Copyright                                          2009
      URL                                               http://go.microsoft.com/fwlink/?LinkId=124093
                                                   ProgramFiles
      XML                                               PicturePuzzle.Gadget\en-US\gadget.xml

  [ Slide Show ]

     :
                                                     Slide Show
                                                Show a continuous slide show of your pictures.
                                                  1.0.0.0
                                                   Microsoft Corporation
      Copyright                                          2009
      URL                                               http://go.microsoft.com/fwlink/?LinkId=124093
                                                   ProgramFiles
      XML                                               SlideShow.Gadget\en-US\gadget.xml

  [ Weather ]

     :
                                                     Weather
                                                See what the weather looks like around the world.
                                                  1.1.0.0
                                                   Microsoft Corporation
      Copyright                                          2009
      URL                                               http://go.microsoft.com/fwlink/?LinkId=124093
                                                   ProgramFiles
      XML                                               Weather.Gadget\en-US\gadget.xml

  [ Windows Media Center ]

     :
                                                     Windows Media Center
                                                  1.0.0.0
                                                   Microsoft Corporation
      Copyright                                          2009
      URL                                               http://go.microsoft.com/fwlink/?LinkId=124093
                                                   ProgramFiles
      XML                                               MediaCenter.Gadget\ru-RU\gadget.xml

  [ Windows Media Center ]

     :
                                                     Windows Media Center
                                                Play your latest TV recordings, new Internet TV clips, and favorite music and pictures.
                                                  1.0.0.0
                                                   Microsoft Corporation
      Copyright                                          2009
      URL                                               http://go.microsoft.com/fwlink/?LinkId=124093
                                                   ProgramFiles
      XML                                               MediaCenter.Gadget\en-US\gadget.xml

  [  ]

     :
                                                     
                                                  1.0.0.0
                                                   Microsoft Corporation
      Copyright                                          2009
      URL                                               http://go.microsoft.com/fwlink/?LinkId=124093
                                                   ProgramFiles
      XML                                               Currency.Gadget\ru-RU\gadget.xml

  [  ]

     :
                                                     
                                                     .
                                                  1.0.0.0
                                                   Microsoft Corporation
      Copyright                                          2009
      URL                                               http://go.microsoft.com/fwlink/?LinkId=124093
                                                   ProgramFiles
      XML                                               PicturePuzzle.Gadget\ru-RU\gadget.xml

  [   - ]

     :
                                                       -
                                                   ,     .
                                                  1.1.0.0
                                                   Microsoft Corporation
      Copyright                                          2009
      URL                                               http://go.microsoft.com/fwlink/?LinkId=124093
                                                   ProgramFiles
      XML                                               RSSFeeds.Gadget\ru-RU\gadget.xml

  [   ]

     :
                                                      
                                                      (RAM).
                                                  1.0.0.0
                                                   Microsoft Corporation
      Copyright                                          2009
      URL                                               http://go.microsoft.com/fwlink/?LinkId=124093
                                                   ProgramFiles
      XML                                               CPU.Gadget\ru-RU\gadget.xml

  [  ]

     :
                                                     
                                                  .
                                                  1.1.0.0
                                                   Microsoft Corporation
      Copyright                                          2009
      URL                                               http://go.microsoft.com/fwlink/?LinkId=124093
                                                   ProgramFiles
      XML                                               Calendar.Gadget\ru-RU\gadget.xml

  [  ]

     :
                                                     
                                                      .
                                                  1.1.0.0
                                                   Microsoft Corporation
      Copyright                                          2009
      URL                                               http://go.microsoft.com/fwlink/?LinkId=124093
                                                   ProgramFiles
      XML                                               Weather.Gadget\ru-RU\gadget.xml

  [   ]

     :
                                                      
                                                     .
                                                  1.0.0.0
                                                   Microsoft Corporation
      Copyright                                          2009
      URL                                               http://go.microsoft.com/fwlink/?LinkId=124093
                                                   ProgramFiles
      XML                                               SlideShow.Gadget\ru-RU\gadget.xml

  [  ]

     :
                                                     
                                                          .
                                                  1.0.0.0
                                                   Microsoft Corporation
      Copyright                                          2009
      URL                                               http://go.microsoft.com/fwlink/?LinkId=124093
                                                   ProgramFiles
      XML                                               Clock.Gadget\ru-RU\gadget.xml


--------[  Windows ]----------------------------------------------------------------------------------------

      :
                                              Microsoft Windows 7 Ultimate
                                       [ TRIAL VERSION ]
      Winlogon Shell                                    explorer.exe
          (UAC)  
                                   

       (DEP, NX, EDB):
                                        
                                        
       ( )                       
       ( )                        


--------[  Windows ]------------------------------------------------------------------------------------------

    (Automatic Update)                                                                Download:Automatic, Install:Scheduled  Every Day 3:00
    Cumulative Security Update for ActiveX Killbits for Windows 7 for x64-based Systems (KB978262)              16.03.2010
    Cumulative Security Update for Internet Explorer 8 for Windows 7 for x64-based Systems (KB978207)              16.03.2010
    Cumulative Update for Media Center for Windows 7 x64-based Systems (KB977863)                 16.03.2010
    Definition Update for Windows Defender - KB915597 (Definition 1.77.1038.0)                    16.03.2010
    Microsoft - Other hardware - HID Non-User Input Data Filter (KB 911895)                       16.03.2010
    Microsoft Browser Choice Screen Update for EEA Users of Windows 7 for x64-based Systems (KB976002)              16.03.2010
    Security Update for Windows 7 for x64-based Systems (KB971468)                                16.03.2010
    Security Update for Windows 7 for x64-based Systems (KB972270)                                16.03.2010
    Security Update for Windows 7 for x64-based Systems (KB974571)                                16.03.2010
    Security Update for Windows 7 for x64-based Systems (KB975467)                                16.03.2010
    Security Update for Windows 7 for x64-based Systems (KB975560)                                16.03.2010
    Security Update for Windows 7 for x64-based Systems (KB978251)                                16.03.2010
    Update for Internet Explorer 8 Compatibility View List for Windows 7 for x64-based Systems (KB978506)              16.03.2010
    Update for Rights Management Services Client for Windows 7 for x64-based Systems (KB979099)              16.03.2010
    Update for Windows 7 for x64-based Systems (KB974431)                                         16.03.2010
    Update for Windows 7 for x64-based Systems (KB976264)                                         16.03.2010
    Update for Windows 7 for x64-based Systems (KB976662)                                         16.03.2010
    Update for Windows 7 for x64-based Systems (KB977074)                                         16.03.2010
    Update for Windows 7 for x64-based Systems (KB978637)                                         16.03.2010
    Update for Windows 7 for x64-based Systems (KB979306)                                         16.03.2010
    Windows Malicious Software Removal Tool x64 - March 2010 (KB890830)                           16.03.2010


--------[  ]---------------------------------------------------------------------------------------------------

    Kaspersky Internet Security 2010                     9.0.0.736                                17.03.2010         ?


--------[  ]--------------------------------------------------------------------------------------------------

    Kaspersky Internet Security 2010                     9.0.0.736  
     Windows                              6.1.7600.16385  


--------[   ]--------------------------------------------------------------------------------------------

    Microsoft Windows Defender                6.1.7600.16385(win7_rtm.090713-1255)


--------[   ]--------------------------------------------------------------------------------------

     :
                                     ()
                            
                               Last Sunday of October 4:00:00
                                    Last Sunday of March 3:00:00

    :
       (.)                                      
       (.)                                      Russian
       (ISO 639)                                    ru

    /:
       (.)                                    
       (.)                                    Russia
       (ISO 3166)                                 RU
                                               7

     :
        (.)                          
        (.)                          Russian Ruble
         (.)                   .
         (ISO 4217)                RUB
                                      123456789,00.
                         -123456789,00.

    :
                                           H:mm:ss
                                       dd.MM.yyyy
                                        d MMMM yyyy '.'
                                       123456789,00
                          -123456789,00
                                            first; second; third
                                               0123456789

     :
                                       / 
                                           / 
                                              / 
                                           / 
                                            / 
                                            / 
                                        / 

    :
                                             / 
                                            / 
                                              / 
                                             / 
                                                / 
                                               / 
                                               / 
                                            / 
                                           / 
                                            / 
                                             / 
                                            / 

    :
                                            Gregorian (localized)
                                 A4
                                        


--------[  ]---------------------------------------------------------------------------------------------------

    ALLUSERSPROFILE           C:\ProgramData
    APPDATA                   C:\Users\AJEKC\AppData\Roaming
    CommonProgramFiles(x86)   C:\Program Files (x86)\Common Files
    CommonProgramFiles        C:\Program Files (x86)\Common Files
    CommonProgramW6432        C:\Program Files\Common Files
    COMPUTERNAME              AJEKC-PC
    ComSpec                   C:\Windows\system32\cmd.exe
    FP_NO_HOST_CHECK          NO
    HOMEDRIVE                 C:
    HOMEPATH                  \Users\AJEKC
    LOCALAPPDATA              C:\Users\AJEKC\AppData\Local
    LOGONSERVER               \\AJEKC-PC
    NUMBER_OF_PROCESSORS      8
    OS                        Windows_NT
    Path                      C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\
    PATHEXT                   .COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
    PROCESSOR_ARCHITECTURE    x86
    PROCESSOR_ARCHITEW6432    AMD64
    PROCESSOR_IDENTIFIER      Intel64 Family 6 Model 26 Stepping 4, GenuineIntel
    PROCESSOR_LEVEL           6
    PROCESSOR_REVISION        1a04
    ProgramData               C:\ProgramData
    ProgramFiles(x86)         C:\Program Files (x86)
    ProgramFiles              C:\Program Files (x86)
    ProgramW6432              C:\Program Files
    PSModulePath              C:\Windows\system32\WindowsPowerShell\v1.0\Modules\
    PUBLIC                    C:\Users\Public
    SystemDrive               C:
    SystemRoot                C:\Windows
    TEMP                      C:\Users\AJEKC\AppData\Local\Temp
    TMP                       C:\Users\AJEKC\AppData\Local\Temp
    USERDOMAIN                AJEKC-PC
    USERNAME                  AJEKC
    USERPROFILE               C:\Users\AJEKC
    windir                    C:\Windows


--------[  ]-----------------------------------------------------------------------------------------------------

    C:         7          5      ?  ?
    D:      3815          8      ?  ?


--------[   ]---------------------------------------------------------------------------------------------

  [ system.ini ]

    ; for 16-bit app support
    [386Enh]
    woafont=dosapp.fon
    EGA80WOA.FON=EGA80WOA.FON
    EGA40WOA.FON=EGA40WOA.FON
    CGA80WOA.FON=CGA80WOA.FON
    CGA40WOA.FON=CGA40WOA.FON
    
    [drivers]
    wave=mmdrv.dll
    timer=timer.drv
    
    [mci]

  [ win.ini ]

    ; for 16-bit app support
    [fonts]
    [extensions]
    [mci extensions]
    [files]
    [Mail]
    MAPI=1
    [MCI Extensions.BAK]
    3g2=MPEGVideo
    3gp=MPEGVideo
    3gp2=MPEGVideo
    3gpp=MPEGVideo
    aac=MPEGVideo
    adt=MPEGVideo
    adts=MPEGVideo
    m2t=MPEGVideo
    m2ts=MPEGVideo
    m2v=MPEGVideo
    m4a=MPEGVideo
    m4v=MPEGVideo
    mod=MPEGVideo
    mov=MPEGVideo
    mp4=MPEGVideo
    mp4v=MPEGVideo
    mts=MPEGVideo
    ts=MPEGVideo
    tts=MPEGVideo

  [ hosts ]

    

  [ lmhosts.sam ]

    
    
    
    


--------[   ]---------------------------------------------------------------------------------------------

    Administrative Tools         C:\Users\AJEKC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
    AppData                      C:\Users\AJEKC\AppData\Roaming
    Cache                        C:\Users\AJEKC\AppData\Local\Microsoft\Windows\Temporary Internet Files
    CD Burning                   C:\Users\AJEKC\AppData\Local\Microsoft\Windows\Burn\Burn
    Common Administrative Tools  C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
    Common AppData               C:\ProgramData
    Common Desktop               C:\Users\Public\Desktop
    Common Documents             C:\Users\Public\Documents
    Common Favorites             C:\Users\AJEKC\Favorites
    Common Files (x86)           C:\Program Files (x86)\Common Files
    Common Files                 C:\Program Files (x86)\Common Files
    Common Music                 C:\Users\Public\Music
    Common Pictures              C:\Users\Public\Pictures
    Common Programs              C:\ProgramData\Microsoft\Windows\Start Menu\Programs
    Common Start Menu            C:\ProgramData\Microsoft\Windows\Start Menu
    Common Startup               C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
    Common Templates             C:\ProgramData\Microsoft\Windows\Templates
    Common Video                 C:\Users\Public\Videos
    Cookies                      C:\Users\AJEKC\AppData\Roaming\Microsoft\Windows\Cookies
    Desktop                      C:\Users\AJEKC\Desktop
    Device                       C:\Windows\inf
    Favorites                    C:\Users\AJEKC\Favorites
    Fonts                        C:\Windows\Fonts
    History                      C:\Users\AJEKC\AppData\Local\Microsoft\Windows\History
    Local AppData                C:\Users\AJEKC\AppData\Local
    My Documents                 C:\Users\AJEKC\Documents
    My Music                     C:\Users\AJEKC\Music
    My Pictures                  C:\Users\AJEKC\Pictures
    My Video                     C:\Users\AJEKC\Videos
    NetHood                      C:\Users\AJEKC\AppData\Roaming\Microsoft\Windows\Network Shortcuts
    PrintHood                    C:\Users\AJEKC\AppData\Roaming\Microsoft\Windows\Printer Shortcuts
    Profile                      C:\Users\AJEKC
    Program Files (x86)          C:\Program Files (x86)
    Program Files                C:\Program Files (x86)
    Programs                     C:\Users\AJEKC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs
    Recent                       C:\Users\AJEKC\AppData\Roaming\Microsoft\Windows\Recent
    Resources                    C:\Windows\resources
    SendTo                       C:\Users\AJEKC\AppData\Roaming\Microsoft\Windows\SendTo
    Start Menu                   C:\Users\AJEKC\AppData\Roaming\Microsoft\Windows\Start Menu
    Startup                      C:\Users\AJEKC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
    System (x86)                 C:\Windows\SysWOW64
    System                       C:\Windows\system32
    Temp                         C:\Users\AJEKC\AppData\Local\Temp\
    Templates                    C:\Users\AJEKC\AppData\Roaming\Microsoft\Windows\Templates
    Windows                      C:\Windows


--------[   ]-------------------------------------------------------------------------------------------

                       2010-03-16 11:02:24  LOCAL SERVICE                   Microsoft-Windows-RPC-Events    11:     ,   .  
             1          2010-03-16 11:02:31                                  ESENT                           102: Windows (2428) Windows:   (6.01.7600.0000)    (0).  
             3          2010-03-16 11:02:31                                  ESENT                           300: Windows (2428) Windows:     .  
             3          2010-03-16 11:02:31                                  ESENT                           301: Windows (2428) Windows:      C:\ProgramData\Microsoft\Search\Data\Applications\Windows\MSS.log.  
             3          2010-03-16 11:02:31                                  ESENT                           302: Windows (2428) Windows:    .  
             1          2010-03-16 11:02:32                                  Windows Search Service          1003:  Windows Search .   
                     2010-03-16 11:02:41                                  Microsoft-Windows-CAPI2         4109:       :: : <OU=Class 3 Public Primary Certification Authority, O="VeriSign, Inc.", C=US>  Sha1: <742C3192E607E424EB4549542BE1BBC53E6174E2>.  
                     2010-03-16 11:02:41                                  Microsoft-Windows-CAPI2         4109:       :: : <OU=Class 3 Public Primary Certification Authority, O="VeriSign, Inc.", C=US>  Sha1: <4F65566336DB6598581D584A596C87934D5F2AB4>.  
                     2010-03-16 11:02:41                                  Microsoft-Windows-CAPI2         4097:      :: : <CN=GTE CyberTrust Global Root, OU="GTE CyberTrust Solutions, Inc.", O=GTE Corporation, C=US>;  SHA1: <97817950D81C9670CC34D809CF794431367EF474>.  
                     2010-03-16 11:02:45                                  SecurityCenter                  1: C:\Windows\System32\wscsvc.dll
                     2010-03-16 11:02:55                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 11:03:06                                  Software Protection Platform Service  1016: C:\Windows\system32\sppsvc.exe
                     2010-03-16 11:03:07                                  Software Protection Platform Service  1033: C:\Windows\system32\sppsvc.exe
                     2010-03-16 11:03:07                                  Software Protection Platform Service  1003: C:\Windows\system32\sppsvc.exe
                     2010-03-16 11:03:17                                  Winlogon                        4101: C:\Windows\System32\winlogon.exe
                     2010-03-16 11:03:17                                  Wlclntfy                        6000: C:\Windows\System32\winlogon.exe
                     2010-03-16 11:03:18                                  Desktop Window Manager          9003: C:\Windows\system32\dwm.exe
             1          2010-03-16 11:03:23                                  ESENT                           102: WinMail (2896) WindowsMail0:   (6.01.7600.0000)    (0).  
             3          2010-03-16 11:03:24                                  ESENT                           210: WinMail (2896) WindowsMail0:    .  
             3          2010-03-16 11:03:24                                  ESENT                           220: WinMail (2896) WindowsMail0:    C:\Users\AJEKC\AppData\Local\Microsoft\Windows Mail\WindowsMail.MSMessageStore (: 2 Mb).  
             3          2010-03-16 11:03:24                                  ESENT                           221: WinMail (2896) WindowsMail0:    C:\Users\AJEKC\AppData\Local\Microsoft\Windows Mail\WindowsMail.MSMessageStore.  
             3          2010-03-16 11:03:24                                  ESENT                           223: WinMail (2896) WindowsMail0:      (: C:\Users\AJEKC\AppData\Local\Microsoft\Windows Mail\edb00001.log - C:\Users\AJEKC\AppData\Local\Microsoft\Windows Mail\edb00001.log).   
             3          2010-03-16 11:03:24                                  ESENT                           225: WinMail (2896) WindowsMail0:    .   
             3          2010-03-16 11:03:24                                  ESENT                           213: WinMail (2896) WindowsMail0:    .  
             1          2010-03-16 11:03:30                                  ESENT                           103: WinMail (2896) WindowsMail0:    (0).  
             1          2010-03-16 11:03:36                                  ESENT                           102: WinMail (676) WindowsMail0:   (6.01.7600.0000)    (0).  
             1          2010-03-16 11:03:36                                  ESENT                           103: WinMail (676) WindowsMail0:    (0).  
                     2010-03-16 11:03:39                                  Desktop Window Manager          9009: C:\Windows\system32\dwm.exe
                     2010-03-16 11:03:39                                  Wlclntfy                        6000: C:\Windows\System32\winlogon.exe
                       2010-03-16 11:03:39                                  Wlclntfy                        6001: C:\Windows\System32\winlogon.exe
                     2010-03-16 11:03:40  SYSTEM                          Microsoft-Windows-User Profiles Service  1532: C:\Windows\System32\profsvc.dll
                       2010-03-16 11:03:40  SYSTEM                          Microsoft-Windows-User Profiles Service  1530: C:\Windows\System32\profsvc.dll
                     2010-03-16 11:04:47                                  EventSystem                     
                     2010-03-16 11:04:47  SYSTEM                          Microsoft-Windows-User Profiles Service  1531: C:\Windows\System32\profsvc.dll
                     2010-03-16 11:04:53                                  WinMgmt                         
                     2010-03-16 11:04:55                                  WinMgmt                         
                     2010-03-16 11:05:01                                  Winlogon                        4101: C:\Windows\System32\winlogon.exe
                     2010-03-16 11:05:01                                  Wlclntfy                        6000: C:\Windows\System32\winlogon.exe
             1          2010-03-16 11:05:06                                  ESENT                           102: Windows (1664) Windows:   (6.01.7600.0000)    (0).  
             3          2010-03-16 11:05:06                                  ESENT                           300: Windows (1664) Windows:     .  
             3          2010-03-16 11:05:06                                  ESENT                           301: Windows (1664) Windows:      C:\ProgramData\Microsoft\Search\Data\Applications\Windows\MSS00002.log.  
             3          2010-03-16 11:05:06                                  ESENT                           301: Windows (1664) Windows:      C:\ProgramData\Microsoft\Search\Data\Applications\Windows\MSS00003.log.  
             3          2010-03-16 11:05:06                                  ESENT                           301: Windows (1664) Windows:      C:\ProgramData\Microsoft\Search\Data\Applications\Windows\MSS.log.  
             3          2010-03-16 11:05:07                                  ESENT                           302: Windows (1664) Windows:    .  
             1          2010-03-16 11:05:08                                  Windows Search Service          1003:  Windows Search .   
                     2010-03-16 11:06:07                                  Wow64 Emulation Layer           1109:       "\??\D:\INSTAL\FLASHSPI.EXE" -   64-  Windows.        ,   64-  Windows.  
                     2010-03-16 11:06:56                                  Software Protection Platform Service  900: C:\Windows\system32\sppsvc.exe
                     2010-03-16 11:06:57                                  SecurityCenter                  1: C:\Windows\System32\wscsvc.dll
                     2010-03-16 11:06:58                                  Software Protection Platform Service  1066: C:\Windows\system32\sppsvc.exe
                     2010-03-16 11:06:59                                  Software Protection Platform Service  1033: C:\Windows\system32\sppsvc.exe
                     2010-03-16 11:06:59                                  Software Protection Platform Service  1003: C:\Windows\system32\sppsvc.exe
                     2010-03-16 11:06:59                                  Software Protection Platform Service  902: C:\Windows\system32\sppsvc.exe
                     2010-03-16 11:08:43                                  System Restore                  8194: C:\Windows\system32\srcore.dll
                     2010-03-16 11:08:46                                  Desktop Window Manager          9009: C:\Windows\system32\dwm.exe
                     2010-03-16 11:08:46                                  Wlclntfy                        6000: C:\Windows\System32\winlogon.exe
                     2010-03-16 11:08:52                                  Winlogon                        4101: C:\Windows\System32\winlogon.exe
                     2010-03-16 11:08:52                                  Wlclntfy                        6000: C:\Windows\System32\winlogon.exe
                     2010-03-16 11:11:26  SYSTEM                          Microsoft-Windows-LoadPerf      1001:     WmiApRpl (WmiApRpl)  .        Last Counter  Last Help.  
                     2010-03-16 11:11:26  SYSTEM                          Microsoft-Windows-LoadPerf      1000: C    WmiApRpl (WmiApRpl)  .         ,   .  
                     2010-03-16 11:11:48                                  VSS                             8224: C:\Windows\System32\VSSVC.EXE
                     2010-03-16 11:11:59                                  Software Protection Platform Service  903: C:\Windows\system32\sppsvc.exe
                     2010-03-16 11:15:28  AJEKC                           MsiInstaller                    1040:    Windows: C:\Users\AJEKC\AppData\Local\Temp\WZSE0.TMP\WINZIP140.MSI.   : 1408.  
                     2010-03-16 11:15:35                                  System Restore                  8194: C:\Windows\system32\srcore.dll
                     2010-03-16 11:15:41  AJEKC                           Microsoft-Windows-RestartManager  10000:   0 - 2010-03-16T09:15:41.793397200Z.  
                     2010-03-16 11:16:02  AJEKC                           Microsoft-Windows-RestartManager  10001:   0,  2010-03-16T09:15:41.793397200Z.  
                     2010-03-16 11:16:02  SYSTEM                          MsiInstaller                    1042:    Windows: C:\Users\AJEKC\AppData\Local\Temp\WZSE0.TMP\WINZIP140.MSI.   : 1408.  
                     2010-03-16 11:16:09  AJEKC                           MsiInstaller                    11707: Product: WinZip 14.0 -- Installation operation completed successfully.  
                     2010-03-16 11:16:09  AJEKC                           MsiInstaller                    1033:  Windows   . : WinZip 14.0. : 14.0.8688. : 1033. : WinZip Computing, S.L. .    : 0.  
                     2010-03-16 11:17:49                                  Software Protection Platform Service  900: C:\Windows\system32\sppsvc.exe
                     2010-03-16 11:17:49                                  Software Protection Platform Service  1066: C:\Windows\system32\sppsvc.exe
                     2010-03-16 11:17:49                                  Software Protection Platform Service  1003: C:\Windows\system32\sppsvc.exe
                     2010-03-16 11:17:49                                  Software Protection Platform Service  902: C:\Windows\system32\sppsvc.exe
                     2010-03-16 11:17:50                                  Software Protection Platform Service  1003: C:\Windows\system32\sppsvc.exe
                     2010-03-16 11:18:10                                  Software Protection Platform Service  1003: C:\Windows\system32\sppsvc.exe
                     2010-03-16 11:18:27                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 11:18:27                                  Software Protection Platform Service  1033: C:\Windows\system32\sppsvc.exe
                     2010-03-16 11:18:27                                  Software Protection Platform Service  1003: C:\Windows\system32\sppsvc.exe
                     2010-03-16 11:18:38                                  VSS                             8224: C:\Windows\System32\VSSVC.EXE
                     2010-03-16 11:19:27                                  Desktop Window Manager          9009: C:\Windows\system32\dwm.exe
                     2010-03-16 11:19:27                                  Wlclntfy                        6000: C:\Windows\System32\winlogon.exe
                       2010-03-16 11:19:27  SYSTEM                          Microsoft-Windows-User Profiles Service  1530: C:\Windows\System32\profsvc.dll
                     2010-03-16 11:19:29  SYSTEM                          Microsoft-Windows-User Profiles Service  1532: C:\Windows\System32\profsvc.dll
                     2010-03-16 11:20:57                                  EventSystem                     
                     2010-03-16 11:20:57  SYSTEM                          Microsoft-Windows-User Profiles Service  1531: C:\Windows\System32\profsvc.dll
                     2010-03-16 11:21:02                                  WinMgmt                         
                     2010-03-16 11:21:04                                  WinMgmt                         
                     2010-03-16 11:21:19                                  Winlogon                        4101: C:\Windows\System32\winlogon.exe
                     2010-03-16 11:21:19                                  Wlclntfy                        6000: C:\Windows\System32\winlogon.exe
                     2010-03-16 11:21:24                                  Software Protection Platform Service  900: C:\Windows\system32\sppsvc.exe
                     2010-03-16 11:21:25                                  Software Protection Platform Service  1066: C:\Windows\system32\sppsvc.exe
                     2010-03-16 11:21:25                                  Software Protection Platform Service  1003: C:\Windows\system32\sppsvc.exe
                     2010-03-16 11:21:25                                  Software Protection Platform Service  902: C:\Windows\system32\sppsvc.exe
                     2010-03-16 11:21:25                                  Software Protection Platform Service  1003: C:\Windows\system32\sppsvc.exe
             1          2010-03-16 11:22:07                                  ESENT                           102: Windows (2492) Windows:   (6.01.7600.0000)    (0).  
             3          2010-03-16 11:22:07                                  ESENT                           300: Windows (2492) Windows:     .  
             3          2010-03-16 11:22:07                                  ESENT                           301: Windows (2492) Windows:      C:\ProgramData\Microsoft\Search\Data\Applications\Windows\MSS00006.log.  
             3          2010-03-16 11:22:07                                  ESENT                           301: Windows (2492) Windows:      C:\ProgramData\Microsoft\Search\Data\Applications\Windows\MSS.log.  
             1          2010-03-16 11:22:08                                  Windows Search Service          1003:  Windows Search .   
             3          2010-03-16 11:22:08                                  ESENT                           302: Windows (2492) Windows:    .  
                     2010-03-16 11:23:07                                  SecurityCenter                  1: C:\Windows\System32\wscsvc.dll
                     2010-03-16 11:25:11  SYSTEM                          Microsoft-Windows-LoadPerf      1001:     WmiApRpl (WmiApRpl)  .        Last Counter  Last Help.  
                     2010-03-16 11:25:11  SYSTEM                          Microsoft-Windows-LoadPerf      1000: C    WmiApRpl (WmiApRpl)  .         ,   .  
                     2010-03-16 11:26:25                                  Software Protection Platform Service  903: C:\Windows\system32\sppsvc.exe
                     2010-03-16 11:36:07                                  Windows Error Reporting         1001:   764109902,  5   : RADAR_PRE_LEAK_WOW64  :     CAB: 0     :  P1: iw4sp.exe  P2: 0.0.0.0  P3: 6.1.7600.2.0.0  P4:   P5:   P6:   P7:   P8:   P9:   P10:      :  C:\Users\AJEKC\AppData\Local\Temp\RDR44CC.tmp\empty.txt        :       :     : 0   : 56ec4017-30df-11df-967f-001fd0dbe9f1   : 0  
                     2010-03-16 11:44:49                                  System Restore                  8194: C:\Windows\system32\srcore.dll
                     2010-03-16 11:50:48                                  VSS                             8224: C:\Windows\System32\VSSVC.EXE
                     2010-03-16 11:51:38                                  Desktop Window Manager          9009: C:\Windows\system32\dwm.exe
                     2010-03-16 11:51:38                                  Wlclntfy                        6000: C:\Windows\System32\winlogon.exe
                     2010-03-16 11:51:51  SYSTEM                          Microsoft-Windows-User Profiles Service  1532: C:\Windows\System32\profsvc.dll
                     2010-03-16 11:52:57                                  EventSystem                     
                     2010-03-16 11:52:57  SYSTEM                          Microsoft-Windows-User Profiles Service  1531: C:\Windows\System32\profsvc.dll
                     2010-03-16 11:53:04                                  WinMgmt                         
                     2010-03-16 11:53:04                                  WinMgmt                         
                     2010-03-16 11:53:09                                  Software Protection Platform Service  900: C:\Windows\system32\sppsvc.exe
                     2010-03-16 11:53:09                                  Software Protection Platform Service  1066: C:\Windows\system32\sppsvc.exe
                     2010-03-16 11:53:10                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 11:53:10                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 11:53:10                                  Software Protection Platform Service  1033: C:\Windows\system32\sppsvc.exe
                     2010-03-16 11:53:10                                  Software Protection Platform Service  1003: C:\Windows\system32\sppsvc.exe
                     2010-03-16 11:53:10                                  Software Protection Platform Service  902: C:\Windows\system32\sppsvc.exe
                     2010-03-16 11:53:24                                  Winlogon                        4101: C:\Windows\System32\winlogon.exe
                     2010-03-16 11:53:24                                  Wlclntfy                        6000: C:\Windows\System32\winlogon.exe
             1          2010-03-16 11:53:38                                  ESENT                           102: Windows (2740) Windows:   (6.01.7600.0000)    (0).  
             3          2010-03-16 11:53:38                                  ESENT                           300: Windows (2740) Windows:     .  
             3          2010-03-16 11:53:38                                  ESENT                           301: Windows (2740) Windows:      C:\ProgramData\Microsoft\Search\Data\Applications\Windows\MSS00009.log.  
             3          2010-03-16 11:53:39                                  ESENT                           301: Windows (2740) Windows:      C:\ProgramData\Microsoft\Search\Data\Applications\Windows\MSS.log.  
             3          2010-03-16 11:53:39                                  ESENT                           302: Windows (2740) Windows:    .  
             1          2010-03-16 11:53:40                                  Windows Search Service          1003:  Windows Search .   
                     2010-03-16 11:55:06                                  SecurityCenter                  1: C:\Windows\System32\wscsvc.dll
                     2010-03-16 11:57:18  AJEKC                           MsiInstaller                    1040:    Windows: {DBEA1034-5882-4a88-8033-81C4EF0CFA29}.   : 3740.  
                     2010-03-16 11:57:18  AJEKC                           MsiInstaller                    1040:    Windows: C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbarHelper_signed.msi.   : 3740.  
                     2010-03-16 11:57:18  AJEKC                           Microsoft-Windows-RestartManager  10000:   0 - 2010-03-16T09:57:18.594303800Z.  
                     2010-03-16 11:57:18  SYSTEM                          MsiInstaller                    1042:    Windows: {DBEA1034-5882-4a88-8033-81C4EF0CFA29}.   : 3740.  
                     2010-03-16 11:57:21  AJEKC                           MsiInstaller                    11707: Product: Google Toolbar for Internet Explorer -- Installation completed successfully.  
                     2010-03-16 11:57:21  AJEKC                           MsiInstaller                    1033:  Windows   . : Google Toolbar for Internet Explorer. : 1.0.0. : 1033. : Google Inc..    : 0.  
                     2010-03-16 11:57:21  AJEKC                           Microsoft-Windows-RestartManager  10001:   0,  2010-03-16T09:57:18.594303800Z.  
                     2010-03-16 11:57:21  SYSTEM                          MsiInstaller                    1042:    Windows: C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbarHelper_signed.msi.   : 3740.  
                     2010-03-16 11:57:32  SYSTEM                          Microsoft-Windows-LoadPerf      1001:     WmiApRpl (WmiApRpl)  .        Last Counter  Last Help.  
                     2010-03-16 11:57:32  SYSTEM                          Microsoft-Windows-LoadPerf      1000: C    WmiApRpl (WmiApRpl)  .         ,   .  
                     2010-03-16 11:58:11                                  Software Protection Platform Service  903: C:\Windows\system32\sppsvc.exe
                     2010-03-16 12:00:42                                  System Restore                  8194: C:\Windows\system32\srcore.dll
                     2010-03-16 12:01:16                                  Desktop Window Manager          9009: C:\Windows\system32\dwm.exe
                     2010-03-16 12:01:16                                  Wlclntfy                        6000: C:\Windows\System32\winlogon.exe
                       2010-03-16 12:01:16  SYSTEM                          Microsoft-Windows-User Profiles Service  1530: C:\Windows\System32\profsvc.dll
                     2010-03-16 12:01:17  SYSTEM                          Microsoft-Windows-User Profiles Service  1532: C:\Windows\System32\profsvc.dll
                     2010-03-16 12:02:28                                  EventSystem                     
                     2010-03-16 12:02:28  SYSTEM                          Microsoft-Windows-User Profiles Service  1531: C:\Windows\System32\profsvc.dll
                     2010-03-16 12:02:36                                  WinMgmt                         
                     2010-03-16 12:02:38                                  WinMgmt                         
                     2010-03-16 12:02:45                                  Winlogon                        4101: C:\Windows\System32\winlogon.exe
                     2010-03-16 12:02:45                                  Wlclntfy                        6000: C:\Windows\System32\winlogon.exe
             1          2010-03-16 12:03:10                                  ESENT                           102: Windows (2740) Windows:   (6.01.7600.0000)    (0).  
             3          2010-03-16 12:03:10                                  ESENT                           300: Windows (2740) Windows:     .  
             3          2010-03-16 12:03:10                                  ESENT                           301: Windows (2740) Windows:      C:\ProgramData\Microsoft\Search\Data\Applications\Windows\MSS0000A.log.  
             3          2010-03-16 12:03:10                                  ESENT                           301: Windows (2740) Windows:      C:\ProgramData\Microsoft\Search\Data\Applications\Windows\MSS.log.  
             3          2010-03-16 12:03:11                                  ESENT                           302: Windows (2740) Windows:    .  
             1          2010-03-16 12:03:12                                  Windows Search Service          1003:  Windows Search .   
                     2010-03-16 12:03:23                                  Desktop Window Manager          9009: C:\Windows\system32\dwm.exe
                     2010-03-16 12:03:23                                  Wlclntfy                        6000: C:\Windows\System32\winlogon.exe
                     2010-03-16 12:03:24  SYSTEM                          Microsoft-Windows-User Profiles Service  1532: C:\Windows\System32\profsvc.dll
                     2010-03-16 12:04:34  SYSTEM                          Microsoft-Windows-User Profiles Service  1531: C:\Windows\System32\profsvc.dll
                     2010-03-16 12:04:35                                  EventSystem                     
                     2010-03-16 12:04:41                                  WinMgmt                         
                     2010-03-16 12:04:43                                  WinMgmt                         
                     2010-03-16 12:05:07                                  Winlogon                        4101: C:\Windows\System32\winlogon.exe
                     2010-03-16 12:05:07                                  Wlclntfy                        6000: C:\Windows\System32\winlogon.exe
             1          2010-03-16 12:05:19                                  ESENT                           102: Windows (2604) Windows:   (6.01.7600.0000)    (0).  
             3          2010-03-16 12:05:19                                  ESENT                           300: Windows (2604) Windows:     .  
             3          2010-03-16 12:05:19                                  ESENT                           301: Windows (2604) Windows:      C:\ProgramData\Microsoft\Search\Data\Applications\Windows\MSS.log.  
             3          2010-03-16 12:05:19                                  ESENT                           302: Windows (2604) Windows:    .  
             1          2010-03-16 12:05:20                                  Windows Search Service          1003:  Windows Search .   
                     2010-03-16 12:05:43                                  System Restore                  8194: C:\Windows\system32\srcore.dll
                     2010-03-16 12:06:09                                  Desktop Window Manager          9009: C:\Windows\system32\dwm.exe
                     2010-03-16 12:06:09                                  Wlclntfy                        6000: C:\Windows\System32\winlogon.exe
                     2010-03-16 12:06:10  SYSTEM                          Microsoft-Windows-User Profiles Service  1532: C:\Windows\System32\profsvc.dll
                     2010-03-16 12:07:15                                  EventSystem                     
                     2010-03-16 12:07:15  SYSTEM                          Microsoft-Windows-User Profiles Service  1531: C:\Windows\System32\profsvc.dll
                     2010-03-16 12:07:20                                  WinMgmt                         
                     2010-03-16 12:07:22                                  WinMgmt                         
                     2010-03-16 12:07:37                                  Winlogon                        4101: C:\Windows\System32\winlogon.exe
                     2010-03-16 12:07:37                                  Wlclntfy                        6000: C:\Windows\System32\winlogon.exe
             1          2010-03-16 12:07:47                                  ESENT                           102: Windows (2484) Windows:   (6.01.7600.0000)    (0).  
             3          2010-03-16 12:07:47                                  ESENT                           300: Windows (2484) Windows:     .  
             1          2010-03-16 12:07:48                                  Windows Search Service          1003:  Windows Search .   
             3          2010-03-16 12:07:48                                  ESENT                           301: Windows (2484) Windows:      C:\ProgramData\Microsoft\Search\Data\Applications\Windows\MSS.log.  
             3          2010-03-16 12:07:48                                  ESENT                           302: Windows (2484) Windows:    .  
                     2010-03-16 12:09:23                                  gusvc                           
                     2010-03-16 12:09:23                                  Software Protection Platform Service  900: C:\Windows\system32\sppsvc.exe
                     2010-03-16 12:09:24                                  SecurityCenter                  1: C:\Windows\System32\wscsvc.dll
                     2010-03-16 12:09:25                                  Software Protection Platform Service  1066: C:\Windows\system32\sppsvc.exe
                     2010-03-16 12:09:25                                  Software Protection Platform Service  1003: C:\Windows\system32\sppsvc.exe
                     2010-03-16 12:09:25                                  Software Protection Platform Service  902: C:\Windows\system32\sppsvc.exe
                     2010-03-16 12:09:27                                  Microsoft-Windows-CAPI2         4097:      :: : <OU=Equifax Secure Certificate Authority, O=Equifax, C=US>;  SHA1: <D23209AD23D314232174E40D7F9D62139786633A>.  
                     2010-03-16 12:10:23                                  gusvc                           
                     2010-03-16 12:11:54  SYSTEM                          Microsoft-Windows-LoadPerf      1001:     WmiApRpl (WmiApRpl)  .        Last Counter  Last Help.  
                     2010-03-16 12:11:54  SYSTEM                          Microsoft-Windows-LoadPerf      1000: C    WmiApRpl (WmiApRpl)  .         ,   .  
                     2010-03-16 12:14:26                                  Software Protection Platform Service  903: C:\Windows\system32\sppsvc.exe
                     2010-03-16 12:19:24                                  Microsoft-Windows-CAPI2         4097:      :: : <CN=UTN-USERFirst-Object, OU=http://www.usertrust.com, O=The USERTRUST Network, L=Salt Lake City, S=UT, C=US>;  SHA1: <E12DFB4B41D7D9C32B30514BAC1D81D8385E2D46>.  
                     2010-03-16 12:27:44  AJEKC                           MsiInstaller                    1040:    Windows: D:\166d731ab2ef63c51126c77ebc7f70\PreReq\Watson\amd64\dw20sharedamd64.msi.   : 2000.  
                     2010-03-16 12:27:44  AJEKC                           Microsoft-Windows-RestartManager  10000:   0 - 2010-03-16T10:27:44.827027200Z.  
                     2010-03-16 12:27:51  AJEKC                           MsiInstaller                    11707: Product: Microsoft Application Error Reporting -- Installation completed successfully.  
                     2010-03-16 12:27:51  AJEKC                           MsiInstaller                    1033:  Windows   . : Microsoft Application Error Reporting. : 12.0.6015.5000. : 1033. : Microsoft Corporation.    : 0.  
                     2010-03-16 12:27:51  AJEKC                           Microsoft-Windows-RestartManager  10001:   0,  2010-03-16T10:27:44.827027200Z.  
                     2010-03-16 12:27:51  SYSTEM                          MsiInstaller                    1042:    Windows: D:\166d731ab2ef63c51126c77ebc7f70\PreReq\Watson\amd64\dw20sharedamd64.msi.   : 2000.  
                     2010-03-16 12:29:23                                  Desktop Window Manager          9002: C:\Windows\system32\dwm.exe
                     2010-03-16 12:30:01  AJEKC                           MsiInstaller                    1040:    Windows: C:\Users\AJEKC\AppData\Local\Temp\\{2B9C002D-F3C1-4F8A-B29A-7F9E9B473D4D}\YandexBarIE.msi.   : 1536.  
                     2010-03-16 12:30:05  AJEKC                           MsiInstaller                    11707: : . 4.3  Internet Explorer --   .  
                     2010-03-16 12:30:05  AJEKC                           MsiInstaller                    1033:  Windows   . : . 4.3  Internet Explorer. : 4.3.0.1010. : 1049. : .    : 0.  
                     2010-03-16 12:30:05  SYSTEM                          MsiInstaller                    1042:    Windows: C:\Users\AJEKC\AppData\Local\Temp\\{2B9C002D-F3C1-4F8A-B29A-7F9E9B473D4D}\YandexBarIE.msi.   : 1536.  
                     2010-03-16 12:32:18  SYSTEM                          Microsoft-Windows-LoadPerf      1001:     WmiApRpl (WmiApRpl)  .        Last Counter  Last Help.  
                     2010-03-16 12:32:18  SYSTEM                          Microsoft-Windows-LoadPerf      1000: C    WmiApRpl (WmiApRpl)  .         ,   .  
                     2010-03-16 12:41:56  SYSTEM                          MsiInstaller                    1040:    Windows: {DBEA1034-5882-4a88-8033-81C4EF0CFA29}.   : 3596.  
                     2010-03-16 12:41:56  SYSTEM                          MsiInstaller                    1042:    Windows: {DBEA1034-5882-4a88-8033-81C4EF0CFA29}.   : 3596.  
                     2010-03-16 12:41:56  SYSTEM                          MsiInstaller                    1040:    Windows: C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbarHelper_signed.msi.   : 3596.  
                     2010-03-16 12:41:56  SYSTEM                          MsiInstaller                    11729: Product: Google Toolbar for Internet Explorer -- Configuration failed.  
                     2010-03-16 12:41:56  SYSTEM                          MsiInstaller                    1035:  Windows   . : Google Toolbar for Internet Explorer. : 1.0.0. : 1033. : Google Inc..     : 1638.  
                     2010-03-16 12:41:56  SYSTEM                          MsiInstaller                    1042:    Windows: C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbarHelper_signed.msi.   : 3596.  
                     2010-03-16 12:41:57                                  Desktop Window Manager          9009: C:\Windows\system32\dwm.exe
                     2010-03-16 12:41:57                                  Wlclntfy                        6000: C:\Windows\System32\winlogon.exe
                       2010-03-16 12:41:57  SYSTEM                          Microsoft-Windows-User Profiles Service  1530: C:\Windows\System32\profsvc.dll
                     2010-03-16 12:42:00  SYSTEM                          Microsoft-Windows-User Profiles Service  1532: C:\Windows\System32\profsvc.dll
                     2010-03-16 12:43:19                                  EventSystem                     
                     2010-03-16 12:43:19  SYSTEM                          Microsoft-Windows-User Profiles Service  1531: C:\Windows\System32\profsvc.dll
                     2010-03-16 12:43:20                                  WinMgmt                         
                     2010-03-16 12:43:21                                  WinMgmt                         
                     2010-03-16 12:43:25                                  Winlogon                        4101: C:\Windows\System32\winlogon.exe
                     2010-03-16 12:43:25                                  Wlclntfy                        6000: C:\Windows\System32\winlogon.exe
               3          2010-03-16 12:43:32                                  Windows Search Service          3086:    .    ;    .  Context:  Application, SystemIndex Catalog   
             1          2010-03-16 12:43:33                                  ESENT                           102: Windows (2668) Windows:   (6.01.7600.0000)    (0).  
             1          2010-03-16 12:43:33                                  Windows Search Service          1003:  Windows Search .   
             3          2010-03-16 12:43:33                                  ESENT                           300: Windows (2668) Windows:     .  
             3          2010-03-16 12:43:33                                  ESENT                           301: Windows (2668) Windows:      C:\ProgramData\Microsoft\Search\Data\Applications\Windows\MSS0001C.log.  
             3          2010-03-16 12:43:33                                  ESENT                           301: Windows (2668) Windows:      C:\ProgramData\Microsoft\Search\Data\Applications\Windows\MSS0001D.log.  
             3          2010-03-16 12:43:33                                  ESENT                           301: Windows (2668) Windows:      C:\ProgramData\Microsoft\Search\Data\Applications\Windows\MSS.log.  
             3          2010-03-16 12:43:33                                  ESENT                           302: Windows (2668) Windows:    .  
                     2010-03-16 12:45:22                                  Software Protection Platform Service  900: C:\Windows\system32\sppsvc.exe
                     2010-03-16 12:45:23                                  SecurityCenter                  1: C:\Windows\System32\wscsvc.dll
                     2010-03-16 12:45:24                                  Software Protection Platform Service  1066: C:\Windows\system32\sppsvc.exe
                     2010-03-16 12:45:25                                  Software Protection Platform Service  1033: C:\Windows\system32\sppsvc.exe
                     2010-03-16 12:45:25                                  Software Protection Platform Service  1003: C:\Windows\system32\sppsvc.exe
                     2010-03-16 12:45:25                                  Software Protection Platform Service  902: C:\Windows\system32\sppsvc.exe
                     2010-03-16 12:46:42                                  gusvc                           
                     2010-03-16 12:46:43  SYSTEM                          MsiInstaller                    1040:    Windows: {DBEA1034-5882-4a88-8033-81C4EF0CFA29}.   : 3288.  
                     2010-03-16 12:46:43  SYSTEM                          MsiInstaller                    1042:    Windows: {DBEA1034-5882-4a88-8033-81C4EF0CFA29}.   : 3288.  
                     2010-03-16 12:46:43  SYSTEM                          MsiInstaller                    1040:    Windows: C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbarHelper_signed.msi.   : 3288.  
                     2010-03-16 12:46:44                                  gusvc                           
                     2010-03-16 12:46:44  SYSTEM                          MsiInstaller                    11729: Product: Google Toolbar for Internet Explorer -- Configuration failed.  
                     2010-03-16 12:46:44  SYSTEM                          MsiInstaller                    1035:  Windows   . : Google Toolbar for Internet Explorer. : 1.0.0. : 1033. : Google Inc..     : 1638.  
                     2010-03-16 12:46:44  SYSTEM                          MsiInstaller                    1042:    Windows: C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbarHelper_signed.msi.   : 3288.  
                     2010-03-16 12:46:50  SYSTEM                          MsiInstaller                    1040:    Windows: C:\Program Files (x86)\Google\Update\1.2.183.13\GoogleUpdateHelper.msi.   : 3524.  
                     2010-03-16 12:46:50  SYSTEM                          Microsoft-Windows-RestartManager  10000:   0 - 2010-03-16T10:46:50.530190200Z.  
                     2010-03-16 12:46:52                                  gupdate                         
                     2010-03-16 12:46:52  SYSTEM                          MsiInstaller                    11707: Product: Google Update Helper -- Installation completed successfully.  
                     2010-03-16 12:46:52  SYSTEM                          MsiInstaller                    1033:  Windows   . : Google Update Helper. : 1.2.183.13. : 1033. : Google Inc..    : 0.  
                     2010-03-16 12:46:52  SYSTEM                          MsiInstaller                    1042:    Windows: C:\Program Files (x86)\Google\Update\1.2.183.13\GoogleUpdateHelper.msi.   : 3524.  
                     2010-03-16 12:46:52  SYSTEM                          Microsoft-Windows-RestartManager  10001:   0,  2010-03-16T10:46:50.530190200Z.  
                     2010-03-16 12:46:55                                  gusvc                           
                     2010-03-16 12:47:28                                  gupdate                         
                     2010-03-16 12:47:53  SYSTEM                          Microsoft-Windows-LoadPerf      1001:     WmiApRpl (WmiApRpl)  .        Last Counter  Last Help.  
                     2010-03-16 12:47:53  SYSTEM                          Microsoft-Windows-LoadPerf      1000: C    WmiApRpl (WmiApRpl)  .         ,   .  
                     2010-03-16 12:47:55                                  gusvc                           
                     2010-03-16 12:49:09  AJEKC                           MsiInstaller                    1040:    Windows: C:\Users\AJEKC\AppData\Local\Temp\\{2B9C002D-F3C1-4F8A-B29A-7F9E9B473D4D}\YandexBarIE.msi.   : 2604.  
                     2010-03-16 12:49:12  AJEKC                           MsiInstaller                    11728: : . 4.3  Internet Explorer --   .  
                     2010-03-16 12:49:12  AJEKC                           MsiInstaller                    1035:  Windows   . : . 4.3  Internet Explorer. : 4.3.0.1010. : 1049. : .     : 0.  
                     2010-03-16 12:49:12  SYSTEM                          MsiInstaller                    1042:    Windows: C:\Users\AJEKC\AppData\Local\Temp\\{2B9C002D-F3C1-4F8A-B29A-7F9E9B473D4D}\YandexBarIE.msi.   : 2604.  
                     2010-03-16 12:50:26                                  Software Protection Platform Service  903: C:\Windows\system32\sppsvc.exe
                     2010-03-16 12:51:17                                  Microsoft-Windows-CAPI2         4097:      :: : <E=premium-server@thawte.com, CN=Thawte Premium Server CA, OU=Certification Services Division, O=Thawte Consulting cc, L=Cape Town, S=Western Cape, C=ZA>;  SHA1: <627F8D7827656399D27D7F9044C9FEB3F33EFA9A>.  
                     2010-03-16 12:51:19  SYSTEM                          MsiInstaller                    1040:    Windows: C:\Program Files (x86)\Google\Update\1.2.183.17\GoogleUpdateHelper.msi.   : 3716.  
                     2010-03-16 12:51:19  SYSTEM                          MsiInstaller                    11729: Product: Google Update Helper -- Configuration failed.  
                     2010-03-16 12:51:19  SYSTEM                          MsiInstaller                    1035:  Windows   . : Google Update Helper. : 1.2.183.17. : 1033. : Google Inc..     : 1638.  
                     2010-03-16 12:51:19  SYSTEM                          MsiInstaller                    1042:    Windows: C:\Program Files (x86)\Google\Update\1.2.183.17\GoogleUpdateHelper.msi.   : 3716.  
                     2010-03-16 12:51:19  SYSTEM                          MsiInstaller                    1040:    Windows: C:\Program Files (x86)\Google\Update\1.2.183.17\GoogleUpdateHelper.msi.   : 3716.  
                     2010-03-16 12:51:19  SYSTEM                          Microsoft-Windows-RestartManager  10000:   0 - 2010-03-16T10:51:19.279052200Z.  
                     2010-03-16 12:51:20                                  gupdate                         
                     2010-03-16 12:51:20  SYSTEM                          MsiInstaller                    11728: Product: Google Update Helper -- Configuration completed successfully.  
                     2010-03-16 12:51:20  SYSTEM                          MsiInstaller                    1035:  Windows   . : Google Update Helper. : 1.2.183.17. : 1033. : Google Inc..     : 0.  
                     2010-03-16 12:51:20  SYSTEM                          MsiInstaller                    1042:    Windows: C:\Program Files (x86)\Google\Update\1.2.183.17\GoogleUpdateHelper.msi.   : 3716.  
                     2010-03-16 12:51:20  SYSTEM                          Microsoft-Windows-RestartManager  10001:   0,  2010-03-16T10:51:19.279052200Z.  
                     2010-03-16 12:51:56                                  gupdate                         
                     2010-03-16 12:56:52  AJEKC                           MsiInstaller                    11728: Product: Microsoft Application Error Reporting -- Configuration completed successfully.  
                     2010-03-16 12:56:52  AJEKC                           MsiInstaller                    1035:  Windows   . : Microsoft Application Error Reporting. : 12.0.6015.5000. : 1033. : Microsoft Corporation.     : 0.  
                     2010-03-16 12:56:52  AJEKC                           Microsoft-Windows-RestartManager  10000:   1 - 2010-03-16T10:56:52.143088400Z.  
                     2010-03-16 12:58:24  AJEKC                           MsiInstaller                    1040:    Windows: C:\Program Files (x86)\Common Files\Windows Live\.cache\681506891cac4f7\crt.msi.   : 3216.  
                     2010-03-16 12:58:30  AJEKC                           MsiInstaller                    11707: Product: MSVCRT -- Installation completed successfully.  
                     2010-03-16 12:58:30  AJEKC                           MsiInstaller                    1033:  Windows   . : MSVCRT. : 14.0.1468.721. : 1033. : Microsoft.    : 0.  
                     2010-03-16 12:58:30  SYSTEM                          MsiInstaller                    1042:    Windows: C:\Program Files (x86)\Common Files\Windows Live\.cache\681506891cac4f7\crt.msi.   : 3216.  
                     2010-03-16 12:58:33  AJEKC                           MsiInstaller                    1040:    Windows: C:\Program Files (x86)\Common Files\Windows Live\.cache\6b98ceb11cac4f7\Contacts.msi.   : 3216.  
                     2010-03-16 12:58:35  AJEKC                           MsiInstaller                    11707: : Windows Live Communications Platform --   .  
                     2010-03-16 12:58:35  AJEKC                           MsiInstaller                    1033:  Windows   . : Windows Live Communications Platform. : 14.0.8098.930. : 0. : Microsoft Corporation.    : 0.  
                     2010-03-16 12:58:35  SYSTEM                          MsiInstaller                    1042:    Windows: C:\Program Files (x86)\Common Files\Windows Live\.cache\6b98ceb11cac4f7\Contacts.msi.   : 3216.  
                     2010-03-16 12:58:38  AJEKC                           MsiInstaller                    1040:    Windows: C:\Program Files (x86)\Common Files\Windows Live\.cache\6ece096f1cac4f7\RichUpload.msi.   : 3216.  
                     2010-03-16 12:58:39  AJEKC                           MsiInstaller                    11707: :   Windows Live --   .  
                     2010-03-16 12:58:39  AJEKC                           MsiInstaller                    1033:  Windows   . :   Windows Live. : 14.0.8014.1029. : 1049. : Microsoft Corporation.    : 0.  
                     2010-03-16 12:58:39  SYSTEM                          MsiInstaller                    1042:    Windows: C:\Program Files (x86)\Common Files\Windows Live\.cache\6ece096f1cac4f7\RichUpload.msi.   : 3216.  
                     2010-03-16 12:58:43  AJEKC                           MsiInstaller                    1040:    Windows: C:\Program Files (x86)\Common Files\Windows Live\.cache\724127f51cac4f7\wllogin.msi.   : 3216.  
                     2010-03-16 12:58:50  AJEKC                           MsiInstaller                    11707: :     Windows Live --   .  
                     2010-03-16 12:58:50  AJEKC                           MsiInstaller                    1033:  Windows   . :     Windows Live. : 5.000.818.5. : 1049. : Microsoft Corporation.    : 0.  
                     2010-03-16 12:58:50  SYSTEM                          MsiInstaller                    1042:    Windows: C:\Program Files (x86)\Common Files\Windows Live\.cache\724127f51cac4f7\wllogin.msi.   : 3216.  
                     2010-03-16 12:58:53  AJEKC                           MsiInstaller                    1040:    Windows: C:\Program Files (x86)\Common Files\Windows Live\.cache\75ad225a1cac4f7\WLXSuite.msi.   : 3216.  
                     2010-03-16 12:58:55  AJEKC                           MsiInstaller                    11707: :   Windows Live --   .  
                     2010-03-16 12:58:55  AJEKC                           MsiInstaller                    1033:  Windows   . :   Windows Live. : 14.0.8089.726. : 25. : Microsoft Corporation.    : 0.  
                     2010-03-16 12:58:55  SYSTEM                          MsiInstaller                    1042:    Windows: C:\Program Files (x86)\Common Files\Windows Live\.cache\75ad225a1cac4f7\WLXSuite.msi.   : 3216.  
                     2010-03-16 12:58:59  AJEKC                           MsiInstaller                    1040:    Windows: C:\Program Files (x86)\Common Files\Windows Live\.cache\78dd9a581cac4f7\choiceguard.msi.   : 3216.  
                     2010-03-16 12:59:01  AJEKC                           MsiInstaller                    11707: Product: Microsoft Choice Guard -- Installation completed successfully.  
                     2010-03-16 12:59:01  AJEKC                           MsiInstaller                    1033:  Windows   . : Microsoft Choice Guard. : 2.0.48.0. : 1033. : Microsoft Corporation.    : 0.  
                     2010-03-16 12:59:01  SYSTEM                          MsiInstaller                    1042:    Windows: C:\Program Files (x86)\Common Files\Windows Live\.cache\78dd9a581cac4f7\choiceguard.msi.   : 3216.  
                     2010-03-16 12:59:05  AJEKC                           MsiInstaller                    1040:    Windows: C:\Program Files (x86)\Common Files\Windows Live\.cache\96fba36f1cac4f7\Messenger.msi.   : 3216.  
                     2010-03-16 12:59:16  AJEKC                           MsiInstaller                    11707: : Windows Live Messenger --   .  
                     2010-03-16 12:59:16  AJEKC                           MsiInstaller                    1033:  Windows   . : Windows Live Messenger. : 14.0.8089.0726. : 1049. : Microsoft Corporation.    : 0.  
                     2010-03-16 12:59:16  SYSTEM                          MsiInstaller                    1042:    Windows: C:\Program Files (x86)\Common Files\Windows Live\.cache\96fba36f1cac4f7\Messenger.msi.   : 3216.  
                     2010-03-16 12:59:44  AJEKC                           Microsoft-Windows-RestartManager  10001:   1,  2010-03-16T10:56:52.143088400Z.  
                     2010-03-16 13:16:51                                  Software Protection Platform Service  900: C:\Windows\system32\sppsvc.exe
                     2010-03-16 13:16:51                                  Software Protection Platform Service  1066: C:\Windows\system32\sppsvc.exe
                     2010-03-16 13:16:52                                  Software Protection Platform Service  1033: C:\Windows\system32\sppsvc.exe
                     2010-03-16 13:16:52                                  Software Protection Platform Service  1003: C:\Windows\system32\sppsvc.exe
                     2010-03-16 13:16:52                                  Software Protection Platform Service  902: C:\Windows\system32\sppsvc.exe
                     2010-03-16 13:16:54                                  Windows Error Reporting         1001:   291305935,  5   : PnPRequestAdditionalSoftware  :     CAB: 0     :  P1: x64  P2: USB\VID_0A5C&PID_4502&REV_0100  P3: 6.1.0.0  P4: 0409  P5: input.inf  P6: *  P7:   P8:   P9:   P10:      :        :  C:\Users\AJEKC\AppData\Local\Microsoft\Windows\WER\ReportArchive\NonCritical_x64_c3c82315c487e531050ee29b211485d1f259062_0b673d8c     :     : 0   : 6aef95f4-30ed-11df-b3dd-001fd0dbe9f1   : 0  
                     2010-03-16 13:17:12                                  Windows Error Reporting         1001:   291305928,  5   : PnPRequestAdditionalSoftware  :     CAB: 0     :  P1: x64  P2: USB\VID_0A5C&PID_4503&REV_0100  P3: 6.1.0.0  P4: 0409  P5: input.inf  P6: *  P7:   P8:   P9:   P10:      :        :  C:\Users\AJEKC\AppData\Local\Microsoft\Windows\WER\ReportArchive\NonCritical_x64_1ec7c7bd467496c034c484953de0f6892b8bdf3_0b678601     :     : 0   : 76255159-30ed-11df-b3dd-001fd0dbe9f1   : 0  
                     2010-03-16 13:20:15  SYSTEM                          Microsoft-Windows-LoadPerf      1001:     WmiApRpl (WmiApRpl)  .        Last Counter  Last Help.  
                     2010-03-16 13:20:15  SYSTEM                          Microsoft-Windows-LoadPerf      1000: C    WmiApRpl (WmiApRpl)  .         ,   .  
                     2010-03-16 13:21:52                                  Software Protection Platform Service  903: C:\Windows\system32\sppsvc.exe
                     2010-03-16 13:58:58  AJEKC                           MsiInstaller                    1040:    Windows: C:\ProgramData\Kaspersky Lab Setup Files\Kaspersky Internet Security 2010 9.0.0.736\English\kis.en.msi.   : 1456.  
                     2010-03-16 13:59:13                                  System Restore                  8194: C:\Windows\system32\srcore.dll
                     2010-03-16 13:59:59  AJEKC                           MsiInstaller                    11707: Product: Kaspersky Internet Security 2010 -- Installation operation completed successfully.  
                     2010-03-16 13:59:59  AJEKC                           MsiInstaller                    1033:  Windows   . : Kaspersky Internet Security 2010. : 9.0.0.736. : 1033. : Kaspersky Lab.    : 0.  
                     2010-03-16 13:59:59  SYSTEM                          MsiInstaller                    1042:    Windows: C:\ProgramData\Kaspersky Lab Setup Files\Kaspersky Internet Security 2010 9.0.0.736\English\kis.en.msi.   : 1456.  
                     2010-03-16 14:02:18                                  VSS                             8224: C:\Windows\System32\VSSVC.EXE
                     2010-03-16 14:19:31                                  Desktop Window Manager          9009: C:\Windows\system32\dwm.exe
                     2010-03-16 14:19:31                                  Wlclntfy                        6000: C:\Windows\System32\winlogon.exe
                       2010-03-16 14:19:31  SYSTEM                          Microsoft-Windows-User Profiles Service  1530: C:\Windows\System32\profsvc.dll
                     2010-03-16 14:19:33  SYSTEM                          Microsoft-Windows-User Profiles Service  1532: C:\Windows\System32\profsvc.dll
                     2010-03-16 17:19:50                                  EventSystem                     
                     2010-03-16 17:19:50  SYSTEM                          Microsoft-Windows-User Profiles Service  1531: C:\Windows\System32\profsvc.dll
                     2010-03-16 17:19:54                                  WinMgmt                         
                     2010-03-16 17:19:54                                  WinMgmt                         
                     2010-03-16 17:19:57                                  gupdate                         
                     2010-03-16 17:20:21                                  Winlogon                        4101: C:\Windows\System32\winlogon.exe
                     2010-03-16 17:20:22                                  Wlclntfy                        6000: C:\Windows\System32\winlogon.exe
                     2010-03-16 17:20:32                                  gupdate                         
             1          2010-03-16 17:20:39                                  ESENT                           102: Windows (648) Windows:   (6.01.7600.0000)    (0).  
             3          2010-03-16 17:20:40                                  ESENT                           300: Windows (648) Windows:     .  
             3          2010-03-16 17:20:40                                  ESENT                           301: Windows (648) Windows:      C:\ProgramData\Microsoft\Search\Data\Applications\Windows\MSS0001F.log.  
             3          2010-03-16 17:20:40                                  ESENT                           301: Windows (648) Windows:      C:\ProgramData\Microsoft\Search\Data\Applications\Windows\MSS.log.  
             3          2010-03-16 17:20:42                                  ESENT                           302: Windows (648) Windows:    .  
             1          2010-03-16 17:20:44                                  Windows Search Service          1003:  Windows Search .   
                     2010-03-16 17:22:02                                  Software Protection Platform Service  900: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:22:03                                  SecurityCenter                  1: C:\Windows\System32\wscsvc.dll
                     2010-03-16 17:22:04                                  Software Protection Platform Service  1066: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:22:04                                  Software Protection Platform Service  1003: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:22:04                                  Software Protection Platform Service  902: C:\Windows\system32\sppsvc.exe
                         2010-03-16 17:24:27                                  Steam Client Service            1: Error: GetSteamInstallPath failed 2  
                     2010-03-16 17:26:15  SYSTEM                          Microsoft-Windows-LoadPerf      1001:     WmiApRpl (WmiApRpl)  .        Last Counter  Last Help.  
                     2010-03-16 17:26:15  SYSTEM                          Microsoft-Windows-LoadPerf      1000: C    WmiApRpl (WmiApRpl)  .         ,   .  
                     2010-03-16 17:27:05                                  Software Protection Platform Service  903: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:51:23  SYSTEM                          Microsoft-Windows-User Profiles Service  1531: C:\Windows\System32\profsvc.dll
                     2010-03-16 17:51:24                                  EventSystem                     
                     2010-03-16 17:51:28                                  WinMgmt                         
                     2010-03-16 17:51:30                                  WinMgmt                         
                     2010-03-16 17:53:31                                  Software Protection Platform Service  900: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:53:32                                  VSS                             8212: C:\Windows\System32\VSSVC.EXE
                     2010-03-16 17:53:33                                  SecurityCenter                  1: C:\Windows\System32\wscsvc.dll
             1          2010-03-16 17:53:33                                  Windows Search Service          1003:  Windows Search .   
                     2010-03-16 17:53:39                                  Windows Error Reporting         1001:   ,  0   : PnPRequestAdditionalSoftware  : Not available   CAB: 0     :  P1: x64  P2: USB\VID_045E&PID_0059&REV_0016  P3: 6.1.0.0  P4: 0409  P5: input.inf  P6: *  P7:   P8:   P9:   P10:      :        :  C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_x64_dc961ad7c99f244b97fec7573b9dd1fbc21b44_cab_046ef160     :     : 0   : 1620bc9a-3114-11df-b196-001fd0dbe9f1   : 4  
                     2010-03-16 17:53:41                                  Software Protection Platform Service  1066: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:53:43                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:53:43                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:53:43                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:53:43                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:53:43                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:53:43                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:53:43                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:53:43                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:53:43                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:53:43                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:53:43                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:53:43                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:53:43                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:53:43                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:53:43                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:53:43                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:53:43                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:53:44                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:53:44                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:53:44                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:53:44                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:53:44                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:53:44                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:53:44                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:53:44                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:53:44                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:53:45                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:53:45                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:53:45                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:53:45                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:53:45                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:53:45                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:53:45                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:53:45                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:53:45                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:53:45                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:53:45                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:53:45                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:53:48                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:53:48                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:53:51                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:53:51                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:53:51                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:53:51                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:53:51                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:53:51                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:53:52                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:53:52                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:53:52                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:53:52                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:53:52                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:53:52                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:53:53                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:53:53                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:53:53                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:53:53                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:53:53                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:53:53                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:53:53                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:53:53                                  Software Protection Platform Service  1004: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:54:01                                  Software Protection Platform Service  1016: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:54:01                                  Windows Error Reporting         1001:   ,  0   : PnPRequestAdditionalSoftware  : Not available   CAB: 0     :  P1: x64  P2: USB\VID_046D&PID_C049&REV_5200&MI_00  P3: 6.1.0.0  P4: 0409  P5: input.inf  P6: *  P7:   P8:   P9:   P10:      :        :  C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_x64_10a917647bb8f1493d38211165594c9852ffa4c_cab_09c34690     :     : 0   : 232a05da-3114-11df-b196-001fd0dbe9f1   : 4  
                     2010-03-16 17:54:02                                  Windows Error Reporting         1001:   ,  0   : PnPRequestAdditionalSoftware  : Not available   CAB: 0     :  P1: x64  P2: USB\VID_046D&PID_C049&REV_5200&MI_01  P3: 6.1.0.0  P4: 0409  P5: input.inf  P6: *  P7:   P8:   P9:   P10:      :        :  C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_x64_4273fcc6f8dcccce1f8d761178fdcd2a4638e328_cab_09e34a86     :     : 0   : 23c4bf4c-3114-11df-b196-001fd0dbe9f1   : 4  
                     2010-03-16 17:54:02                                  Software Protection Platform Service  1025: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:54:02                                  Software Protection Platform Service  1033: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:54:03                                  Software Protection Platform Service  1003: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:54:03                                  Software Protection Platform Service  902: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:54:04                                  Windows Error Reporting         1001:   ,  0   : PnPRequestAdditionalSoftware  : Not available   CAB: 0     :  P1: x64  P2: HID\VID_046D&PID_C049&REV_5200&MI_01&Col01  P3: 6.1.0.0  P4: 0409  P5: input.inf  P6: *  P7:   P8:   P9:   P10:      :        :  C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_x64_0ebf75e299d4a613a2be4cab619ce6383986_cab_0a8b511b     :     : 0   : 24c5d3e9-3114-11df-b196-001fd0dbe9f1   : 4  
                     2010-03-16 17:54:04                                  Windows Error Reporting         1001:   ,  0   : PnPRequestAdditionalSoftware  : Not available   CAB: 0     :  P1: x64  P2: HID\VID_046D&PID_C049&REV_5200&MI_01&Col02  P3: 6.1.0.0  P4: 0409  P5: input.inf  P6: *  P7:   P8:   P9:   P10:      :        :  C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_x64_da8fe750fb86c1b5a81d66d4f7eee463cc75d124_cab_0a935263     :     : 0   : 24f7d0cf-3114-11df-b196-001fd0dbe9f1   : 4  
                     2010-03-16 17:54:28                                  Customer Experience Improvement Program  
                     2010-03-16 17:54:48                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: AuditPolicyGPManagedStubs.Interop  
                     2010-03-16 17:54:49                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: BDATunePIA  
                     2010-03-16 17:54:52                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: ehExtHost32  
                     2010-03-16 17:54:52                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: Microsoft.MediaCenter  
                     2010-03-16 17:54:53                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: Microsoft.MediaCenter.UI  
                     2010-03-16 17:54:53                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: ehiUserXp  
                     2010-03-16 17:54:53                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: ehRecObj  
                     2010-03-16 17:54:53                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: ehiProxy  
                     2010-03-16 17:54:53                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: mcepg  
                     2010-03-16 17:54:53                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: mcstore  
                     2010-03-16 17:54:53                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: mcstoredb  
                     2010-03-16 17:54:53                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: ehiVidCtl  
                     2010-03-16 17:54:53                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: ehiExtens  
                     2010-03-16 17:54:54                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: Microsoft.ApplicationId.Framework  
                     2010-03-16 17:54:54                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: Microsoft.ApplicationId.RuleWizard  
                     2010-03-16 17:54:54                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: Microsoft.Security.ApplicationId.PolicyManagement.PolicyModel  
                     2010-03-16 17:54:54                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: Microsoft.Security.ApplicationId.PolicyManagement.XmlHelper  
                     2010-03-16 17:54:54                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: Microsoft.Security.ApplicationId.PolicyManagement.PolicyManager  
                     2010-03-16 17:54:54                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: Microsoft.Security.ApplicationId.PolicyManagement.PolicyEngineApi.Interop  
                     2010-03-16 17:54:55                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: Microsoft.GroupPolicy.AdmTmplEditor  
                     2010-03-16 17:54:55                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: Microsoft.GroupPolicy.Interop  
                     2010-03-16 17:54:56                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: Microsoft.GroupPolicy.Reporting  
                     2010-03-16 17:54:56                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: SecurityAuditPoliciesSnapIn  
                     2010-03-16 17:54:57                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: Microsoft.Security.ApplicationId.Wizards.AutomaticRuleGenerationWizard  
                     2010-03-16 17:54:59                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: SrpUxSnapIn  
                     2010-03-16 17:54:59                                  System Restore                  8195: C:\Windows\system32\srcore.dll
                     2010-03-16 17:54:59                                  VSS                             8212: C:\Windows\System32\VSSVC.EXE
                     2010-03-16 17:54:59                                  VSS                             8212: C:\Windows\System32\VSSVC.EXE
                     2010-03-16 17:54:59                                  VSS                             8212: C:\Windows\System32\VSSVC.EXE
                     2010-03-16 17:54:59                                  VSS                             8212: C:\Windows\System32\VSSVC.EXE
                     2010-03-16 17:55:02                                  System Restore                  8196: C:\Windows\system32\srcore.dll
                     2010-03-16 17:55:03                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: AuditPolicyGPManagedStubs.Interop  
                     2010-03-16 17:55:05                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: BDATunePIA  
                     2010-03-16 17:55:05                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: ehCIR  
                     2010-03-16 17:55:05                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: ehiProxy  
                     2010-03-16 17:55:09                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: ehExtHost  
                     2010-03-16 17:55:10                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: Microsoft.MediaCenter  
                     2010-03-16 17:55:10                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: Microsoft.MediaCenter.UI  
                     2010-03-16 17:55:10                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: ehiUserXp  
                     2010-03-16 17:55:10                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: ehRecObj  
                     2010-03-16 17:55:11                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: mcepg  
                     2010-03-16 17:55:11                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: mcstore  
                     2010-03-16 17:55:11                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: mcstoredb  
                     2010-03-16 17:55:12                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: ehiVidCtl  
                     2010-03-16 17:55:12                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: ehiExtens  
                     2010-03-16 17:55:12                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: ehiActivScp  
                     2010-03-16 17:55:12                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: ehiBmlDataCarousel  
                     2010-03-16 17:55:13                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: ehiiTv  
                     2010-03-16 17:55:15                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: ehiTVMSMusic  
                     2010-03-16 17:55:15                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: Microsoft.MediaCenter.iTv.Hosting  
                     2010-03-16 17:55:16                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: ehiUPnP  
                     2010-03-16 17:55:16                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: ehiwmp  
                     2010-03-16 17:55:16                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: ehiWUapi  
                     2010-03-16 17:55:17                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: Microsoft.MediaCenter.Shell  
                     2010-03-16 17:55:18                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: Microsoft.MediaCenter.Interop  
                     2010-03-16 17:55:18                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: Microsoft.MediaCenter.ITVVM  
                     2010-03-16 17:55:18                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: Microsoft.MediaCenter.Playback  
                     2010-03-16 17:55:18                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: Microsoft.MediaCenter.TV.Tuners.Interop  
                     2010-03-16 17:55:18                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: Microsoft.MediaCenter.Sports  
                     2010-03-16 17:55:19                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: ehshell  
                     2010-03-16 17:55:19                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: Mcx2Dvcs  
                     2010-03-16 17:55:19                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: Microsoft.MediaCenter.iTv  
                     2010-03-16 17:55:19                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: Microsoft.MediaCenter.iTv.Media  
                     2010-03-16 17:55:19                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: LoadMxf  
                     2010-03-16 17:55:21                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: MCESidebarCtrl  
                     2010-03-16 17:55:21                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: mcGlidHostObj  
                     2010-03-16 17:55:22                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: mcplayerinterop  
                     2010-03-16 17:55:22                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: mcupdate  
                     2010-03-16 17:55:22                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: Microsoft.ApplicationId.Framework  
                     2010-03-16 17:55:23                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: Microsoft.ApplicationId.RuleWizard  
                     2010-03-16 17:55:23                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: Microsoft.Security.ApplicationId.PolicyManagement.PolicyModel  
                     2010-03-16 17:55:23                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: Microsoft.Security.ApplicationId.PolicyManagement.XmlHelper  
                     2010-03-16 17:55:23                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: Microsoft.Security.ApplicationId.PolicyManagement.PolicyManager  
                     2010-03-16 17:55:23                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: Microsoft.Security.ApplicationId.PolicyManagement.PolicyEngineApi.Interop  
                     2010-03-16 17:55:23                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: Microsoft.GroupPolicy.AdmTmplEditor  
                     2010-03-16 17:55:24                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: Microsoft.GroupPolicy.Interop  
                     2010-03-16 17:55:25                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: Microsoft.GroupPolicy.Reporting  
                     2010-03-16 17:55:25                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: SecurityAuditPoliciesSnapIn  
                     2010-03-16 17:55:25                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: Microsoft.MediaCenter.Bml  
                     2010-03-16 17:55:26                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: Microsoft.MediaCenter.Mheg  
                     2010-03-16 17:55:27                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: Microsoft.Security.ApplicationId.Wizards.AutomaticRuleGenerationWizard  
                     2010-03-16 17:55:32                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: SrpUxSnapIn  
                     2010-03-16 17:58:02                                  VSS                             8224: C:\Windows\System32\VSSVC.EXE
               1          2010-03-16 17:58:13                                  Windows Search Service          1008:  Windows Search        (: Full Index Reset).    
             1          2010-03-16 17:58:14                                  Windows Search Service          1010:  Windows Search     .    
             1          2010-03-16 17:58:14                                  Windows Search Service          1004:  Windows Search     (: Full Index Reset).    
                     2010-03-16 17:58:16  SYSTEM                          Microsoft-Windows-User Profiles Service  1532: C:\Windows\System32\profsvc.dll
                     2010-03-16 17:59:02                                  Software Protection Platform Service  900: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:59:02                                  Software Protection Platform Service  1066: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:59:02                                  Software Protection Platform Service  1003: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:59:02                                  Software Protection Platform Service  902: C:\Windows\system32\sppsvc.exe
                     2010-03-16 17:59:15  SYSTEM                          Microsoft-Windows-Backup        753: C:\Windows\system32\BlbEvents.dll
                     2010-03-16 18:00:03                                  Windows Backup                  4097: C:\Windows\system32\sdengin2.dll
                     2010-03-16 18:00:36                                  EventSystem                     
                     2010-03-16 18:00:36  SYSTEM                          Microsoft-Windows-User Profiles Service  1531: C:\Windows\System32\profsvc.dll
                     2010-03-16 18:00:41                                  WinMgmt                         
                     2010-03-16 18:00:43                                  WinMgmt                         
                     2010-03-16 18:01:24                                  Software Protection Platform Service  1003: C:\Windows\system32\sppsvc.exe
                     2010-03-16 18:01:24                                  Software Protection Platform Service  1003: C:\Windows\system32\sppsvc.exe
                     2010-03-16 18:04:03                                  Software Protection Platform Service  903: C:\Windows\system32\sppsvc.exe
                     2010-03-16 18:15:44                                  Windows Error Reporting         1001:   ,  0   : PCA2  :     CAB: 0     :  P1: firefox.exe  P2: 1.9.2.3667  P3: Firefox  P4: Firefox  P5: Mozilla Corporation  P6: 200  P7: -1  P8:   P9:   P10:      :  C:\Users\AJEKC\AppData\Local\Temp\{17e42668-add8-46c1-a1a6-36fb8fdebfaf}\appcompat.txt  C:\Users\AJEKC\AppData\Local\Temp\Tab8D03.tmp        :       :     : 0   : 29edb716-3117-11df-9241-001fd0dbe9f1   : 0  
                     2010-03-16 18:15:48                                  Windows Error Reporting         1001:   930601828,  5   : PCA2  :     CAB: 0     :  P1: firefox.exe  P2: 1.9.2.3667  P3: Firefox  P4: Firefox  P5: Mozilla Corporation  P6: 200  P7: -1  P8:   P9:   P10:      :  C:\Users\AJEKC\AppData\Local\Temp\{17e42668-add8-46c1-a1a6-36fb8fdebfaf}\appcompat.txt  C:\Users\AJEKC\AppData\Local\Temp\Tab8D03.tmp        :  C:\Users\AJEKC\AppData\Local\Microsoft\Windows\WER\ReportArchive\NonCritical_firefox.exe_b0fff119398278a8697a4c29e5bf1cfca9bfdd_043baad0     :     : 0   : 29edb716-3117-11df-9241-001fd0dbe9f1   : 0  
                     2010-03-16 18:27:41                                  Windows Backup                  4098: C:\Windows\system32\sdengin2.dll
                     2010-03-16 18:30:41                                  VSS                             8224: C:\Windows\System32\VSSVC.EXE
                     2010-03-16 18:34:15  SYSTEM                          Microsoft-Windows-Backup        754: C:\Windows\system32\BlbEvents.dll
                     2010-03-16 18:43:50                                  ICQ Service                     
                     2010-03-16 18:44:17                                  Microsoft-Windows-CAPI2         4097:      :: : <CN=America Online Root Certification Authority 1, O=America Online Inc., C=US>;  SHA1: <3921C115C15D0ECA5CCB5BC4F07D21D8050B566A>.  
                     2010-03-16 18:48:28  AJEKC                           MsiInstaller                    1040:    Windows: C:\ProgramData\Skype\{D103C4BA-F905-437A-8049-DB24763BBE36}\Skype.msi.   : 4248.  
                     2010-03-16 18:48:29  AJEKC                           Microsoft-Windows-RestartManager  10000:   0 - 2010-03-16T16:48:29.126909700Z.  
                     2010-03-16 18:48:34  AJEKC                           MsiInstaller                    11707: : Skype 4.2 --   .  
                     2010-03-16 18:48:34  AJEKC                           MsiInstaller                    1033:  Windows   . : Skype 4.2. : 4.2.155. : 1049. : Skype Technologies S.A..    : 0.  
                     2010-03-16 18:48:34  AJEKC                           Microsoft-Windows-RestartManager  10001:   0,  2010-03-16T16:48:29.126909700Z.  
                     2010-03-16 18:48:34  SYSTEM                          MsiInstaller                    1042:    Windows: C:\ProgramData\Skype\{D103C4BA-F905-437A-8049-DB24763BBE36}\Skype.msi.   : 4248.  
                     2010-03-16 18:48:42  AJEKC                           MsiInstaller                    1040:    Windows: C:\ProgramData\Skype\{D103C4BA-F905-437A-8049-DB24763BBE36}\SkypeToolbars.msi.   : 4248.  
                     2010-03-16 18:48:42  AJEKC                           Microsoft-Windows-RestartManager  10000:   0 - 2010-03-16T16:48:42.137332600Z.  
                     2010-03-16 18:48:45  AJEKC                           MsiInstaller                    11707: Product: Skype Toolbars -- Installation completed successfully.  
                     2010-03-16 18:48:45  AJEKC                           MsiInstaller                    1033:  Windows   . : Skype Toolbars. : 1.0.4051. : 1033. : Skype Technologies S.A..    : 0.  
                     2010-03-16 18:48:45  AJEKC                           Microsoft-Windows-RestartManager  10001:   0,  2010-03-16T16:48:42.137332600Z.  
                     2010-03-16 18:48:45  SYSTEM                          MsiInstaller                    1042:    Windows: C:\ProgramData\Skype\{D103C4BA-F905-437A-8049-DB24763BBE36}\SkypeToolbars.msi.   : 4248.  
                     2010-03-16 18:50:49                                  Microsoft-Windows-CAPI2         4100:         <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/503006091D97D4F5AE39F7CBE7927D7D652D3431.crt>.  
                     2010-03-16 18:50:49                                  Microsoft-Windows-CAPI2         4097:      :: : <CN=Entrust.net Certification Authority (2048), OU=(c) 1999 Entrust.net Limited, OU=www.entrust.net/CPS_2048 incorp. by ref. (limits liab.), O=Entrust.net>;  SHA1: <503006091D97D4F5AE39F7CBE7927D7D652D3431>.  
                     2010-03-16 18:50:49                                  Microsoft-Windows-CAPI2         4097:      :: : <CN=Entrust.net Certification Authority (2048), OU=(c) 1999 Entrust.net Limited, OU=www.entrust.net/CPS_2048 incorp. by ref. (limits liab.), O=Entrust.net>;  SHA1: <801D62D07B449D5C5C035C98EA61FA443C2A58FE>.  
                     2010-03-16 18:50:52                                  Microsoft-Windows-CAPI2         4100:         <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/503006091D97D4F5AE39F7CBE7927D7D652D3431.crt>.  
                     2010-03-16 19:06:36                                  Windows Error Reporting         1001:   181971786,  5   : ApphelpSoftBlock  : http://oca.microsoft.com/resredir.aspx?SID=13861&iBucketTable=5&iBucket=181971786   CAB: 0     :  P1: {11111111-1111-1111-1111-111111111111}  P2: {6778C39C-2003-4A36-8328-BB4974F74AAD}  P3:   P4:   P5:   P6:   P7:   P8:   P9:   P10:      :        :  C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Critical_{11111111-1111-1_27bf51c6b06822bb70bc24c58fd28889bd2501_087e24e0     :     : 0   : 4430e329-311e-11df-9241-001fd0dbe9f1   : 0  
                     2010-03-16 19:42:20                                  Windows Backup                  4097: C:\Windows\system32\sdengin2.dll
                     2010-03-16 19:45:33  SYSTEM                          Microsoft-Windows-Backup        753: C:\Windows\system32\BlbEvents.dll
                     2010-03-16 19:49:53                                  EventSystem                     
                     2010-03-16 19:49:53  SYSTEM                          Microsoft-Windows-User Profiles Service  1531: C:\Windows\System32\profsvc.dll
                     2010-03-16 19:50:01                                  gupdate                         
                     2010-03-16 19:50:02                                  ICQ Service                     
                     2010-03-16 19:50:02                                  WinMgmt                         
                     2010-03-16 19:50:02                                  WinMgmt                         
                     2010-03-16 19:50:21                                  WinMgmt                         
                     2010-03-16 19:50:22                                  Winlogon                        4101: C:\Windows\System32\winlogon.exe
                     2010-03-16 19:50:22                                  Wlclntfy                        6000: C:\Windows\System32\winlogon.exe
                     2010-03-16 19:50:35                                  gupdate                         
             1          2010-03-16 19:51:03                                  ESENT                           102: Windows (3108) Windows:   (6.01.7600.0000)    (0).  
             3          2010-03-16 19:51:03                                  ESENT                           300: Windows (3108) Windows:     .  
             3          2010-03-16 19:51:05                                  ESENT                           301: Windows (3108) Windows:      C:\ProgramData\Microsoft\Search\Data\Applications\Windows\MSS.log.  
             3          2010-03-16 19:51:15                                  ESENT                           302: Windows (3108) Windows:    .  
             1          2010-03-16 19:51:20                                  Windows Search Service          1003:  Windows Search .   
                     2010-03-16 19:51:23                                  Windows Error Reporting         1001:   ,  0   : BlueScreen  :     CAB: 0     :  P1:   P2:   P3:   P4:   P5:   P6:   P7:   P8:   P9:   P10:      :  C:\Windows\Minidump\031610-27830-01.dmp  C:\Users\AJEKC\AppData\Local\Temp\WER-60091-0.sysdata.xml  C:\Users\AJEKC\AppData\Local\Temp\WER41EF.tmp.WERInternalMetadata.xml        :  C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Kernel_0_0_cab_0bd9ccfe     :     : 0   : 031610-27830-01   : 4  
                     2010-03-16 19:52:15                                  Software Protection Platform Service  900: C:\Windows\system32\sppsvc.exe
                     2010-03-16 19:52:16                                  SecurityCenter                  1: C:\Windows\System32\wscsvc.dll
                     2010-03-16 19:52:17                                  Software Protection Platform Service  1066: C:\Windows\system32\sppsvc.exe
                     2010-03-16 19:52:17                                  Software Protection Platform Service  1003: C:\Windows\system32\sppsvc.exe
                     2010-03-16 19:52:17                                  Software Protection Platform Service  902: C:\Windows\system32\sppsvc.exe
                     2010-03-16 19:53:18                                  Windows Error Reporting         1001:   ,  0   : BlueScreen  :     CAB: 0     :  P1:   P2:   P3:   P4:   P5:   P6:   P7:   P8:   P9:   P10:      :  C:\Windows\Minidump\031610-27830-01.dmp  C:\Users\AJEKC\AppData\Local\Temp\WER-60091-0.sysdata.xml  C:\Users\AJEKC\AppData\Local\Temp\WER41EF.tmp.WERInternalMetadata.xml        :  C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Kernel_0_0_cab_0bd9ccfe     :     : 0   : 031610-27830-01   : 0  
                     2010-03-16 19:56:17                                  Windows Error Reporting         1001:   ,  0   : PCA2  :     CAB: 0     :  P1: iw4sp.exe  P2: 0.0.0.0  P3: iw4sp.exe  P4: unknown  P5: unknown  P6: 200  P7: -1  P8:   P9:   P10:      :  C:\Users\AJEKC\AppData\Local\Temp\{0441aae4-30aa-4f62-9d47-bcd9643d930d}\appcompat.txt  C:\Users\AJEKC\AppData\Local\Temp\Tab4A29.tmp        :       :     : 0   : 37865c8a-3125-11df-bed6-001fd0dbe9f1   : 0  
                     2010-03-16 19:56:55  SYSTEM                          Microsoft-Windows-LoadPerf      1001:     WmiApRpl (WmiApRpl)  .        Last Counter  Last Help.  
                     2010-03-16 19:56:55  SYSTEM                          Microsoft-Windows-LoadPerf      1000: C    WmiApRpl (WmiApRpl)  .         ,   .  
                     2010-03-16 19:57:18                                  Software Protection Platform Service  903: C:\Windows\system32\sppsvc.exe
                     2010-03-16 20:12:52                                  Desktop Window Manager          9002: C:\Windows\system32\dwm.exe
                     2010-03-16 20:12:56  SYSTEM                          MsiInstaller                    1040:    Windows: C:\Windows\TEMP\{12D21B80-CE0A-4C3D-B76F-C217573C2CEF}\PVSonyDll.msi.   : 3044.  
                     2010-03-16 20:12:56  SYSTEM                          Microsoft-Windows-RestartManager  10000:   0 - 2010-03-16T18:12:56.673070300Z.  
                     2010-03-16 20:12:59  SYSTEM                          MsiInstaller                    11707: Product: PVSonyDll -- Installation operation completed successfully.  
                     2010-03-16 20:12:59  SYSTEM                          MsiInstaller                    1033:  Windows   . : PVSonyDll. : 1.00.0001. : 1033. : NVIDIA Corporation.    : 0.  
                     2010-03-16 20:12:59  SYSTEM                          MsiInstaller                    1042:    Windows: C:\Windows\TEMP\{12D21B80-CE0A-4C3D-B76F-C217573C2CEF}\PVSonyDll.msi.   : 3044.  
                     2010-03-16 20:12:59  SYSTEM                          Microsoft-Windows-RestartManager  10001:   0,  2010-03-16T18:12:56.673070300Z.  
                     2010-03-16 20:13:04  SYSTEM                          MsiInstaller                    1040:    Windows: C:\Windows\TEMP\{A5B3045A-1341-4661-94BB-9254E4393CAE}\NVIDIA Control Panel.msi.   : 4384.  
                     2010-03-16 20:13:04  SYSTEM                          Microsoft-Windows-RestartManager  10000:   0 - 2010-03-16T18:13:04.441883900Z.  
                     2010-03-16 20:13:29  SYSTEM                          MsiInstaller                    11707: Product: NVIDIA Control Panel -- Installation operation completed successfully.  
                     2010-03-16 20:13:29  SYSTEM                          MsiInstaller                    1033:  Windows   . : NVIDIA Control Panel. : 1.00.0000. : 1033. : NVIDIA Corporation.    : 0.  
                     2010-03-16 20:13:29  SYSTEM                          MsiInstaller                    1042:    Windows: C:\Windows\TEMP\{A5B3045A-1341-4661-94BB-9254E4393CAE}\NVIDIA Control Panel.msi.   : 4384.  
                     2010-03-16 20:13:29  SYSTEM                          Microsoft-Windows-RestartManager  10001:   0,  2010-03-16T18:13:04.441883900Z.  
                     2010-03-16 20:13:40  AJEKC                           MsiInstaller                    1040:    Windows: C:\Users\AJEKC\AppData\Local\Temp\{964A5913-3F17-47D6-B0BD-38FDAAEB3088}\PVSonyDll.msi.   : 4712.  
                     2010-03-16 20:13:40  AJEKC                           Microsoft-Windows-RestartManager  10000:   0 - 2010-03-16T18:13:40.099233800Z.  
                     2010-03-16 20:13:42  AJEKC                           MsiInstaller                    11728: Product: PVSonyDll -- Configuration completed successfully.  
                     2010-03-16 20:13:42  AJEKC                           MsiInstaller                    1035:  Windows   . : PVSonyDll. : 1.00.0001. : 1033. : NVIDIA Corporation.     : 0.  
                     2010-03-16 20:13:42  AJEKC                           Microsoft-Windows-RestartManager  10001:   0,  2010-03-16T18:13:40.099233800Z.  
                     2010-03-16 20:13:42  SYSTEM                          MsiInstaller                    1042:    Windows: C:\Users\AJEKC\AppData\Local\Temp\{964A5913-3F17-47D6-B0BD-38FDAAEB3088}\PVSonyDll.msi.   : 4712.  
                     2010-03-16 20:13:46  AJEKC                           MsiInstaller                    1040:    Windows: C:\Users\AJEKC\AppData\Local\Temp\{C5A551F7-7374-47A6-B959-FA64ED0EFFCC}\NVIDIA Control Panel.msi.   : 2840.  
                     2010-03-16 20:13:46  AJEKC                           Microsoft-Windows-RestartManager  10000:   0 - 2010-03-16T18:13:46.481831800Z.  
                     2010-03-16 20:13:55  AJEKC                           Microsoft-Windows-RestartManager  10005:   .  
                     2010-03-16 20:14:04  AJEKC                           MsiInstaller                    11707: Product: NVIDIA Control Panel -- Installation operation completed successfully.  
                     2010-03-16 20:14:04  AJEKC                           MsiInstaller                    1033:  Windows   . : NVIDIA Control Panel. : 1.00.0000. : 1033. : NVIDIA Corporation.    : 0.  
                     2010-03-16 20:14:04  AJEKC                           Microsoft-Windows-RestartManager  10001:   0,  2010-03-16T18:13:46.481831800Z.  
                     2010-03-16 20:14:04  SYSTEM                          MsiInstaller                    1042:    Windows: C:\Users\AJEKC\AppData\Local\Temp\{C5A551F7-7374-47A6-B959-FA64ED0EFFCC}\NVIDIA Control Panel.msi.   : 2840.  
                     2010-03-16 20:15:05  SYSTEM                          Microsoft-Windows-LoadPerf      1001:     WmiApRpl (WmiApRpl)  .        Last Counter  Last Help.  
                     2010-03-16 20:15:05  SYSTEM                          Microsoft-Windows-LoadPerf      1000: C    WmiApRpl (WmiApRpl)  .         ,   .  
                     2010-03-16 20:17:48                                  HHCTRL                          
                     2010-03-16 20:17:48                                  HHCTRL                          
                     2010-03-16 20:17:48                                  HHCTRL                          
                     2010-03-16 20:17:48                                  HHCTRL                          
                     2010-03-16 20:17:48                                  HHCTRL                          
                     2010-03-16 20:17:48                                  HHCTRL                          
                     2010-03-16 20:18:23                                  HHCTRL                          
                     2010-03-16 20:18:23                                  HHCTRL                          
                     2010-03-16 20:18:23                                  HHCTRL                          
                     2010-03-16 20:18:23                                  HHCTRL                          
                     2010-03-16 20:18:23                                  HHCTRL                          
                     2010-03-16 20:18:23                                  HHCTRL                          
                     2010-03-16 20:18:27                                  HHCTRL                          
                     2010-03-16 20:18:27                                  HHCTRL                          
                     2010-03-16 20:18:27                                  HHCTRL                          
                     2010-03-16 20:18:27                                  HHCTRL                          
                     2010-03-16 20:18:27                                  HHCTRL                          
                     2010-03-16 20:18:27                                  HHCTRL                          
                     2010-03-16 20:18:30                                  HHCTRL                          
                     2010-03-16 20:18:30                                  HHCTRL                          
                     2010-03-16 20:18:30                                  HHCTRL                          
                     2010-03-16 20:18:30                                  HHCTRL                          
                     2010-03-16 20:18:30                                  HHCTRL                          
                     2010-03-16 20:18:30                                  HHCTRL                          
                     2010-03-16 21:08:38                                  EventSystem                     
                     2010-03-16 21:08:38  SYSTEM                          Microsoft-Windows-User Profiles Service  1531: C:\Windows\System32\profsvc.dll
                     2010-03-16 21:08:40                                  gupdate                         
                     2010-03-16 21:08:40                                  ICQ Service                     
                     2010-03-16 21:08:40                                  WinMgmt                         
                     2010-03-16 21:08:43                                  WinMgmt                         
                     2010-03-16 21:08:54                                  WinMgmt                         
                     2010-03-16 21:09:16                                  gupdate                         
                     2010-03-16 21:10:51                                  Software Protection Platform Service  900: C:\Windows\system32\sppsvc.exe
                     2010-03-16 21:10:55                                  SecurityCenter                  1: C:\Windows\System32\wscsvc.dll
                     2010-03-16 21:10:56                                  Software Protection Platform Service  1066: C:\Windows\system32\sppsvc.exe
                     2010-03-16 21:10:56                                  Software Protection Platform Service  1003: C:\Windows\system32\sppsvc.exe
             1          2010-03-16 21:10:56                                  ESENT                           102: Windows (1472) Windows:   (6.01.7600.0000)    (0).  
             3          2010-03-16 21:10:56                                  ESENT                           300: Windows (1472) Windows:     .  
             3          2010-03-16 21:10:56                                  ESENT                           301: Windows (1472) Windows:      C:\ProgramData\Microsoft\Search\Data\Applications\Windows\MSS00021.log.  
                     2010-03-16 21:10:57                                  Software Protection Platform Service  902: C:\Windows\system32\sppsvc.exe
             3          2010-03-16 21:10:57                                  ESENT                           301: Windows (1472) Windows:      C:\ProgramData\Microsoft\Search\Data\Applications\Windows\MSS.log.  
             3          2010-03-16 21:10:57                                  ESENT                           302: Windows (1472) Windows:    .  
             1          2010-03-16 21:10:58                                  Windows Search Service          1003:  Windows Search .   
                     2010-03-16 21:12:53  SYSTEM                          Microsoft-Windows-LoadPerf      1001:     WmiApRpl (WmiApRpl)  .        Last Counter  Last Help.  
                     2010-03-16 21:12:53  SYSTEM                          Microsoft-Windows-LoadPerf      1000: C    WmiApRpl (WmiApRpl)  .         ,   .  
                     2010-03-16 21:14:28                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: Microsoft.Security.ApplicationId.PolicyManagement.Cmdlets  
                     2010-03-16 21:14:47                                  Winlogon                        4101: C:\Windows\System32\winlogon.exe
                     2010-03-16 21:14:47                                  Wlclntfy                        6000: C:\Windows\System32\winlogon.exe
                     2010-03-16 21:15:57                                  Software Protection Platform Service  903: C:\Windows\system32\sppsvc.exe
                     2010-03-16 21:59:40                                  .NET Runtime Optimization Service  1130: .NET Runtime Optimization Service (2.0.50727.4927) - Installed from repository: Microsoft.Security.ApplicationId.PolicyManagement.Cmdlets  
                     2010-03-17 00:44:21                                  EventSystem                     
                     2010-03-17 00:44:21  SYSTEM                          Microsoft-Windows-User Profiles Service  1531: C:\Windows\System32\profsvc.dll
                     2010-03-17 00:44:28                                  gupdate                         
                     2010-03-17 00:44:29                                  WinMgmt                         
                     2010-03-17 00:44:29                                  ICQ Service                     
                     2010-03-17 00:44:30                                  WinMgmt                         
                     2010-03-17 00:44:33                                  WinMgmt                         
                     2010-03-17 00:45:02                                  gupdate                         
                     2010-03-17 00:48:25                                  EventSystem                     
                     2010-03-17 00:48:25  SYSTEM                          Microsoft-Windows-User Profiles Service  1531: C:\Windows\System32\profsvc.dll
                     2010-03-17 00:48:31                                  gupdate                         
                     2010-03-17 00:48:32                                  ICQ Service                     
                     2010-03-17 00:48:33                                  WinMgmt                         
                     2010-03-17 00:48:34                                  WinMgmt                         
                     2010-03-17 00:48:36                                  WinMgmt                         
                     2010-03-17 00:49:06                                  gupdate                         
                     2010-03-17 00:49:48                                  Winlogon                        4101: C:\Windows\System32\winlogon.exe
                     2010-03-17 00:49:48                                  Wlclntfy                        6000: C:\Windows\System32\winlogon.exe
             1          2010-03-17 00:50:02                                  ESENT                           102: Windows (3668) Windows:   (6.01.7600.0000)    (0).  
             3          2010-03-17 00:50:03                                  ESENT                           300: Windows (3668) Windows:     .  
             3          2010-03-17 00:50:03                                  ESENT                           301: Windows (3668) Windows:      C:\ProgramData\Microsoft\Search\Data\Applications\Windows\MSS00022.log.  
             3          2010-03-17 00:50:09                                  ESENT                           301: Windows (3668) Windows:      C:\ProgramData\Microsoft\Search\Data\Applications\Windows\MSS.log.  
             3          2010-03-17 00:50:13                                  ESENT                           302: Windows (3668) Windows:    .  
             1          2010-03-17 00:50:19                                  Windows Search Service          1003:  Windows Search .   
                     2010-03-17 00:50:27                                  Windows Error Reporting         1001:   X64_0x50_Ntfs!NtfsLookupAllocation+18f,  0   : BlueScreen  :     CAB: 0     :  P1:   P2:   P3:   P4:   P5:   P6:   P7:   P8:   P9:   P10:      :  C:\Windows\Minidump\031710-18954-01.dmp  C:\Users\AJEKC\AppData\Local\Temp\WER-105534-0.sysdata.xml  C:\Users\AJEKC\AppData\Local\Temp\WER1110.tmp.WERInternalMetadata.xml        :  C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Kernel_0_0_cab_087e3310     : X64_0x50_Ntfs!NtfsLookupAllocation+18f    : 0   : 031710-18954-01   : 0  
                     2010-03-17 00:50:48                                  Software Protection Platform Service  900: C:\Windows\system32\sppsvc.exe
                     2010-03-17 00:51:39                                  SecurityCenter                  1: C:\Windows\System32\wscsvc.dll
                     2010-03-17 00:51:44                                  Software Protection Platform Service  1066: C:\Windows\system32\sppsvc.exe
                     2010-03-17 00:51:44                                  Software Protection Platform Service  1003: C:\Windows\system32\sppsvc.exe
                     2010-03-17 00:51:45                                  Software Protection Platform Service  902: C:\Windows\system32\sppsvc.exe
                     2010-03-17 00:54:27  SYSTEM                          Microsoft-Windows-LoadPerf      1001:     WmiApRpl (WmiApRpl)  .        Last Counter  Last Help.  
                     2010-03-17 00:54:27  SYSTEM                          Microsoft-Windows-LoadPerf      1000: C    WmiApRpl (WmiApRpl)  .         ,   .  
                     2010-03-17 00:56:45                                  Software Protection Platform Service  903: C:\Windows\system32\sppsvc.exe
                     2010-03-17 04:01:48                                  Desktop Window Manager          9010: C:\Windows\system32\dwm.exe
                     2010-03-17 04:01:48                                  Desktop Window Manager          9013: C:\Windows\system32\dwm.exe
                     2010-03-17 04:05:25                                  EventSystem                     
                     2010-03-17 04:05:25  SYSTEM                          Microsoft-Windows-User Profiles Service  1531: C:\Windows\System32\profsvc.dll
                     2010-03-17 04:05:33                                  gupdate                         
                     2010-03-17 04:05:34                                  ICQ Service                     
                     2010-03-17 04:05:34                                  WinMgmt                         
                     2010-03-17 04:05:34                                  WinMgmt                         
                     2010-03-17 04:05:36                                  WinMgmt                         
                     2010-03-17 04:06:08                                  gupdate                         
                     2010-03-17 04:07:43                                  Software Protection Platform Service  900: C:\Windows\system32\sppsvc.exe
                     2010-03-17 04:07:47                                  SecurityCenter                  1: C:\Windows\System32\wscsvc.dll
                     2010-03-17 04:07:48                                  Software Protection Platform Service  1066: C:\Windows\system32\sppsvc.exe
                     2010-03-17 04:07:48                                  Software Protection Platform Service  1003: C:\Windows\system32\sppsvc.exe
                     2010-03-17 04:07:48                                  Software Protection Platform Service  902: C:\Windows\system32\sppsvc.exe
             1          2010-03-17 04:07:48                                  ESENT                           102: Windows (1968) Windows:   (6.01.7600.0000)    (0).  
             3          2010-03-17 04:07:48                                  ESENT                           300: Windows (1968) Windows:     .  
             3          2010-03-17 04:07:48                                  ESENT                           301: Windows (1968) Windows:      C:\ProgramData\Microsoft\Search\Data\Applications\Windows\MSS.log.  
             1          2010-03-17 04:07:49                                  Windows Search Service          1003:  Windows Search .   
             3          2010-03-17 04:07:49                                  ESENT                           302: Windows (1968) Windows:    .  
               3          2010-03-17 04:07:49                                  Windows Search Service          3036:     <csc://{S-1-5-21-4199977393-3493237858-2658114118-1001}/> .  Context:  Application, SystemIndex Catalog  Details:  (HRESULT : 0x80004005) (0x80004005)   
                     2010-03-17 04:09:44  SYSTEM                          Microsoft-Windows-LoadPerf      1001:     WmiApRpl (WmiApRpl)  .        Last Counter  Last Help.  
                     2010-03-17 04:09:44  SYSTEM                          Microsoft-Windows-LoadPerf      1000: C    WmiApRpl (WmiApRpl)  .         ,   .  
                     2010-03-17 04:12:48                                  Software Protection Platform Service  903: C:\Windows\system32\sppsvc.exe
                     2010-03-17 04:23:33                                  Windows Error Reporting         1001:   502048478,  5   : AEAPPINV2  : Not available   CAB: 0     :  P1: 1  P2: 2  P3: 6.1.0.0  P4: 1049  P5: 90  P6:   P7:   P8:   P9:   P10:      :        :       :     : 0   : 118722bc-316c-11df-b3ff-001fd0dbe9f1   : 0  
                     2010-03-17 04:25:57                                  EventSystem                     
                     2010-03-17 04:25:57  SYSTEM                          Microsoft-Windows-User Profiles Service  1531: C:\Windows\System32\profsvc.dll
                     2010-03-17 04:26:01                                  ICQ Service                     
                     2010-03-17 04:26:01                                  gupdate                         
                     2010-03-17 04:26:02                                  WinMgmt                         
                     2010-03-17 04:26:02                                  WinMgmt                         
                     2010-03-17 04:26:04                                  WinMgmt                         
                     2010-03-17 04:26:37                                  gupdate                         
                     2010-03-17 04:28:07                                  Software Protection Platform Service  900: C:\Windows\system32\sppsvc.exe
                     2010-03-17 04:28:11                                  SecurityCenter                  1: C:\Windows\System32\wscsvc.dll
             1          2010-03-17 04:28:11                                  ESENT                           102: Windows (3052) Windows:   (6.01.7600.0000)    (0).  
             3          2010-03-17 04:28:11                                  ESENT                           300: Windows (3052) Windows:     .  
                     2010-03-17 04:28:12                                  Software Protection Platform Service  1066: C:\Windows\system32\sppsvc.exe
                     2010-03-17 04:28:12                                  Software Protection Platform Service  1003: C:\Windows\system32\sppsvc.exe
                     2010-03-17 04:28:12                                  Software Protection Platform Service  902: C:\Windows\system32\sppsvc.exe
             3          2010-03-17 04:28:12                                  ESENT                           301: Windows (3052) Windows:      C:\ProgramData\Microsoft\Search\Data\Applications\Windows\MSS00023.log.  
             3          2010-03-17 04:28:12                                  ESENT                           301: Windows (3052) Windows:      C:\ProgramData\Microsoft\Search\Data\Applications\Windows\MSS.log.  
             3          2010-03-17 04:28:13                                  ESENT                           302: Windows (3052) Windows:    .  
             1          2010-03-17 04:28:14                                  Windows Search Service          1003:  Windows Search .   
                     2010-03-17 04:30:14  SYSTEM                          Microsoft-Windows-LoadPerf      1001:     WmiApRpl (WmiApRpl)  .        Last Counter  Last Help.  
                     2010-03-17 04:30:14  SYSTEM                          Microsoft-Windows-LoadPerf      1000: C    WmiApRpl (WmiApRpl)  .         ,   .  
                     2010-03-17 04:33:12                                  Software Protection Platform Service  903: C:\Windows\system32\sppsvc.exe
                     2010-03-17 04:44:59  SYSTEM                          Microsoft-Windows-User Profiles Service  1531: C:\Windows\System32\profsvc.dll
                     2010-03-17 04:45:00                                  EventSystem                     
                     2010-03-17 04:45:05                                  ICQ Service                     
                     2010-03-17 04:45:05                                  gupdate                         
                     2010-03-17 04:45:05                                  WinMgmt                         
                     2010-03-17 04:45:06                                  WinMgmt                         
                     2010-03-17 04:45:07                                  WinMgmt                         
                     2010-03-17 04:45:40                                  gupdate                         
                     2010-03-17 04:47:11                                  Software Protection Platform Service  900: C:\Windows\system32\sppsvc.exe
                     2010-03-17 04:47:15                                  SecurityCenter                  1: C:\Windows\System32\wscsvc.dll
                     2010-03-17 04:47:15                                  Software Protection Platform Service  1066: C:\Windows\system32\sppsvc.exe
                     2010-03-17 04:47:15                                  Software Protection Platform Service  1003: C:\Windows\system32\sppsvc.exe
                     2010-03-17 04:47:15                                  Software Protection Platform Service  902: C:\Windows\system32\sppsvc.exe
             1          2010-03-17 04:47:15                                  ESENT                           102: Windows (912) Windows:   (6.01.7600.0000)    (0).  
             3          2010-03-17 04:47:16                                  ESENT                           300: Windows (912) Windows:     .  
             3          2010-03-17 04:47:16                                  ESENT                           301: Windows (912) Windows:      C:\ProgramData\Microsoft\Search\Data\Applications\Windows\MSS00024.log.  
             3          2010-03-17 04:47:16                                  ESENT                           301: Windows (912) Windows:      C:\ProgramData\Microsoft\Search\Data\Applications\Windows\MSS.log.  
             3          2010-03-17 04:47:16                                  ESENT                           302: Windows (912) Windows:    .  
             1          2010-03-17 04:47:17                                  Windows Search Service          1003:  Windows Search .   
                     2010-03-17 04:49:18  SYSTEM                          Microsoft-Windows-LoadPerf      1001:     WmiApRpl (WmiApRpl)  .        Last Counter  Last Help.  
                     2010-03-17 04:49:18  SYSTEM                          Microsoft-Windows-LoadPerf      1000: C    WmiApRpl (WmiApRpl)  .         ,   .  
                     2010-03-17 04:52:15                                  Software Protection Platform Service  903: C:\Windows\system32\sppsvc.exe
                     2010-03-17 05:09:38                                  EventSystem                     
                     2010-03-17 05:09:38  SYSTEM                          Microsoft-Windows-User Profiles Service  1531: C:\Windows\System32\profsvc.dll
                     2010-03-17 05:09:43                                  ICQ Service                     
                     2010-03-17 05:09:43                                  gupdate                         
                     2010-03-17 05:09:43                                  WinMgmt                         
                     2010-03-17 05:09:44                                  WinMgmt                         
                     2010-03-17 05:09:45                                  WinMgmt                         
                     2010-03-17 05:10:18                                  gupdate                         
                     2010-03-17 05:11:47                                  Software Protection Platform Service  900: C:\Windows\system32\sppsvc.exe
                     2010-03-17 05:11:51                                  SecurityCenter                  1: C:\Windows\System32\wscsvc.dll
                     2010-03-17 05:11:52                                  Software Protection Platform Service  1066: C:\Windows\system32\sppsvc.exe
                     2010-03-17 05:11:52                                  Software Protection Platform Service  1003: C:\Windows\system32\sppsvc.exe
                     2010-03-17 05:11:52                                  Software Protection Platform Service  902: C:\Windows\system32\sppsvc.exe
             1          2010-03-17 05:11:53                                  ESENT                           102: Windows (876) Windows:   (6.01.7600.0000)    (0).  
             3          2010-03-17 05:11:53                                  ESENT                           300: Windows (876) Windows:     .  
             3          2010-03-17 05:11:53                                  ESENT                           301: Windows (876) Windows:      C:\ProgramData\Microsoft\Search\Data\Applications\Windows\MSS.log.  
             3          2010-03-17 05:11:54                                  ESENT                           302: Windows (876) Windows:    .  
             1          2010-03-17 05:11:55                                  Windows Search Service          1003:  Windows Search .   
                     2010-03-17 05:13:53  SYSTEM                          Microsoft-Windows-LoadPerf      1001:     WmiApRpl (WmiApRpl)  .        Last Counter  Last Help.  
                     2010-03-17 05:13:53  SYSTEM                          Microsoft-Windows-LoadPerf      1000: C    WmiApRpl (WmiApRpl)  .         ,   .  
                     2010-03-17 05:16:53                                  Software Protection Platform Service  903: C:\Windows\system32\sppsvc.exe
                     2010-03-17 05:37:16                                  VSS                             8224: C:\Windows\System32\VSSVC.EXE
                     2010-03-17 06:02:33                                  Microsoft-Windows-Defrag        258: C:\Windows\system32\defragsvc.dll
                     2010-03-17 06:03:08                                  Microsoft-Windows-Defrag        258: C:\Windows\system32\defragsvc.dll
               3          2010-03-17 06:11:55                                  Windows Search Service          3036:     <csc://{S-1-5-21-4199977393-3493237858-2658114118-1001}/> .  Context:  Application, SystemIndex Catalog  Details:  (HRESULT : 0x80004005) (0x80004005)   
               3          2010-03-17 09:11:55                                  Windows Search Service          3036:     <csc://{S-1-5-21-4199977393-3493237858-2658114118-1001}/> .  Context:  Application, SystemIndex Catalog  Details:  (HRESULT : 0x80004005) (0x80004005)   
                     2010-03-17 10:38:13                                  Winlogon                        4101: C:\Windows\System32\winlogon.exe
                     2010-03-17 10:38:13                                  Wlclntfy                        6000: C:\Windows\System32\winlogon.exe
                     2010-03-17 10:39:14                                  Windows Error Reporting         1001:   X64_0x50_nt!ExAllocatePoolWithTag+5c1,  0   : BlueScreen  :     CAB: 0     :  P1:   P2:   P3:   P4:   P5:   P6:   P7:   P8:   P9:   P10:      :  C:\Windows\Minidump\031710-16645-01.dmp  C:\Users\AJEKC\AppData\Local\Temp\WER-19736248-0.sysdata.xml  C:\Users\AJEKC\AppData\Local\Temp\WERFA8A.tmp.WERInternalMetadata.xml        :  C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Kernel_0_0_cab_0a9e0eb5     : X64_0x50_nt!ExAllocatePoolWithTag+5c1    : 0   : 031710-16645-01   : 0  
                     2010-03-17 10:39:14                                  Windows Error Reporting         1001:   ,  0   : BlueScreen  :     CAB: 0     :  P1:   P2:   P3:   P4:   P5:   P6:   P7:   P8:   P9:   P10:      :  C:\Windows\Minidump\031710-16707-01.dmp  C:\Users\AJEKC\AppData\Local\Temp\WER-19736248-0.sysdata.xml  C:\Users\AJEKC\AppData\Local\Temp\WEREC2.tmp.WERInternalMetadata.xml        :  C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Kernel_0_0_cab_0a9e0ec5     :     : 0   : 031710-16707-01   : 4  
                     2010-03-17 10:39:14                                  Windows Error Reporting         1001:   ,  0   : BlueScreen  :     CAB: 0     :  P1:   P2:   P3:   P4:   P5:   P6:   P7:   P8:   P9:   P10:      :  C:\Windows\Minidump\031710-17768-01.dmp  C:\Users\AJEKC\AppData\Local\Temp\WER-19736248-0.sysdata.xml  C:\Users\AJEKC\AppData\Local\Temp\WERF30.tmp.WERInternalMetadata.xml        :  C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Kernel_0_0_cab_0a9e0f22     :     : 0   : 031710-17768-01   : 4  
                     2010-03-17 10:39:14                                  Windows Error Reporting         1001:   ,  0   : BlueScreen  :     CAB: 0     :  P1:   P2:   P3:   P4:   P5:   P6:   P7:   P8:   P9:   P10:      :  C:\Windows\Minidump\031710-18532-01.dmp  C:\Users\AJEKC\AppData\Local\Temp\WER-19736248-0.sysdata.xml  C:\Users\AJEKC\AppData\Local\Temp\WERF9F.tmp.WERInternalMetadata.xml        :  C:\ProgramData\Microsoft\Windows\WER\ReportQueue\Kernel_0_0_cab_0a9e0f9f     :     : 0   : 031710-18532-01   : 4  
                     2010-03-17 10:40:17                                  Windows Error Reporting         1001:   X64_0x50_nt!ExAllocatePoolWithTag+5c1,  0   : BlueScreen  :     CAB: 0     :  P1:   P2:   P3:   P4:   P5:   P6:   P7:   P8:   P9:   P10:      :  C:\Windows\Minidump\031710-16645-01.dmp  C:\Users\AJEKC\AppData\Local\Temp\WER-19736248-0.sysdata.xml  C:\Users\AJEKC\AppData\Local\Temp\WERFA8A.tmp.WERInternalMetadata.xml        :       : X64_0x50_nt!ExAllocatePoolWithTag+5c1    : 1   : 031710-16645-01   : 0  
                     2010-03-17 10:42:50                                  EventSystem                     
                     2010-03-17 10:42:50  SYSTEM                          Microsoft-Windows-User Profiles Service  1531: C:\Windows\System32\profsvc.dll
                     2010-03-17 10:42:54                                  gupdate                         
                     2010-03-17 10:42:54                                  ICQ Service                     
                     2010-03-17 10:42:55                                  WinMgmt                         
                     2010-03-17 10:42:55                                  WinMgmt                         
                     2010-03-17 10:42:57                                  WinMgmt                         
                     2010-03-17 10:44:41                                  EventSystem                     
                     2010-03-17 10:44:41  SYSTEM                          Microsoft-Windows-User Profiles Service  1531: C:\Windows\System32\profsvc.dll
                     2010-03-17 10:44:46                                  ICQ Service                     
                     2010-03-17 10:44:46                                  gupdate                         
                     2010-03-17 10:44:46                                  WinMgmt                         
                     2010-03-17 10:44:47                                  WinMgmt                         
                     2010-03-17 10:44:49                                  WinMgmt                         
                     2010-03-17 10:45:21                                  gupdate                         
                     2010-03-17 10:45:23  SYSTEM                          Microsoft-Windows-User Profiles Service  1532: C:\Windows\System32\profsvc.dll
                     2010-03-17 10:48:01                                  EventSystem                     
                     2010-03-17 10:48:01  SYSTEM                          Microsoft-Windows-User Profiles Service  1531: C:\Windows\System32\profsvc.dll
                     2010-03-17 10:48:05                                  gupdate                         
                     2010-03-17 10:48:05                                  ICQ Service                     
                     2010-03-17 10:48:06                                  WinMgmt                         
                     2010-03-17 10:48:07                                  WinMgmt                         
                     2010-03-17 10:48:29                                  Winlogon                        4101: C:\Windows\System32\winlogon.exe
                     2010-03-17 10:48:30                                  Wlclntfy                        6000: C:\Windows\System32\winlogon.exe
                     2010-03-17 10:48:40                                  gupdate                         
             1          2010-03-17 10:48:56                                  ESENT                           102: Windows (3792) Windows:   (6.01.7600.0000)    (0).  
             3          2010-03-17 10:48:56                                  ESENT                           300: Windows (3792) Windows:     .  
             3          2010-03-17 10:48:57                                  ESENT                           301: Windows (3792) Windows:      C:\ProgramData\Microsoft\Search\Data\Applications\Windows\MSS00025.log.  
             3          2010-03-17 10:48:59                                  ESENT                           301: Windows (3792) Windows:      C:\ProgramData\Microsoft\Search\Data\Applications\Windows\MSS.log.  
             3          2010-03-17 10:49:01                                  ESENT                           302: Windows (3792) Windows:    .  
             1          2010-03-17 10:49:07                                  Windows Search Service          1003:  Windows Search .   
                     2010-03-17 10:50:27                                  Software Protection Platform Service  900: C:\Windows\system32\sppsvc.exe
                     2010-03-17 10:50:39                                  Windows Error Reporting         1001:   X64_0xA_nt!MiCaptureAndResetWorkingSetAccessBits+97,  0   : BlueScreen  :     CAB: 0     :  P1:   P2:   P3:   P4:   P5:   P6:   P7:   P8:   P9:   P10:      :  C:\Windows\Minidump\031710-16879-01.dmp  C:\Users\AJEKC\AppData\Local\Temp\WER-47127-0.sysdata.xml  C:\Users\AJEKC\AppData\Local\Temp\WER94B0.tmp.WERInternalMetadata.xml        :  C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Kernel_0_0_cab_06eeab99     : X64_0xA_nt!MiCaptureAndResetWorkingSetAccessBits+97    : 0   : 031710-16879-01   : 0  
                     2010-03-17 10:52:32                                  Software Protection Platform Service  1066: C:\Windows\system32\sppsvc.exe
                     2010-03-17 10:52:32                                  Software Protection Platform Service  1003: C:\Windows\system32\sppsvc.exe
                     2010-03-17 10:52:32                                  Software Protection Platform Service  902: C:\Windows\system32\sppsvc.exe
                     2010-03-17 10:52:56                                  SecurityCenter                  1: C:\Windows\System32\wscsvc.dll
                     2010-03-17 10:55:02  SYSTEM                          Microsoft-Windows-LoadPerf      1001:     WmiApRpl (WmiApRpl)  .        Last Counter  Last Help.  
                     2010-03-17 10:55:03  SYSTEM                          Microsoft-Windows-LoadPerf      1000: C    WmiApRpl (WmiApRpl)  .         ,   .  
                     2010-03-17 10:57:35                                  Software Protection Platform Service  903: C:\Windows\system32\sppsvc.exe
                     2010-03-17 11:43:53                                  Software Protection Platform Service  900: C:\Windows\system32\sppsvc.exe
                     2010-03-17 11:43:54                                  Software Protection Platform Service  1066: C:\Windows\system32\sppsvc.exe
                     2010-03-17 11:43:54                                  Software Protection Platform Service  1003: C:\Windows\system32\sppsvc.exe
                     2010-03-17 11:43:54                                  Software Protection Platform Service  902: C:\Windows\system32\sppsvc.exe
      Audit Success   12288      2010-03-16 11:01:52                                  Microsoft-Windows-Security-Auditing  4616:   .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7      :    : 0x3e8   :  C:\Windows\System32\oobe\msoobe.exe     :  2010-03-16T16:01:52.923906300Z   :  2010-03-16T09:01:52.845000000Z          .    Windows,    ,    .           .  
      Audit Success   12290      2010-03-16 11:02:17                                  Microsoft-Windows-Security-Auditing  5061:  .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY      :  0x3e5     :    : Microsoft Software Key Storage Provider    : RSA    : f1e367be-60a1-49de-8eff-4b2127299859    : %%2499     :   : %%2480    : 0x0  
      Audit Success   12292      2010-03-16 11:02:17                                  Microsoft-Windows-Security-Auditing  5058:    .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY      :  0x3e5     :    : Microsoft Software Key Storage Provider    : %%2432    : f1e367be-60a1-49de-8eff-4b2127299859    : %%2499         :     : C:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\588ad87da3cc2611e611a4f36f82878c_c86a204f-b794-40cf-b466-5a4047d7ec91   : %%2458    : 0x0  
      Audit Success   12290      2010-03-16 11:02:24                                  Microsoft-Windows-Security-Auditing  5056:   .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP      :  0x3e7    :  ncrypt.dll     : 0x0  
      Audit Success   13826      2010-03-16 11:02:24                                  Microsoft-Windows-Security-Auditing  4731:      .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7     :    :  S-1-5-21-4199977393-3493237858-2658114118-1000    :  HomeUsers    :  AJEKC-PC    :      SAM: HomeUsers    SID:  -     :   :  -  
      Audit Success   13826      2010-03-16 11:02:24                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-21-4199977393-3493237858-2658114118-1000    :  HomeUsers    :  AJEKC-PC     :      SAM: -    SID:  -     :   :  -  
      Audit Success   12290      2010-03-16 11:02:25                                  Microsoft-Windows-Security-Auditing  5061:  .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP      :  0x3e7     :    : Microsoft Software Key Storage Provider    : RSA    : {79A3E7E5-2E28-44BB-BABB-BE7864671F9E}    : %%2499     :   : %%2481    : 0x0  
      Audit Success   12290      2010-03-16 11:02:25                                  Microsoft-Windows-Security-Auditing  5061:  .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP      :  0x3e7     :    : Microsoft Software Key Storage Provider    : RSA    : {79A3E7E5-2E28-44BB-BABB-BE7864671F9E}    : %%2499     :   : %%2480    : 0x0  
      Audit Success   12292      2010-03-16 11:02:25                                  Microsoft-Windows-Security-Auditing  5058:    .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP      :  0x3e7     :    : Microsoft Software Key Storage Provider    : RSA    : {79A3E7E5-2E28-44BB-BABB-BE7864671F9E}    : %%2499         :     : C:\ProgramData\Microsoft\Crypto\Keys\d5667446a82f99548aa231331e757daf_c86a204f-b794-40cf-b466-5a4047d7ec91   : %%2459    : 0x0  
      Audit Success   12292      2010-03-16 11:02:25                                  Microsoft-Windows-Security-Auditing  5059:   .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP      :  0x3e7     :    : Microsoft Software Key Storage Provider    : RSA    : {79A3E7E5-2E28-44BB-BABB-BE7864671F9E}    : %%2499     :   : %%2464    : 0x0  
      Audit Success   12292      2010-03-16 11:02:25                                  Microsoft-Windows-Security-Auditing  5059:   .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP      :  0x3e7     :    : Microsoft Software Key Storage Provider    : RSA    : {79A3E7E5-2E28-44BB-BABB-BE7864671F9E}    : %%2499     :   : %%2464    : 0x0  
      Audit Success   12292      2010-03-16 11:02:25                                  Microsoft-Windows-Security-Auditing  5058:    .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP      :  0x3e7     :    : Microsoft Software Key Storage Provider    : %%2432    : {79A3E7E5-2E28-44BB-BABB-BE7864671F9E}    : %%2499         :     : C:\ProgramData\Microsoft\Crypto\Keys\d5667446a82f99548aa231331e757daf_c86a204f-b794-40cf-b466-5a4047d7ec91   : %%2458    : 0x0  
      Audit Success   13824      2010-03-16 11:02:25                                  Microsoft-Windows-Security-Auditing  4720:    .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :      SAM: AJEKC    :  %%1793     : -    :  %%1793    :  %%1793     :  %%1793     :  %%1793     : %%1793     : %%1794       :  %%1794     : 513    : -     UAC:  0x0     UAC:  0x15      :     %%2080    %%2082    %%2084    : %%1793    SID:  -    :  %%1797     :   Privileges  -  
      Audit Success   13824      2010-03-16 11:02:25                                  Microsoft-Windows-Security-Auditing  4722:    .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC  
      Audit Success   13824      2010-03-16 11:02:25                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC     :      SAM: AJEKC    :  %%1793     : -    :  %%1793    :  %%1793     :  %%1793     :  %%1793     : %%1793     : %%1794       :  %%1794     : 513    : -     UAC:  0x15     UAC:  0x14      :     %%2048    : %%1793    SID:  -    :  %%1797     :   :  -  
      Audit Success   13826      2010-03-16 11:02:25                                  Microsoft-Windows-Security-Auditing  4728:       .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  -    :    :  S-1-5-21-4199977393-3493237858-2658114118-513    :  None    :  AJEKC-PC     :   :  -  
      Audit Success   13826      2010-03-16 11:02:25                                  Microsoft-Windows-Security-Auditing  4732:       .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  -    :    :  S-1-5-32-545    :  Users    :  Builtin     :   :  -  
      Audit Success   13826      2010-03-16 11:02:25                                  Microsoft-Windows-Security-Auditing  4732:       .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  -    :    :  S-1-5-21-4199977393-3493237858-2658114118-1000    :  HomeUsers    :  AJEKC-PC     :   :  -  
      Audit Success   13826      2010-03-16 11:02:25                                  Microsoft-Windows-Security-Auditing  4732:       .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  -    :    :  S-1-5-32-544    :  Administrators    :  Builtin     :   :  -  
      Audit Success   13826      2010-03-16 11:02:25                                  Microsoft-Windows-Security-Auditing  4732:       .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-21-4199977393-3493237858-2658114118-500     :  -    :    :  S-1-5-21-4199977393-3493237858-2658114118-1000    :  HomeUsers    :  AJEKC-PC     :   :  -  
      Audit Success   13824      2010-03-16 11:02:26                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC     :      SAM: AJEKC    :  %%1793     : -    :  %%1793    :  %%1793     :  %%1793     :  %%1793     : %%1793     : 16/03/2010 11:02:26 a.m.       :  %%1794     : 513    : -     UAC:  0x14     UAC:  0x214      :     %%2089    : -    SID:  -    :  %%1797     :   :  -  
      Audit Success   13824      2010-03-16 11:02:26                                  Microsoft-Windows-Security-Auditing  4724:      .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC  
      Audit Success   13824      2010-03-16 11:02:26                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC     :      SAM: -    :  -     : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   13824      2010-03-16 11:02:26                                  Microsoft-Windows-Security-Auditing  4720:    .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-4199977393-3493237858-2658114118-1002     :  HomeGroupUser$     :  AJEKC-PC    :      SAM: HomeGroupUser$    :  %%1793     : -    :  %%1793    :  %%1793     :  %%1793     :  %%1793     : %%1793     : %%1794       :  %%1794     : 513    : -     UAC:  0x0     UAC:  0x15      :     %%2080    %%2082    %%2084    : %%1793    SID:  -    :  %%1797     :   Privileges  -  
      Audit Success   13824      2010-03-16 11:02:26                                  Microsoft-Windows-Security-Auditing  4722:    .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-4199977393-3493237858-2658114118-1002     :  HomeGroupUser$     :  AJEKC-PC  
      Audit Success   13824      2010-03-16 11:02:26                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-4199977393-3493237858-2658114118-1002     :  HomeGroupUser$     :  AJEKC-PC     :      SAM: HomeGroupUser$    :  HomeGroupUser$     : -    :  %%1793    :  %%1793     :  %%1793     :  %%1793     : %%1793     : 16/03/2010 11:02:26 a.m.       :  %%1794     : 513    : -     UAC:  0x15     UAC:  0x210      :     %%2048    %%2050    %%2089    : -    SID:  -    :  %%1797     :   :  -  
      Audit Success   13824      2010-03-16 11:02:26                                  Microsoft-Windows-Security-Auditing  4724:      .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-4199977393-3493237858-2658114118-1002     :  HomeGroupUser$     :  AJEKC-PC  
      Audit Success   13826      2010-03-16 11:02:26                                  Microsoft-Windows-Security-Auditing  4733:       .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  -    :    :  S-1-5-32-545    :  Users    :  Builtin     :   :  -  
      Audit Success   13826      2010-03-16 11:02:26                                  Microsoft-Windows-Security-Auditing  4728:       .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-21-4199977393-3493237858-2658114118-1002     :  -    :    :  S-1-5-21-4199977393-3493237858-2658114118-513    :  None    :  AJEKC-PC     :   :  -  
      Audit Success   13569      2010-03-16 11:02:27                                  Microsoft-Windows-Security-Auditing  4717:       .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7      :     :  S-1-5-21-4199977393-3493237858-2658114118-1002     :     :  SeDenyInteractiveLogonRight  
      Audit Success   13569      2010-03-16 11:02:27                                  Microsoft-Windows-Security-Auditing  4717:       .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7      :     :  S-1-5-21-4199977393-3493237858-2658114118-1002     :     :  SeDenyBatchLogonRight  
      Audit Success   13824      2010-03-16 11:02:27                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-4199977393-3493237858-2658114118-1002     :  HomeGroupUser$     :  AJEKC-PC     :      SAM: -    :  -     : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   13826      2010-03-16 11:02:28                                  Microsoft-Windows-Security-Auditing  4732:       .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-21-4199977393-3493237858-2658114118-1002     :  -    :    :  S-1-5-21-4199977393-3493237858-2658114118-1000    :  HomeUsers    :  AJEKC-PC     :   :  -  
      Audit Success   12544      2010-03-16 11:02:30                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x24c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 11:02:30                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 11:02:33                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x24c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 11:02:33                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 11:02:45                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x24c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 11:02:45                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 11:03:11                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  AJEKC     :  AJEKC-PC   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x218    :  C:\Windows\System32\winlogon.exe      :    : 127.0.0.1   :   0      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2010-03-16 11:03:11                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7     :   2     :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0x9af8a   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x218    :  C:\Windows\System32\winlogon.exe      :     : WIN-2ESMQHP8UKJ     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 11:03:11                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7     :   2     :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0x9b60f   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x218    :  C:\Windows\System32\winlogon.exe      :     : WIN-2ESMQHP8UKJ     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 11:03:11                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0x9af8a    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12545      2010-03-16 11:03:39                                  Microsoft-Windows-Security-Auditing  4647: ,  :    :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0x9b60f      ,   .  ,  ,  .        .  
      Audit Success   103        2010-03-16 11:03:40                                  Microsoft-Windows-Eventlog      1100: C:\Windows\System32\wevtsvc.dll
      Audit Success   12288      2010-03-16 11:04:44                                  Microsoft-Windows-Security-Auditing  4608:   Windows.           LSASS.EXE    .  
      Audit Success   12544      2010-03-16 11:04:44                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   0     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x4    :        :     : -     : -    :  -       :    :  -     : -    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 11:04:44                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x250    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 11:04:44                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13568      2010-03-16 11:04:44                                  Microsoft-Windows-Security-Auditing  4902:      .     : 0   : 0xa2ee  
      Audit Success   12544      2010-03-16 11:04:45                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x250    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 11:04:45                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x250    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 11:04:45                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x250    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 11:04:45                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x250    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 11:04:45                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-16 11:04:45                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-16 11:04:45                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-16 11:04:45                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 11:04:49                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x250    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 11:04:49                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12292      2010-03-16 11:04:50                                  Microsoft-Windows-Security-Auditing  5033:   Windows  .  
      Audit Success   12292      2010-03-16 11:04:51                                  Microsoft-Windows-Security-Auditing  5024:   Windows  .  
      Audit Success   12544      2010-03-16 11:04:54                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   3     :    :  S-1-5-7     :  ANONYMOUS LOGON     :  NT AUTHORITY    :  0x1bb19   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x0    :  -      :     :      : -    :  -       :    :  NtLmSsp      : NTLM    : -     ( NTLM): NTLM V1    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 11:04:59                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  AJEKC     :  AJEKC-PC   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x21c    :  C:\Windows\System32\winlogon.exe      :    : 127.0.0.1   :   0      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2010-03-16 11:04:59                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   2     :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0x206f4   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x21c    :  C:\Windows\System32\winlogon.exe      :     : AJEKC-PC     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 11:04:59                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   2     :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0x2072c   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x21c    :  C:\Windows\System32\winlogon.exe      :     : AJEKC-PC     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 11:04:59                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0x206f4    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 11:05:05                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x250    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 11:05:05                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12290      2010-03-16 11:05:27                                  Microsoft-Windows-Security-Auditing  5061:  .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY      :  0x3e5     :    : Microsoft Software Key Storage Provider    : RSA    : f1e367be-60a1-49de-8eff-4b2127299859    : %%2499     :   : %%2480    : 0x0  
      Audit Success   12292      2010-03-16 11:05:27                                  Microsoft-Windows-Security-Auditing  5058:    .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY      :  0x3e5     :    : Microsoft Software Key Storage Provider    : %%2432    : f1e367be-60a1-49de-8eff-4b2127299859    : %%2499         :     : C:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\588ad87da3cc2611e611a4f36f82878c_c86a204f-b794-40cf-b466-5a4047d7ec91   : %%2458    : 0x0  
      Audit Success   12290      2010-03-16 11:05:38                                  Microsoft-Windows-Security-Auditing  5056:   .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7    :  ncrypt.dll     : 0x0  
      Audit Success   12290      2010-03-16 11:05:38                                  Microsoft-Windows-Security-Auditing  5061:  .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7     :    : Microsoft Software Key Storage Provider    : RSA    : {79A3E7E5-2E28-44BB-BABB-BE7864671F9E}    : %%2499     :   : %%2480    : 0x0  
      Audit Success   12292      2010-03-16 11:05:38                                  Microsoft-Windows-Security-Auditing  5058:    .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7     :    : Microsoft Software Key Storage Provider    : %%2432    : {79A3E7E5-2E28-44BB-BABB-BE7864671F9E}    : %%2499         :     : C:\ProgramData\Microsoft\Crypto\Keys\d5667446a82f99548aa231331e757daf_c86a204f-b794-40cf-b466-5a4047d7ec91   : %%2458    : 0x0  
      Audit Success   12290      2010-03-16 11:06:38                                  Microsoft-Windows-Security-Auditing  5061:  .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7     :    : Microsoft Software Key Storage Provider    : RSA    : {79A3E7E5-2E28-44BB-BABB-BE7864671F9E}    : %%2499     :   : %%2480    : 0x0  
      Audit Success   12292      2010-03-16 11:06:38                                  Microsoft-Windows-Security-Auditing  5058:    .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7     :    : Microsoft Software Key Storage Provider    : %%2432    : {79A3E7E5-2E28-44BB-BABB-BE7864671F9E}    : %%2499         :     : C:\ProgramData\Microsoft\Crypto\Keys\d5667446a82f99548aa231331e757daf_c86a204f-b794-40cf-b466-5a4047d7ec91   : %%2458    : 0x0  
      Audit Success   12544      2010-03-16 11:06:56                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x250    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 11:06:56                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 11:08:31                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x250    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 11:08:31                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 11:08:32                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x250    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 11:08:32                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12545      2010-03-16 11:08:46                                  Microsoft-Windows-Security-Auditing  4647: ,  :    :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0x2072c      ,   .  ,  ,  .        .  
      Audit Success   13568      2010-03-16 11:08:48                                  Microsoft-Windows-Security-Auditing  4904:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7    :    : 0x280    : C:\Windows\System32\VSSVC.exe     :    : VSSAudit     : 0x8fe0b  
      Audit Success   13568      2010-03-16 11:08:48                                  Microsoft-Windows-Security-Auditing  4905:       .    Subject    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7    :    : 0x280    : C:\Windows\System32\VSSVC.exe     :    : VSSAudit     : 0x8fe0b  
      Audit Success   12544      2010-03-16 11:08:50                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x250    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 11:08:50                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 11:08:51                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  AJEKC     :  AJEKC-PC   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0xda8    :  C:\Windows\System32\winlogon.exe      :    : 127.0.0.1   :   0      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2010-03-16 11:08:51                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   2     :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0x932b8   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0xda8    :  C:\Windows\System32\winlogon.exe      :     : AJEKC-PC     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 11:08:51                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   2     :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0x932d0   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0xda8    :  C:\Windows\System32\winlogon.exe      :     : AJEKC-PC     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 11:08:51                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0x932b8    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 11:15:08                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x250    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 11:15:08                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 11:15:28                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x250    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 11:15:28                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x250    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 11:15:28                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-16 11:15:28                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13568      2010-03-16 11:15:38                                  Microsoft-Windows-Security-Auditing  4904:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7    :    : 0xac0    : C:\Windows\System32\VSSVC.exe     :    : VSSAudit     : 0x1b9d9e  
      Audit Success   13568      2010-03-16 11:15:38                                  Microsoft-Windows-Security-Auditing  4905:       .    Subject    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7    :    : 0xac0    : C:\Windows\System32\VSSVC.exe     :    : VSSAudit     : 0x1b9d9e  
      Audit Success   12545      2010-03-16 11:19:27                                  Microsoft-Windows-Security-Auditing  4647: ,  :    :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0x932d0      ,   .  ,  ,  .        .  
      Audit Success   103        2010-03-16 11:19:28                                  Microsoft-Windows-Eventlog      1100: C:\Windows\System32\wevtsvc.dll
      Audit Success   12288      2010-03-16 11:20:51                                  Microsoft-Windows-Security-Auditing  4608:   Windows.           LSASS.EXE    .  
      Audit Success   12544      2010-03-16 11:20:51                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   0     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x4    :        :     : -     : -    :  -       :    :  -     : -    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   13568      2010-03-16 11:20:52                                  Microsoft-Windows-Security-Auditing  4902:      .     : 0   : 0x98e0  
      Audit Success   12544      2010-03-16 11:20:54                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x24c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 11:20:54                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 11:20:55                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x24c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 11:20:55                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x24c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 11:20:55                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x24c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 11:20:55                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x24c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 11:20:55                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-16 11:20:55                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-16 11:20:55                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-16 11:20:55                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 11:20:59                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x24c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 11:20:59                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12292      2010-03-16 11:21:00                                  Microsoft-Windows-Security-Auditing  5033:   Windows  .  
      Audit Success   12292      2010-03-16 11:21:01                                  Microsoft-Windows-Security-Auditing  5024:   Windows  .  
      Audit Success   12544      2010-03-16 11:21:04                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   3     :    :  S-1-5-7     :  ANONYMOUS LOGON     :  NT AUTHORITY    :  0x1bb4b   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x0    :  -      :     :      : -    :  -       :    :  NtLmSsp      : NTLM    : -     ( NTLM): NTLM V1    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 11:21:18                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  AJEKC     :  AJEKC-PC   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x21c    :  C:\Windows\System32\winlogon.exe      :    : 127.0.0.1   :   0      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2010-03-16 11:21:18                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   2     :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0x20b65   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x21c    :  C:\Windows\System32\winlogon.exe      :     : AJEKC-PC     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 11:21:18                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   2     :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0x20b99   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x21c    :  C:\Windows\System32\winlogon.exe      :     : AJEKC-PC     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 11:21:18                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0x20b65    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 11:22:07                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x24c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 11:22:07                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12290      2010-03-16 11:22:20                                  Microsoft-Windows-Security-Auditing  5061:  .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY      :  0x3e5     :    : Microsoft Software Key Storage Provider    : RSA    : f1e367be-60a1-49de-8eff-4b2127299859    : %%2499     :   : %%2480    : 0x0  
      Audit Success   12292      2010-03-16 11:22:20                                  Microsoft-Windows-Security-Auditing  5058:    .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY      :  0x3e5     :    : Microsoft Software Key Storage Provider    : %%2432    : f1e367be-60a1-49de-8eff-4b2127299859    : %%2499         :     : C:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\588ad87da3cc2611e611a4f36f82878c_c86a204f-b794-40cf-b466-5a4047d7ec91   : %%2458    : 0x0  
      Audit Success   12290      2010-03-16 11:22:31                                  Microsoft-Windows-Security-Auditing  5056:   .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7    :  ncrypt.dll     : 0x0  
      Audit Success   12290      2010-03-16 11:22:32                                  Microsoft-Windows-Security-Auditing  5061:  .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7     :    : Microsoft Software Key Storage Provider    : RSA    : {79A3E7E5-2E28-44BB-BABB-BE7864671F9E}    : %%2499     :   : %%2480    : 0x0  
      Audit Success   12292      2010-03-16 11:22:32                                  Microsoft-Windows-Security-Auditing  5058:    .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7     :    : Microsoft Software Key Storage Provider    : %%2432    : {79A3E7E5-2E28-44BB-BABB-BE7864671F9E}    : %%2499         :     : C:\ProgramData\Microsoft\Crypto\Keys\d5667446a82f99548aa231331e757daf_c86a204f-b794-40cf-b466-5a4047d7ec91   : %%2458    : 0x0  
      Audit Success   12544      2010-03-16 11:23:06                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x24c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 11:23:06                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12290      2010-03-16 11:23:32                                  Microsoft-Windows-Security-Auditing  5061:  .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7     :    : Microsoft Software Key Storage Provider    : RSA    : {79A3E7E5-2E28-44BB-BABB-BE7864671F9E}    : %%2499     :   : %%2480    : 0x0  
      Audit Success   12292      2010-03-16 11:23:32                                  Microsoft-Windows-Security-Auditing  5058:    .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7     :    : Microsoft Software Key Storage Provider    : %%2432    : {79A3E7E5-2E28-44BB-BABB-BE7864671F9E}    : %%2499         :     : C:\ProgramData\Microsoft\Crypto\Keys\d5667446a82f99548aa231331e757daf_c86a204f-b794-40cf-b466-5a4047d7ec91   : %%2458    : 0x0  
      Audit Success   12544      2010-03-16 11:36:19                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   3     :    :  S-1-5-7     :  ANONYMOUS LOGON     :  NT AUTHORITY    :  0x6b8df   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x0    :  -      :     : MICROSOF-EE43B7     : 192.168.10.103    :  3085       :    :  NtLmSsp      : NTLM    : -     ( NTLM): NTLM V1    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12545      2010-03-16 11:36:19                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-7     :  ANONYMOUS LOGON     :  NT AUTHORITY    :  0x6b8df     :   3          .           " ".      ,       .  
      Audit Success   12544      2010-03-16 11:44:39                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x24c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 11:44:39                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 11:44:40                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x24c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 11:44:40                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x24c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 11:44:40                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-16 11:44:40                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13568      2010-03-16 11:44:54                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Internet Explorer\iecompat.dll    : 0x50c      :    : 0x858    : C:\Windows\servicing\TrustedInstaller.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:44:54                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Internet Explorer\iecompat.dll    : 0x47c      :    : 0x858    : C:\Windows\servicing\TrustedInstaller.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:44:54                                  Microsoft-Windows-Security-Auditing  4904:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7    :    : 0xbf8    : C:\Windows\System32\VSSVC.exe     :    : VSSAudit     : 0xc24c2  
      Audit Success   13568      2010-03-16 11:44:54                                  Microsoft-Windows-Security-Auditing  4905:       .    Subject    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7    :    : 0xbf8    : C:\Windows\System32\VSSVC.exe     :    : VSSAudit     : 0xc24c2  
      Audit Success   12545      2010-03-16 11:51:38                                  Microsoft-Windows-Security-Auditing  4647: ,  :    :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0x20b99      ,   .  ,  ,  .        .  
      Audit Success   13568      2010-03-16 11:51:39                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\drivers\srvnet.sys    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:39                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\drivers\srv.sys    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:39                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\AppPatch\drvmain.sdb    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:39                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\AppPatch\sysmain.sdb    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:39                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\AppPatch\msimain.sdb    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:39                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\AppPatch\pcamain.sdb    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:39                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\AppPatch\AppPatch64\sysmain.sdb    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:39                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\AppPatch\AppPatch64\AcXtrnal.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:39                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\AppPatch\AppPatch64\AcLayers.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:39                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\msasn1.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:39                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\msasn1.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\psisdecd.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\CPFilters.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\MSNP.ax    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\msdri.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\psisdecd.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\CPFilters.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\MSNP.ax    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\ehome\ehuihlp.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\ehome\ehPresenter.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\ehome\ehshell.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\ehome\mcplayer.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\ehome\mcepg.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\ehome\Microsoft.MediaCenter.Playback.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\ehome\wow\ehuihlp.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\jscript.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\jscript.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\msfeedsbs.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\urlmon.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\ieframe.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\mshtml.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\iedkcs32.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\wininet.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\msfeedsbs.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\urlmon.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\ieframe.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\mshtml.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\wininet.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\iedkcs32.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Internet Explorer\ieproxy.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Internet Explorer\ieproxy.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\msrle32.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\msvidc32.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\msyuv.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\iyuv_32.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\tsbyuv.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\quartz.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\msrle32.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\msvidc32.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\avifil32.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\msyuv.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\mciavi32.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\iyuv_32.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\tsbyuv.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\quartz.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\tzres.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\ru-RU\tzres.dll.mui    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\en-US\tzres.dll.mui    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\tzres.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\ru-RU\tzres.dll.mui    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\en-US\tzres.dll.mui    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\servicing\GC64\tzupd.exe    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\browserchoice.exe    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\AppPatch\acwow64.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\wow64.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\setup16.exe    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\user.exe    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\ntvdm64.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\instnm.exe    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\wow32.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\explorer.exe    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\winlogon.exe    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\spp\tokens\ppdlic\explorer-ppdlic.xrm-ms    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\explorer.exe    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\atmfd.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\t2embed.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\fontsub.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\atmfd.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:40                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\t2embed.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:41                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\fontsub.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:41                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\msv1_0.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:41                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\msv1_0.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:41                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\secproc_isv.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:41                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\secproc_ssp.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:41                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\secproc_ssp_isv.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:41                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\RMActivate.exe    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:41                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\secproc.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:41                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\RMActivate_ssp.exe    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:41                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\RMActivate_isv.exe    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:41                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\RMActivate_ssp_isv.exe    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:41                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\secproc_isv.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:41                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\secproc_ssp.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:41                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\secproc_ssp_isv.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:41                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\RMActivate.exe    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:41                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\secproc.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:41                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\RMActivate_ssp.exe    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:41                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\RMActivate_isv.exe    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:41                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\RMActivate_ssp_isv.exe    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:41                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\drivers\dxgkrnl.sys    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:41                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\wmp.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:41                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\wmploc.DLL    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:41                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\CertEnroll.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:41                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\spp\tokens\ppdlic\WMPPlayer-ppdlic.xrm-ms    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:41                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\wmp.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:41                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\wmploc.DLL    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:41                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\SysWOW64\CertEnroll.dll    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:41                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files\Windows Media Player\wmplayer.exe    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:41                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Program Files (x86)\Windows Media Player\wmplayer.exe    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:41                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\drivers\mrxsmb.sys    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   13568      2010-03-16 11:51:41                                  Microsoft-Windows-Security-Auditing  4907:     .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7    :    : Security    : File    : C:\Windows\System32\drivers\mrxsmb10.sys    : 0x18      :    : 0xc18    : C:\Windows\System32\poqexec.exe     :     :      :  S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)  
      Audit Success   103        2010-03-16 11:51:51                                  Microsoft-Windows-Eventlog      1100: C:\Windows\System32\wevtsvc.dll
      Audit Success   12288      2010-03-16 11:52:54                                  Microsoft-Windows-Security-Auditing  4608:   Windows.           LSASS.EXE    .  
      Audit Success   12544      2010-03-16 11:52:54                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   0     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x4    :        :     : -     : -    :  -       :    :  -     : -    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 11:52:54                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x23c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 11:52:54                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x23c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 11:52:54                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-16 11:52:54                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   13568      2010-03-16 11:52:54                                  Microsoft-Windows-Security-Auditing  4902:      .     : 0   : 0x9dd1  
      Audit Success   12544      2010-03-16 11:52:55                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x23c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 11:52:55                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x23c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 11:52:55                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x23c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 11:52:55                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-16 11:52:55                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-16 11:52:55                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 11:52:57                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x23c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 11:52:57                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12292      2010-03-16 11:53:03                                  Microsoft-Windows-Security-Auditing  5033:   Windows  .  
      Audit Success   12544      2010-03-16 11:53:03                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x23c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 11:53:03                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12292      2010-03-16 11:53:04                                  Microsoft-Windows-Security-Auditing  5024:   Windows  .  
      Audit Success   12544      2010-03-16 11:53:05                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   3     :    :  S-1-5-7     :  ANONYMOUS LOGON     :  NT AUTHORITY    :  0x1b97b   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x0    :  -      :     :      : -    :  -       :    :  NtLmSsp      : NTLM    : -     ( NTLM): NTLM V1    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 11:53:23                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  AJEKC     :  AJEKC-PC   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x210    :  C:\Windows\System32\winlogon.exe      :    : 127.0.0.1   :   0      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2010-03-16 11:53:23                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   2     :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0x29210   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x210    :  C:\Windows\System32\winlogon.exe      :     : AJEKC-PC     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 11:53:23                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   2     :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0x2924a   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x210    :  C:\Windows\System32\winlogon.exe      :     : AJEKC-PC     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 11:53:23                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0x29210    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 11:53:37                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x23c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 11:53:37                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12290      2010-03-16 11:53:52                                  Microsoft-Windows-Security-Auditing  5061:  .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY      :  0x3e5     :    : Microsoft Software Key Storage Provider    : RSA    : f1e367be-60a1-49de-8eff-4b2127299859    : %%2499     :   : %%2480    : 0x0  
      Audit Success   12292      2010-03-16 11:53:52                                  Microsoft-Windows-Security-Auditing  5058:    .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY      :  0x3e5     :    : Microsoft Software Key Storage Provider    : %%2432    : f1e367be-60a1-49de-8eff-4b2127299859    : %%2499         :     : C:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\588ad87da3cc2611e611a4f36f82878c_c86a204f-b794-40cf-b466-5a4047d7ec91   : %%2458    : 0x0  
      Audit Success   12290      2010-03-16 11:54:03                                  Microsoft-Windows-Security-Auditing  5056:   .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7    :  ncrypt.dll     : 0x0  
      Audit Success   12290      2010-03-16 11:54:04                                  Microsoft-Windows-Security-Auditing  5061:  .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7     :    : Microsoft Software Key Storage Provider    : RSA    : {79A3E7E5-2E28-44BB-BABB-BE7864671F9E}    : %%2499     :   : %%2480    : 0x0  
      Audit Success   12292      2010-03-16 11:54:04                                  Microsoft-Windows-Security-Auditing  5058:    .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7     :    : Microsoft Software Key Storage Provider    : %%2432    : {79A3E7E5-2E28-44BB-BABB-BE7864671F9E}    : %%2499         :     : C:\ProgramData\Microsoft\Crypto\Keys\d5667446a82f99548aa231331e757daf_c86a204f-b794-40cf-b466-5a4047d7ec91   : %%2458    : 0x0  
      Audit Success   12290      2010-03-16 11:55:04                                  Microsoft-Windows-Security-Auditing  5061:  .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7     :    : Microsoft Software Key Storage Provider    : RSA    : {79A3E7E5-2E28-44BB-BABB-BE7864671F9E}    : %%2499     :   : %%2480    : 0x0  
      Audit Success   12292      2010-03-16 11:55:04                                  Microsoft-Windows-Security-Auditing  5058:    .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7     :    : Microsoft Software Key Storage Provider    : %%2432    : {79A3E7E5-2E28-44BB-BABB-BE7864671F9E}    : %%2499         :     : C:\ProgramData\Microsoft\Crypto\Keys\d5667446a82f99548aa231331e757daf_c86a204f-b794-40cf-b466-5a4047d7ec91   : %%2458    : 0x0  
      Audit Success   12544      2010-03-16 11:55:05                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x23c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 11:55:05                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 11:57:06                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x23c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 11:57:06                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 11:57:17                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x23c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 11:57:17                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 12:00:33                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x23c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 12:00:33                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x23c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 12:00:33                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-16 12:00:33                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13568      2010-03-16 12:00:49                                  Microsoft-Windows-Security-Auditing  4904:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7    :    : 0xd30    : C:\Windows\System32\VSSVC.exe     :    : VSSAudit     : 0x13e275  
      Audit Success   13568      2010-03-16 12:00:49                                  Microsoft-Windows-Security-Auditing  4905:       .    Subject    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7    :    : 0xd30    : C:\Windows\System32\VSSVC.exe     :    : VSSAudit     : 0x13e275  
      Audit Success   12545      2010-03-16 12:01:16                                  Microsoft-Windows-Security-Auditing  4647: ,  :    :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0x2924a      ,   .  ,  ,  .        .  
      Audit Success   103        2010-03-16 12:01:17                                  Microsoft-Windows-Eventlog      1100: C:\Windows\System32\wevtsvc.dll
      Audit Success   12288      2010-03-16 12:02:21                                  Microsoft-Windows-Security-Auditing  4608:   Windows.           LSASS.EXE    .  
      Audit Success   12544      2010-03-16 12:02:22                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   0     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x4    :        :     : -     : -    :  -       :    :  -     : -    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   13568      2010-03-16 12:02:23                                  Microsoft-Windows-Security-Auditing  4902:      .     : 0   : 0xaf38  
      Audit Success   12544      2010-03-16 12:02:25                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x244    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 12:02:25                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x244    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 12:02:25                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x244    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 12:02:25                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-16 12:02:25                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-16 12:02:25                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 12:02:26                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x244    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 12:02:26                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x244    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 12:02:26                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-16 12:02:26                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 12:02:30                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x244    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 12:02:30                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12292      2010-03-16 12:02:31                                  Microsoft-Windows-Security-Auditing  5033:   Windows  .  
      Audit Success   12292      2010-03-16 12:02:32                                  Microsoft-Windows-Security-Auditing  5024:   Windows  .  
      Audit Success   12544      2010-03-16 12:02:36                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   3     :    :  S-1-5-7     :  ANONYMOUS LOGON     :  NT AUTHORITY    :  0x1d266   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x0    :  -      :     :      : -    :  -       :    :  NtLmSsp      : NTLM    : -     ( NTLM): NTLM V1    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 12:02:43                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  AJEKC     :  AJEKC-PC   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x210    :  C:\Windows\System32\winlogon.exe      :    : 127.0.0.1   :   0      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2010-03-16 12:02:43                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   2     :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0x221c1   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x210    :  C:\Windows\System32\winlogon.exe      :     : AJEKC-PC     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 12:02:43                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   2     :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0x221f4   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x210    :  C:\Windows\System32\winlogon.exe      :     : AJEKC-PC     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 12:02:43                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0x221c1    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 12:03:09                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x244    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 12:03:09                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12290      2010-03-16 12:03:23                                  Microsoft-Windows-Security-Auditing  5061:  .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY      :  0x3e5     :    : Microsoft Software Key Storage Provider    : RSA    : f1e367be-60a1-49de-8eff-4b2127299859    : %%2499     :   : %%2480    : 0x0  
      Audit Success   12292      2010-03-16 12:03:23                                  Microsoft-Windows-Security-Auditing  5058:    .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY      :  0x3e5     :    : Microsoft Software Key Storage Provider    : %%2432    : f1e367be-60a1-49de-8eff-4b2127299859    : %%2499         :     : C:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\588ad87da3cc2611e611a4f36f82878c_c86a204f-b794-40cf-b466-5a4047d7ec91   : %%2458    : 0x0  
      Audit Success   12545      2010-03-16 12:03:23                                  Microsoft-Windows-Security-Auditing  4647: ,  :    :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0x221f4      ,   .  ,  ,  .        .  
      Audit Success   103        2010-03-16 12:03:24                                  Microsoft-Windows-Eventlog      1100: C:\Windows\System32\wevtsvc.dll
      Audit Success   12288      2010-03-16 12:04:31                                  Microsoft-Windows-Security-Auditing  4608:   Windows.           LSASS.EXE    .  
      Audit Success   12544      2010-03-16 12:04:31                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   0     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x4    :        :     : -     : -    :  -       :    :  -     : -    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 12:04:32                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x264    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 12:04:32                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x264    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 12:04:32                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x264    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 12:04:32                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-16 12:04:32                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-16 12:04:32                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   13568      2010-03-16 12:04:32                                  Microsoft-Windows-Security-Auditing  4902:      .     : 0   : 0xaeca  
      Audit Success   12544      2010-03-16 12:04:33                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x264    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 12:04:33                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x264    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 12:04:33                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-16 12:04:33                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 12:04:36                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x264    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 12:04:36                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12292      2010-03-16 12:04:38                                  Microsoft-Windows-Security-Auditing  5033:   Windows  .  
      Audit Success   12292      2010-03-16 12:04:40                                  Microsoft-Windows-Security-Auditing  5024:   Windows  .  
      Audit Success   12544      2010-03-16 12:04:43                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   3     :    :  S-1-5-7     :  ANONYMOUS LOGON     :  NT AUTHORITY    :  0x22517   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x0    :  -      :     :      : -    :  -       :    :  NtLmSsp      : NTLM    : -     ( NTLM): NTLM V1    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 12:05:07                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  AJEKC     :  AJEKC-PC   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x234    :  C:\Windows\System32\winlogon.exe      :    : 127.0.0.1   :   0      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2010-03-16 12:05:07                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   2     :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0x28418   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x234    :  C:\Windows\System32\winlogon.exe      :     : AJEKC-PC     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 12:05:07                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   2     :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0x28453   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x234    :  C:\Windows\System32\winlogon.exe      :     : AJEKC-PC     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 12:05:07                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0x28418    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 12:05:19                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x264    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 12:05:19                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 12:05:29                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x264    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 12:05:29                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 12:05:30                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x264    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 12:05:30                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12290      2010-03-16 12:05:32                                  Microsoft-Windows-Security-Auditing  5061:  .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY      :  0x3e5     :    : Microsoft Software Key Storage Provider    : RSA    : f1e367be-60a1-49de-8eff-4b2127299859    : %%2499     :   : %%2480    : 0x0  
      Audit Success   12292      2010-03-16 12:05:32                                  Microsoft-Windows-Security-Auditing  5058:    .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY      :  0x3e5     :    : Microsoft Software Key Storage Provider    : %%2432    : f1e367be-60a1-49de-8eff-4b2127299859    : %%2499         :     : C:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\588ad87da3cc2611e611a4f36f82878c_c86a204f-b794-40cf-b466-5a4047d7ec91   : %%2458    : 0x0  
      Audit Success   12290      2010-03-16 12:05:43                                  Microsoft-Windows-Security-Auditing  5056:   .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7    :  ncrypt.dll     : 0x0  
      Audit Success   12290      2010-03-16 12:05:43                                  Microsoft-Windows-Security-Auditing  5061:  .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7     :    : Microsoft Software Key Storage Provider    : RSA    : {79A3E7E5-2E28-44BB-BABB-BE7864671F9E}    : %%2499     :   : %%2480    : 0x0  
      Audit Success   12292      2010-03-16 12:05:43                                  Microsoft-Windows-Security-Auditing  5058:    .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7     :    : Microsoft Software Key Storage Provider    : %%2432    : {79A3E7E5-2E28-44BB-BABB-BE7864671F9E}    : %%2499         :     : C:\ProgramData\Microsoft\Crypto\Keys\d5667446a82f99548aa231331e757daf_c86a204f-b794-40cf-b466-5a4047d7ec91   : %%2458    : 0x0  
      Audit Success   13568      2010-03-16 12:05:49                                  Microsoft-Windows-Security-Auditing  4904:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7    :    : 0x844    : C:\Windows\System32\VSSVC.exe     :    : VSSAudit     : 0xa731b  
      Audit Success   13568      2010-03-16 12:05:49                                  Microsoft-Windows-Security-Auditing  4905:       .    Subject    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7    :    : 0x844    : C:\Windows\System32\VSSVC.exe     :    : VSSAudit     : 0xa731b  
      Audit Success   12545      2010-03-16 12:06:09                                  Microsoft-Windows-Security-Auditing  4647: ,  :    :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0x28453      ,   .  ,  ,  .        .  
      Audit Success   103        2010-03-16 12:06:10                                  Microsoft-Windows-Eventlog      1100: C:\Windows\System32\wevtsvc.dll
      Audit Success   12288      2010-03-16 12:07:12                                  Microsoft-Windows-Security-Auditing  4608:   Windows.           LSASS.EXE    .  
      Audit Success   12544      2010-03-16 12:07:12                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   0     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x4    :        :     : -     : -    :  -       :    :  -     : -    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 12:07:13                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x22c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 12:07:13                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x22c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 12:07:13                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x22c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 12:07:13                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-16 12:07:13                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-16 12:07:13                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   13568      2010-03-16 12:07:13                                  Microsoft-Windows-Security-Auditing  4902:      .     : 0   : 0xb161  
      Audit Success   12544      2010-03-16 12:07:14                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x22c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 12:07:14                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x22c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 12:07:14                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-16 12:07:14                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 12:07:17                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x22c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 12:07:17                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12292      2010-03-16 12:07:18                                  Microsoft-Windows-Security-Auditing  5033:   Windows  .  
      Audit Success   12292      2010-03-16 12:07:19                                  Microsoft-Windows-Security-Auditing  5024:   Windows  .  
      Audit Success   12544      2010-03-16 12:07:21                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   3     :    :  S-1-5-7     :  ANONYMOUS LOGON     :  NT AUTHORITY    :  0x219f7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x0    :  -      :     :      : -    :  -       :    :  NtLmSsp      : NTLM    : -     ( NTLM): NTLM V1    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 12:07:36                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  AJEKC     :  AJEKC-PC   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x26c    :  C:\Windows\System32\winlogon.exe      :    : 127.0.0.1   :   0      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2010-03-16 12:07:36                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   2     :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0x2a25a   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x26c    :  C:\Windows\System32\winlogon.exe      :     : AJEKC-PC     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 12:07:36                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   2     :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0x2a29c   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x26c    :  C:\Windows\System32\winlogon.exe      :     : AJEKC-PC     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 12:07:36                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0x2a25a    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 12:07:47                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x22c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 12:07:47                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12290      2010-03-16 12:08:00                                  Microsoft-Windows-Security-Auditing  5061:  .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY      :  0x3e5     :    : Microsoft Software Key Storage Provider    : RSA    : f1e367be-60a1-49de-8eff-4b2127299859    : %%2499     :   : %%2480    : 0x0  
      Audit Success   12292      2010-03-16 12:08:00                                  Microsoft-Windows-Security-Auditing  5058:    .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY      :  0x3e5     :    : Microsoft Software Key Storage Provider    : %%2432    : f1e367be-60a1-49de-8eff-4b2127299859    : %%2499         :     : C:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\588ad87da3cc2611e611a4f36f82878c_c86a204f-b794-40cf-b466-5a4047d7ec91   : %%2458    : 0x0  
      Audit Success   12290      2010-03-16 12:08:11                                  Microsoft-Windows-Security-Auditing  5056:   .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7    :  ncrypt.dll     : 0x0  
      Audit Success   12290      2010-03-16 12:08:11                                  Microsoft-Windows-Security-Auditing  5061:  .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7     :    : Microsoft Software Key Storage Provider    : RSA    : {79A3E7E5-2E28-44BB-BABB-BE7864671F9E}    : %%2499     :   : %%2480    : 0x0  
      Audit Success   12292      2010-03-16 12:08:11                                  Microsoft-Windows-Security-Auditing  5058:    .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7     :    : Microsoft Software Key Storage Provider    : %%2432    : {79A3E7E5-2E28-44BB-BABB-BE7864671F9E}    : %%2499         :     : C:\ProgramData\Microsoft\Crypto\Keys\d5667446a82f99548aa231331e757daf_c86a204f-b794-40cf-b466-5a4047d7ec91   : %%2458    : 0x0  
      Audit Success   12544      2010-03-16 12:08:19                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   3     :    :  S-1-5-7     :  ANONYMOUS LOGON     :  NT AUTHORITY    :  0x4ac1e   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x0    :  -      :     : MICROSOF-EE43B7     : 192.168.10.103    :  3380       :    :  NtLmSsp      : NTLM    : -     ( NTLM): NTLM V1    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12545      2010-03-16 12:08:19                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-7     :  ANONYMOUS LOGON     :  NT AUTHORITY    :  0x4ac1e     :   3          .           " ".      ,       .  
      Audit Success   12290      2010-03-16 12:09:11                                  Microsoft-Windows-Security-Auditing  5061:  .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7     :    : Microsoft Software Key Storage Provider    : RSA    : {79A3E7E5-2E28-44BB-BABB-BE7864671F9E}    : %%2499     :   : %%2480    : 0x0  
      Audit Success   12292      2010-03-16 12:09:11                                  Microsoft-Windows-Security-Auditing  5058:    .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7     :    : Microsoft Software Key Storage Provider    : %%2432    : {79A3E7E5-2E28-44BB-BABB-BE7864671F9E}    : %%2499         :     : C:\ProgramData\Microsoft\Crypto\Keys\d5667446a82f99548aa231331e757daf_c86a204f-b794-40cf-b466-5a4047d7ec91   : %%2458    : 0x0  
      Audit Success   12544      2010-03-16 12:09:24                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x22c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 12:09:24                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 12:10:12                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x22c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 12:10:12                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 12:21:20                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0x2a25a   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  DriverGeniusUser     :  AJEKC-PC   GUID :  {00000000-0000-0000-0000-000000000000}     :     : driver-soft01    : driver-soft01      :    :  0xcfc    :  C:\Program Files (x86)\Driver Genius\DriverGenius.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2010-03-16 12:21:21                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0x2a25a   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  DriverGeniusUser     :  AJEKC-PC   GUID :  {00000000-0000-0000-0000-000000000000}     :     : driver-soft01    : driver-soft01      :    :  0xcfc    :  C:\Program Files (x86)\Driver Genius\DriverGenius.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2010-03-16 12:21:22                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0x2a25a   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  DriverGeniusUser     :  AJEKC-PC   GUID :  {00000000-0000-0000-0000-000000000000}     :     : driver-soft02    : driver-soft02      :    :  0xcfc    :  C:\Program Files (x86)\Driver Genius\DriverGenius.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2010-03-16 12:21:23                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0x2a25a   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  DriverGeniusUser     :  AJEKC-PC   GUID :  {00000000-0000-0000-0000-000000000000}     :     : driver-soft02    : driver-soft02      :    :  0xcfc    :  C:\Program Files (x86)\Driver Genius\DriverGenius.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2010-03-16 12:21:23                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0x2a25a   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  DriverGeniusUser     :  AJEKC-PC   GUID :  {00000000-0000-0000-0000-000000000000}     :     : driver-soft03    : driver-soft03      :    :  0xcfc    :  C:\Program Files (x86)\Driver Genius\DriverGenius.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2010-03-16 12:21:24                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0x2a25a   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  DriverGeniusUser     :  AJEKC-PC   GUID :  {00000000-0000-0000-0000-000000000000}     :     : driver-soft03    : driver-soft03      :    :  0xcfc    :  C:\Program Files (x86)\Driver Genius\DriverGenius.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2010-03-16 12:21:24                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0x2a25a   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  DriverGeniusUser     :  AJEKC-PC   GUID :  {00000000-0000-0000-0000-000000000000}     :     : 80-237-189-52.dedicated.hosteurope.de    : 80-237-189-52.dedicated.hosteurope.de      :    :  0xcfc    :  C:\Program Files (x86)\Driver Genius\DriverGenius.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2010-03-16 12:21:24                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0x2a25a   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  DriverGeniusUser     :  AJEKC-PC   GUID :  {00000000-0000-0000-0000-000000000000}     :     : 80-237-189-52.dedicated.hosteurope.de    : 80-237-189-52.dedicated.hosteurope.de      :    :  0xcfc    :  C:\Program Files (x86)\Driver Genius\DriverGenius.exe      :    : -   :   -      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2010-03-16 12:27:44                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x22c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 12:27:44                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 12:27:46                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x22c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 12:27:46                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 12:30:02                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x22c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 12:30:02                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 12:41:56                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x22c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 12:41:56                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12545      2010-03-16 12:41:57                                  Microsoft-Windows-Security-Auditing  4647: ,  :    :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0x2a29c      ,   .  ,  ,  .        .  
      Audit Success   12544      2010-03-16 12:41:58                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x22c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 12:41:58                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   103        2010-03-16 12:41:59                                  Microsoft-Windows-Eventlog      1100: C:\Windows\System32\wevtsvc.dll
      Audit Success   12288      2010-03-16 12:43:12                                  Microsoft-Windows-Security-Auditing  4608:   Windows.           LSASS.EXE    .  
      Audit Success   12544      2010-03-16 12:43:12                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   0     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x4    :        :     : -     : -    :  -       :    :  -     : -    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   13568      2010-03-16 12:43:12                                  Microsoft-Windows-Security-Auditing  4902:      .     : 0   : 0xa28c  
      Audit Success   12544      2010-03-16 12:43:18                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x260    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 12:43:18                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12292      2010-03-16 12:43:19                                  Microsoft-Windows-Security-Auditing  5033:   Windows  .  
      Audit Success   12292      2010-03-16 12:43:19                                  Microsoft-Windows-Security-Auditing  5024:   Windows  .  
      Audit Success   12544      2010-03-16 12:43:19                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x260    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 12:43:19                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x260    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 12:43:19                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x260    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 12:43:19                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x260    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 12:43:19                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x260    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 12:43:19                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-16 12:43:19                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-16 12:43:19                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-16 12:43:19                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-16 12:43:19                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 12:43:20                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   3     :    :  S-1-5-7     :  ANONYMOUS LOGON     :  NT AUTHORITY    :  0x20ded   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x0    :  -      :     :      : -    :  -       :    :  NtLmSsp      : NTLM    : -     ( NTLM): NTLM V1    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 12:43:25                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  AJEKC     :  AJEKC-PC   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x234    :  C:\Windows\System32\winlogon.exe      :    : 127.0.0.1   :   0      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2010-03-16 12:43:25                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   2     :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0x274ca   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x234    :  C:\Windows\System32\winlogon.exe      :     : AJEKC-PC     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 12:43:25                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   2     :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0x274fc   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x234    :  C:\Windows\System32\winlogon.exe      :     : AJEKC-PC     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 12:43:25                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0x274ca    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 12:43:32                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x260    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 12:43:32                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12290      2010-03-16 12:43:45                                  Microsoft-Windows-Security-Auditing  5061:  .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY      :  0x3e5     :    : Microsoft Software Key Storage Provider    : RSA    : f1e367be-60a1-49de-8eff-4b2127299859    : %%2499     :   : %%2480    : 0x0  
      Audit Success   12292      2010-03-16 12:43:45                                  Microsoft-Windows-Security-Auditing  5058:    .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY      :  0x3e5     :    : Microsoft Software Key Storage Provider    : %%2432    : f1e367be-60a1-49de-8eff-4b2127299859    : %%2499         :     : C:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\588ad87da3cc2611e611a4f36f82878c_c86a204f-b794-40cf-b466-5a4047d7ec91   : %%2458    : 0x0  
      Audit Success   12290      2010-03-16 12:43:55                                  Microsoft-Windows-Security-Auditing  5056:   .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7    :  ncrypt.dll     : 0x0  
      Audit Success   12290      2010-03-16 12:43:56                                  Microsoft-Windows-Security-Auditing  5061:  .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7     :    : Microsoft Software Key Storage Provider    : RSA    : {79A3E7E5-2E28-44BB-BABB-BE7864671F9E}    : %%2499     :   : %%2480    : 0x0  
      Audit Success   12292      2010-03-16 12:43:56                                  Microsoft-Windows-Security-Auditing  5058:    .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7     :    : Microsoft Software Key Storage Provider    : %%2432    : {79A3E7E5-2E28-44BB-BABB-BE7864671F9E}    : %%2499         :     : C:\ProgramData\Microsoft\Crypto\Keys\d5667446a82f99548aa231331e757daf_c86a204f-b794-40cf-b466-5a4047d7ec91   : %%2458    : 0x0  
      Audit Success   12290      2010-03-16 12:44:56                                  Microsoft-Windows-Security-Auditing  5061:  .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7     :    : Microsoft Software Key Storage Provider    : RSA    : {79A3E7E5-2E28-44BB-BABB-BE7864671F9E}    : %%2499     :   : %%2480    : 0x0  
      Audit Success   12292      2010-03-16 12:44:56                                  Microsoft-Windows-Security-Auditing  5058:    .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7     :    : Microsoft Software Key Storage Provider    : %%2432    : {79A3E7E5-2E28-44BB-BABB-BE7864671F9E}    : %%2499         :     : C:\ProgramData\Microsoft\Crypto\Keys\d5667446a82f99548aa231331e757daf_c86a204f-b794-40cf-b466-5a4047d7ec91   : %%2458    : 0x0  
      Audit Success   12544      2010-03-16 12:45:22                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x260    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 12:45:22                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 12:46:43                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x260    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 12:46:43                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 12:46:49                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x260    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 12:46:49                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 12:49:09                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x260    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 12:49:09                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 12:58:25                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x260    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 12:58:25                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 13:17:05                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x260    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 13:17:05                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 13:19:53                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   3     :    :  S-1-5-7     :  ANONYMOUS LOGON     :  NT AUTHORITY    :  0x30108d   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x0    :  -      :     : MICROSOF-EE43B7     : 192.168.10.103    :  1158       :    :  NtLmSsp      : NTLM    : -     ( NTLM): NTLM V1    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12545      2010-03-16 13:19:53                                  Microsoft-Windows-Security-Auditing  4634:      .    :    :  S-1-5-7     :  ANONYMOUS LOGON     :  NT AUTHORITY    :  0x30108d     :   3          .           " ".      ,       .  
      Audit Success   12544      2010-03-16 13:48:12                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x260    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 13:48:12                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 13:58:39                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x260    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 13:58:39                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 13:58:58                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x260    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 13:58:58                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x260    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 13:58:58                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-16 13:58:58                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13568      2010-03-16 13:59:18                                  Microsoft-Windows-Security-Auditing  4904:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7    :    : 0x7ac    : C:\Windows\System32\VSSVC.exe     :    : VSSAudit     : 0x41b972  
      Audit Success   13568      2010-03-16 13:59:18                                  Microsoft-Windows-Security-Auditing  4905:       .    Subject    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7    :    : 0x7ac    : C:\Windows\System32\VSSVC.exe     :    : VSSAudit     : 0x41b972  
      Audit Success   12544      2010-03-16 14:01:00                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x260    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 14:01:00                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12545      2010-03-16 14:19:31                                  Microsoft-Windows-Security-Auditing  4647: ,  :    :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0x274fc      ,   .  ,  ,  .        .  
      Audit Success   103        2010-03-16 14:19:33                                  Microsoft-Windows-Eventlog      1100: C:\Windows\System32\wevtsvc.dll
      Audit Success   12288      2010-03-16 17:19:39                                  Microsoft-Windows-Security-Auditing  4608:   Windows.           LSASS.EXE    .  
      Audit Success   12544      2010-03-16 17:19:39                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   0     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x4    :        :     : -     : -    :  -       :    :  -     : -    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   13568      2010-03-16 17:19:39                                  Microsoft-Windows-Security-Auditing  4902:      .     : 0   : 0xa6de  
      Audit Success   12544      2010-03-16 17:19:49                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c0    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 17:19:49                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c0    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 17:19:49                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c0    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 17:19:49                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c0    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 17:19:49                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c0    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 17:19:49                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-16 17:19:49                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-16 17:19:49                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-16 17:19:49                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-16 17:19:49                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12292      2010-03-16 17:19:50                                  Microsoft-Windows-Security-Auditing  5033:   Windows  .  
      Audit Success   12292      2010-03-16 17:19:50                                  Microsoft-Windows-Security-Auditing  5024:   Windows  .  
      Audit Success   12544      2010-03-16 17:19:50                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c0    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 17:19:50                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 17:19:54                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   3     :    :  S-1-5-7     :  ANONYMOUS LOGON     :  NT AUTHORITY    :  0x24de2   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x0    :  -      :     :      : -    :  -       :    :  NtLmSsp      : NTLM    : -     ( NTLM): NTLM V1    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 17:20:19                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  AJEKC     :  AJEKC-PC   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x278    :  C:\Windows\System32\winlogon.exe      :    : 127.0.0.1   :   0      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2010-03-16 17:20:19                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   2     :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0x3997f   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x278    :  C:\Windows\System32\winlogon.exe      :     : AJEKC-PC     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 17:20:19                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   2     :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0x399c3   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x278    :  C:\Windows\System32\winlogon.exe      :     : AJEKC-PC     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 17:20:19                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0x3997f    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 17:20:38                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c0    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 17:20:38                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12290      2010-03-16 17:20:55                                  Microsoft-Windows-Security-Auditing  5061:  .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY      :  0x3e5     :    : Microsoft Software Key Storage Provider    : RSA    : f1e367be-60a1-49de-8eff-4b2127299859    : %%2499     :   : %%2480    : 0x0  
      Audit Success   12292      2010-03-16 17:20:55                                  Microsoft-Windows-Security-Auditing  5058:    .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY      :  0x3e5     :    : Microsoft Software Key Storage Provider    : %%2432    : f1e367be-60a1-49de-8eff-4b2127299859    : %%2499         :     : C:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\588ad87da3cc2611e611a4f36f82878c_c86a204f-b794-40cf-b466-5a4047d7ec91   : %%2458    : 0x0  
      Audit Success   12290      2010-03-16 17:21:06                                  Microsoft-Windows-Security-Auditing  5056:   .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7    :  ncrypt.dll     : 0x0  
      Audit Success   12290      2010-03-16 17:21:06                                  Microsoft-Windows-Security-Auditing  5061:  .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7     :    : Microsoft Software Key Storage Provider    : RSA    : {79A3E7E5-2E28-44BB-BABB-BE7864671F9E}    : %%2499     :   : %%2480    : 0x0  
      Audit Success   12292      2010-03-16 17:21:06                                  Microsoft-Windows-Security-Auditing  5058:    .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7     :    : Microsoft Software Key Storage Provider    : %%2432    : {79A3E7E5-2E28-44BB-BABB-BE7864671F9E}    : %%2499         :     : C:\ProgramData\Microsoft\Crypto\Keys\d5667446a82f99548aa231331e757daf_c86a204f-b794-40cf-b466-5a4047d7ec91   : %%2458    : 0x0  
      Audit Success   12544      2010-03-16 17:22:03                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c0    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 17:22:03                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12290      2010-03-16 17:22:07                                  Microsoft-Windows-Security-Auditing  5061:  .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7     :    : Microsoft Software Key Storage Provider    : RSA    : {79A3E7E5-2E28-44BB-BABB-BE7864671F9E}    : %%2499     :   : %%2480    : 0x0  
      Audit Success   12292      2010-03-16 17:22:07                                  Microsoft-Windows-Security-Auditing  5058:    .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7     :    : Microsoft Software Key Storage Provider    : %%2432    : {79A3E7E5-2E28-44BB-BABB-BE7864671F9E}    : %%2499         :     : C:\ProgramData\Microsoft\Crypto\Keys\d5667446a82f99548aa231331e757daf_c86a204f-b794-40cf-b466-5a4047d7ec91   : %%2458    : 0x0  
      Audit Success   12544      2010-03-16 17:22:52                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c0    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 17:22:52                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 17:25:37                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c0    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 17:25:37                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12288      2010-03-16 17:51:04                                  Microsoft-Windows-Security-Auditing  4608:   Windows.           LSASS.EXE    .  
      Audit Success   12544      2010-03-16 17:51:05                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   0     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x4    :        :     : -     : -    :  -       :    :  -     : -    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   13568      2010-03-16 17:51:06                                  Microsoft-Windows-Security-Auditing  4902:      .     : 0   : 0x35892  
      Audit Success   12544      2010-03-16 17:51:07                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  37L4247E29-32$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x218    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 17:51:07                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13826      2010-03-16 17:51:07                                  Microsoft-Windows-Security-Auditing  4731:      .    :    :  S-1-5-18     :  37L4247E29-32$     :  WORKGROUP    :  0x3e7     :    :  S-1-5-32-556    :  Network Configuration Operators    :  Builtin    :      SAM: Network Configuration Operators    SID:  -     :   :  -  
      Audit Success   13826      2010-03-16 17:51:07                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  37L4247E29-32$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-556    :  Network Configuration Operators    :  Builtin     :      SAM: -    SID:  -     :   :  -  
      Audit Success   13826      2010-03-16 17:51:07                                  Microsoft-Windows-Security-Auditing  4731:      .    :    :  S-1-5-18     :  37L4247E29-32$     :  WORKGROUP    :  0x3e7     :    :  S-1-5-32-547    :  Power Users    :  Builtin    :      SAM: Power Users    SID:  -     :   :  -  
      Audit Success   13826      2010-03-16 17:51:07                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  37L4247E29-32$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-547    :  Power Users    :  Builtin     :      SAM: -    SID:  -     :   :  -  
      Audit Success   13826      2010-03-16 17:51:07                                  Microsoft-Windows-Security-Auditing  4731:      .    :    :  S-1-5-18     :  37L4247E29-32$     :  WORKGROUP    :  0x3e7     :    :  S-1-5-32-569    :  Cryptographic Operators    :  Builtin    :      SAM: Cryptographic Operators    SID:  -     :   :  -  
      Audit Success   13826      2010-03-16 17:51:07                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  37L4247E29-32$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-569    :  Cryptographic Operators    :  Builtin     :      SAM: -    SID:  -     :   :  -  
      Audit Success   13826      2010-03-16 17:51:07                                  Microsoft-Windows-Security-Auditing  4731:      .    :    :  S-1-5-18     :  37L4247E29-32$     :  WORKGROUP    :  0x3e7     :    :  S-1-5-32-551    :  Backup Operators    :  Builtin    :      SAM: Backup Operators    SID:  -     :   :  -  
      Audit Success   13826      2010-03-16 17:51:07                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  37L4247E29-32$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-551    :  Backup Operators    :  Builtin     :      SAM: -    SID:  -     :   :  -  
      Audit Success   13826      2010-03-16 17:51:07                                  Microsoft-Windows-Security-Auditing  4731:      .    :    :  S-1-5-18     :  37L4247E29-32$     :  WORKGROUP    :  0x3e7     :    :  S-1-5-32-552    :  Replicator    :  Builtin    :      SAM: Replicator    SID:  -     :   :  -  
      Audit Success   13826      2010-03-16 17:51:07                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  37L4247E29-32$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-552    :  Replicator    :  Builtin     :      SAM: -    SID:  -     :   :  -  
      Audit Success   13826      2010-03-16 17:51:07                                  Microsoft-Windows-Security-Auditing  4731:      .    :    :  S-1-5-18     :  37L4247E29-32$     :  WORKGROUP    :  0x3e7     :    :  S-1-5-32-555    :  Remote Desktop Users    :  Builtin    :      SAM: Remote Desktop Users    SID:  -     :   :  -  
      Audit Success   13826      2010-03-16 17:51:07                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  37L4247E29-32$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-555    :  Remote Desktop Users    :  Builtin     :      SAM: -    SID:  -     :   :  -  
      Audit Success   12544      2010-03-16 17:51:08                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  37L4247E29-32$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x218    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 17:51:08                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 17:51:22                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  37L4247E29-32$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x218    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 17:51:22                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  37L4247E29-32$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x218    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 17:51:22                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  37L4247E29-32$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x218    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 17:51:22                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  37L4247E29-32$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x218    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 17:51:22                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-16 17:51:22                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-16 17:51:22                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-16 17:51:22                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12292      2010-03-16 17:51:26                                  Microsoft-Windows-Security-Auditing  5033:   Windows  .  
      Audit Success   12544      2010-03-16 17:51:26                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  37L4247E29-32$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x218    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 17:51:26                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12292      2010-03-16 17:51:28                                  Microsoft-Windows-Security-Auditing  5024:   Windows  .  
      Audit Success   12544      2010-03-16 17:51:30                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   3     :    :  S-1-5-7     :  ANONYMOUS LOGON     :  NT AUTHORITY    :  0x45695   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x0    :  -      :     :      : -    :  -       :    :  NtLmSsp      : NTLM    : -     ( NTLM): NTLM V1    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 17:53:32                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  37L4247E29-32$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x218    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 17:53:32                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 17:53:33                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  37L4247E29-32$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x218    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 17:53:33                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2010-03-16 17:54:08                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  37L4247E29-32$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-4199977393-3493237858-2658114118-500     :  Administrator     :  37L4247E29-32     :      SAM: -    :  -     : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  0x211     UAC:  0x211      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   12544      2010-03-16 17:54:59                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  37L4247E29-32$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x218    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 17:54:59                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  37L4247E29-32$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x218    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 17:54:59                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-16 17:54:59                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   103        2010-03-16 17:58:16                                  Microsoft-Windows-Eventlog      1100: C:\Windows\System32\wevtsvc.dll
      Audit Success   12544      2010-03-16 17:59:03                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c0    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 17:59:03                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 17:59:15                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c0    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 17:59:15                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c0    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 17:59:15                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c0    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 17:59:15                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-16 17:59:15                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-16 17:59:15                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 17:59:23                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c0    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 17:59:23                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12288      2010-03-16 17:59:24                                  Microsoft-Windows-Security-Auditing  4608:   Windows.           LSASS.EXE    .  
      Audit Success   12544      2010-03-16 17:59:24                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   0     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x4    :        :     : -     : -    :  -       :    :  -     : -    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   13568      2010-03-16 17:59:26                                  Microsoft-Windows-Security-Auditing  4902:      .     : 0   : 0xba70  
      Audit Success   12544      2010-03-16 17:59:27                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x24c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 17:59:27                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 17:59:28                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x24c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 17:59:28                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 17:59:32                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c0    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 17:59:32                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 18:00:01                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x24c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 18:00:01                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x24c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 18:00:01                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x24c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 18:00:01                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-16 18:00:01                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-16 18:00:01                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   13568      2010-03-16 18:00:20                                  Microsoft-Windows-Security-Auditing  4904:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7    :    : 0x116c    : C:\Windows\System32\VSSVC.exe     :    : VSSAudit     : 0x2dd7fe  
      Audit Success   13568      2010-03-16 18:00:20                                  Microsoft-Windows-Security-Auditing  4905:       .    Subject    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7    :    : 0x116c    : C:\Windows\System32\VSSVC.exe     :    : VSSAudit     : 0x2dd7fe  
      Audit Success   12544      2010-03-16 18:00:36                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x24c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 18:00:36                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 18:00:38                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x24c    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 18:00:38                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12292      2010-03-16 18:00:39                                  Microsoft-Windows-Security-Auditing  5033:   Windows  .  
      Audit Success   12292      2010-03-16 18:00:40                                  Microsoft-Windows-Security-Auditing  5024:   Windows  .  
      Audit Success   12544      2010-03-16 18:00:42                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   3     :    :  S-1-5-7     :  ANONYMOUS LOGON     :  NT AUTHORITY    :  0x2952c   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x0    :  -      :     :      : -    :  -       :    :  NtLmSsp      : NTLM    : -     ( NTLM): NTLM V1    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   13824      2010-03-16 18:00:42                                  Microsoft-Windows-Security-Auditing  4781:    :    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-32-569     :  Builtin      : Cryptographic Operators      : Cryptographic Operators     :   :  -  
      Audit Success   13824      2010-03-16 18:00:42                                  Microsoft-Windows-Security-Auditing  4781:    :    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-32-573     :  Builtin      : Event Log Readers      : Event Log Readers     :   :  -  
      Audit Success   13824      2010-03-16 18:00:42                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-4199977393-3493237858-2658114118-500     :  Administrator     :  AJEKC-PC     :      SAM: Administrator    :  %%1793     : -    :  %%1793    :  %%1793     :  %%1793     :  %%1793     : %%1793     : 14/07/2009 12:13:36 a.m.       :  %%1794     : 513    : -     UAC:  0x211     UAC:  0x211      : -    : %%1793    SID:  -    :  %%1797     :   :  -  
      Audit Success   13824      2010-03-16 18:00:42                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-4199977393-3493237858-2658114118-500     :  Administrator     :  AJEKC-PC     :      SAM: Administrator    :  %%1793     : -    :  %%1793    :  %%1793     :  %%1793     :  %%1793     : %%1793     : 14/07/2009 12:13:36 a.m.       :  %%1794     : 513    : -     UAC:  0x211     UAC:  0x211      : -    : %%1793    SID:  -    :  %%1797     :   :  -  
      Audit Success   13824      2010-03-16 18:00:42                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-4199977393-3493237858-2658114118-501     :  Guest     :  AJEKC-PC     :      SAM: Guest    :  %%1793     : -    :  %%1793    :  %%1793     :  %%1793     :  %%1793     : %%1793     : %%1794       :  %%1794     : 513    : -     UAC:  0x215     UAC:  0x215      : -    : %%1793    SID:  -    :  %%1797     :   :  -  
      Audit Success   13824      2010-03-16 18:00:42                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-21-4199977393-3493237858-2658114118-501     :  Guest     :  AJEKC-PC     :      SAM: Guest    :  %%1793     : -    :  %%1793    :  %%1793     :  %%1793     :  %%1793     : %%1793     : %%1794       :  %%1794     : 513    : -     UAC:  0x215     UAC:  0x215      : -    : %%1793    SID:  -    :  %%1797     :   :  -  
      Audit Success   13824      2010-03-16 18:00:42                                  Microsoft-Windows-Security-Auditing  4781:    :    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-32-544     :  Builtin      : Administrators      : Administrators     :   :  -  
      Audit Success   13824      2010-03-16 18:00:42                                  Microsoft-Windows-Security-Auditing  4781:    :    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-32-545     :  Builtin      : Users      : Users     :   :  -  
      Audit Success   13824      2010-03-16 18:00:42                                  Microsoft-Windows-Security-Auditing  4781:    :    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-32-546     :  Builtin      : Guests      : Guests     :   :  -  
      Audit Success   13824      2010-03-16 18:00:42                                  Microsoft-Windows-Security-Auditing  4781:    :    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-32-551     :  Builtin      : Backup Operators      : Backup Operators     :   :  -  
      Audit Success   13824      2010-03-16 18:00:42                                  Microsoft-Windows-Security-Auditing  4781:    :    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-32-552     :  Builtin      : Replicator      : Replicator     :   :  -  
      Audit Success   13824      2010-03-16 18:00:42                                  Microsoft-Windows-Security-Auditing  4781:    :    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-32-555     :  Builtin      : Remote Desktop Users      : Remote Desktop Users     :   :  -  
      Audit Success   13824      2010-03-16 18:00:42                                  Microsoft-Windows-Security-Auditing  4781:    :    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-32-556     :  Builtin      : Network Configuration Operators      : Network Configuration Operators     :   :  -  
      Audit Success   13824      2010-03-16 18:00:42                                  Microsoft-Windows-Security-Auditing  4781:    :    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-32-547     :  Builtin      : Power Users      : Power Users     :   :  -  
      Audit Success   13824      2010-03-16 18:00:42                                  Microsoft-Windows-Security-Auditing  4781:    :    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-32-558     :  Builtin      : Performance Monitor Users      : Performance Monitor Users     :   :  -  
      Audit Success   13824      2010-03-16 18:00:42                                  Microsoft-Windows-Security-Auditing  4781:    :    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-32-559     :  Builtin      : Performance Log Users      : Performance Log Users     :   :  -  
      Audit Success   13824      2010-03-16 18:00:42                                  Microsoft-Windows-Security-Auditing  4781:    :    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-32-562     :  Builtin      : Distributed COM Users      : Distributed COM Users     :   :  -  
      Audit Success   13824      2010-03-16 18:00:42                                  Microsoft-Windows-Security-Auditing  4781:    :    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7      :    :  S-1-5-32-568     :  Builtin      : IIS_IUSRS      : IIS_IUSRS     :   :  -  
      Audit Success   13826      2010-03-16 18:00:42                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-569    :  Cryptographic Operators    :  Builtin     :      SAM: Cryptographic Operators    SID:  -     :   :  -  
      Audit Success   13826      2010-03-16 18:00:42                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-573    :  Event Log Readers    :  Builtin     :      SAM: -    SID:  -     :   :  -  
      Audit Success   13826      2010-03-16 18:00:42                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-573    :  Event Log Readers    :  Builtin     :      SAM: Event Log Readers    SID:  -     :   :  -  
      Audit Success   13826      2010-03-16 18:00:42                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-544    :  Administrators    :  Builtin     :      SAM: -    SID:  -     :   :  -  
      Audit Success   13826      2010-03-16 18:00:42                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-544    :  Administrators    :  Builtin     :      SAM: Administrators    SID:  -     :   :  -  
      Audit Success   13826      2010-03-16 18:00:42                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-545    :  Users    :  Builtin     :      SAM: -    SID:  -     :   :  -  
      Audit Success   13826      2010-03-16 18:00:42                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-545    :  Users    :  Builtin     :      SAM: Users    SID:  -     :   :  -  
      Audit Success   13826      2010-03-16 18:00:42                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-546    :  Guests    :  Builtin     :      SAM: -    SID:  -     :   :  -  
      Audit Success   13826      2010-03-16 18:00:42                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-546    :  Guests    :  Builtin     :      SAM: Guests    SID:  -     :   :  -  
      Audit Success   13826      2010-03-16 18:00:42                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-551    :  Backup Operators    :  Builtin     :      SAM: -    SID:  -     :   :  -  
      Audit Success   13826      2010-03-16 18:00:42                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-551    :  Backup Operators    :  Builtin     :      SAM: Backup Operators    SID:  -     :   :  -  
      Audit Success   13826      2010-03-16 18:00:42                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-552    :  Replicator    :  Builtin     :      SAM: -    SID:  -     :   :  -  
      Audit Success   13826      2010-03-16 18:00:42                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-552    :  Replicator    :  Builtin     :      SAM: Replicator    SID:  -     :   :  -  
      Audit Success   13826      2010-03-16 18:00:42                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-555    :  Remote Desktop Users    :  Builtin     :      SAM: -    SID:  -     :   :  -  
      Audit Success   13826      2010-03-16 18:00:42                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-555    :  Remote Desktop Users    :  Builtin     :      SAM: Remote Desktop Users    SID:  -     :   :  -  
      Audit Success   13826      2010-03-16 18:00:42                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-556    :  Network Configuration Operators    :  Builtin     :      SAM: -    SID:  -     :   :  -  
      Audit Success   13826      2010-03-16 18:00:42                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-556    :  Network Configuration Operators    :  Builtin     :      SAM: Network Configuration Operators    SID:  -     :   :  -  
      Audit Success   13826      2010-03-16 18:00:42                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-547    :  Power Users    :  Builtin     :      SAM: -    SID:  -     :   :  -  
      Audit Success   13826      2010-03-16 18:00:42                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-547    :  Power Users    :  Builtin     :      SAM: Power Users    SID:  -     :   :  -  
      Audit Success   13826      2010-03-16 18:00:42                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-558    :  Performance Monitor Users    :  Builtin     :      SAM: -    SID:  -     :   :  -  
      Audit Success   13826      2010-03-16 18:00:42                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-558    :  Performance Monitor Users    :  Builtin     :      SAM: Performance Monitor Users    SID:  -     :   :  -  
      Audit Success   13826      2010-03-16 18:00:42                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-559    :  Performance Log Users    :  Builtin     :      SAM: -    SID:  -     :   :  -  
      Audit Success   13826      2010-03-16 18:00:42                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-559    :  Performance Log Users    :  Builtin     :      SAM: Performance Log Users    SID:  -     :   :  -  
      Audit Success   13826      2010-03-16 18:00:42                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-562    :  Distributed COM Users    :  Builtin     :      SAM: -    SID:  -     :   :  -  
      Audit Success   13826      2010-03-16 18:00:42                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-562    :  Distributed COM Users    :  Builtin     :      SAM: Distributed COM Users    SID:  -     :   :  -  
      Audit Success   13826      2010-03-16 18:00:42                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-568    :  IIS_IUSRS    :  Builtin     :      SAM: -    SID:  -     :   :  -  
      Audit Success   13826      2010-03-16 18:00:42                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-568    :  IIS_IUSRS    :  Builtin     :      SAM: IIS_IUSRS    SID:  -     :   :  -  
      Audit Success   13826      2010-03-16 18:00:42                                  Microsoft-Windows-Security-Auditing  4735:      .    :    :  S-1-5-18     :  WIN-2ESMQHP8UKJ$     :  WORKGROUP    :  0x3e7    :    :  S-1-5-32-569    :  Cryptographic Operators    :  Builtin     :      SAM: -    SID:  -     :   :  -  
      Audit Success   12544      2010-03-16 18:02:41                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c0    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 18:02:41                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13568      2010-03-16 18:27:37                                  Microsoft-Windows-Security-Auditing  4904:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7    :    : 0x116c    : C:\Windows\System32\VSSVC.exe     :    : VSSAudit     : 0x48a251  
      Audit Success   13568      2010-03-16 18:27:37                                  Microsoft-Windows-Security-Auditing  4905:       .    Subject    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7    :    : 0x116c    : C:\Windows\System32\VSSVC.exe     :    : VSSAudit     : 0x48a251  
      Audit Success   12544      2010-03-16 18:42:07                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c0    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 18:42:07                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 18:48:28                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c0    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 18:48:28                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 19:06:35                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c0    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 19:06:35                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13824      2010-03-16 19:38:42                                  Microsoft-Windows-Security-Auditing  4738:    .    :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0x399c3      :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC     :      SAM: -    :  -     : -    :  -    :  -     :  -     :  -     : -     : -       :  -     : -    : -     UAC:  -     UAC:  -      : -    : -    SID:  -    :  -     :   :  -  
      Audit Success   12544      2010-03-16 19:41:11                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c0    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 19:41:11                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 19:42:20                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c0    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 19:42:20                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c0    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 19:42:20                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-16 19:42:20                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13568      2010-03-16 19:43:06                                  Microsoft-Windows-Security-Auditing  4904:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7    :    : 0x13e4    : C:\Windows\System32\VSSVC.exe     :    : VSSAudit     : 0x88581d  
      Audit Success   13568      2010-03-16 19:43:06                                  Microsoft-Windows-Security-Auditing  4905:       .    Subject    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7    :    : 0x13e4    : C:\Windows\System32\VSSVC.exe     :    : VSSAudit     : 0x88581d  
      Audit Success   12544      2010-03-16 19:44:05                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c0    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 19:44:05                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 19:45:32                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c0    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 19:45:32                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 19:45:38                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c0    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 19:45:38                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12288      2010-03-16 19:49:42                                  Microsoft-Windows-Security-Auditing  4608:   Windows.           LSASS.EXE    .  
      Audit Success   12544      2010-03-16 19:49:42                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   0     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x4    :        :     : -     : -    :  -       :    :  -     : -    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   13568      2010-03-16 19:49:42                                  Microsoft-Windows-Security-Auditing  4902:      .     : 0   : 0xa878  
      Audit Success   12544      2010-03-16 19:49:52                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2bc    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 19:49:52                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2bc    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 19:49:52                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2bc    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 19:49:52                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-16 19:49:52                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-16 19:49:52                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 19:49:53                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2bc    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 19:49:53                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2bc    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 19:49:53                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-16 19:49:53                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   101        2010-03-16 19:49:54                                  Microsoft-Windows-Eventlog      1101: C:\Windows\System32\wevtsvc.dll
      Audit Success   12292      2010-03-16 19:49:54                                  Microsoft-Windows-Security-Auditing  5033:   Windows  .  
      Audit Success   12292      2010-03-16 19:49:54                                  Microsoft-Windows-Security-Auditing  5024:   Windows  .  
      Audit Success   12544      2010-03-16 19:49:54                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2bc    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 19:49:54                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 19:49:57                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  AJEKC     :  AJEKC-PC   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x274    :  C:\Windows\System32\winlogon.exe      :    : 127.0.0.1   :   0      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2010-03-16 19:49:57                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   2     :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0x22909   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x274    :  C:\Windows\System32\winlogon.exe      :     : AJEKC-PC     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 19:49:57                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   2     :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0x22945   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x274    :  C:\Windows\System32\winlogon.exe      :     : AJEKC-PC     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 19:49:57                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0x22909    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 19:50:02                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   3     :    :  S-1-5-7     :  ANONYMOUS LOGON     :  NT AUTHORITY    :  0x2855f   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x0    :  -      :     :      : -    :  -       :    :  NtLmSsp      : NTLM    : -     ( NTLM): NTLM V1    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 19:50:46                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2bc    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 19:50:46                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 19:50:57                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2bc    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 19:50:57                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 19:51:27                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2bc    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 19:51:27                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12290      2010-03-16 19:51:37                                  Microsoft-Windows-Security-Auditing  5061:  .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY      :  0x3e5     :    : Microsoft Software Key Storage Provider    : RSA    : f1e367be-60a1-49de-8eff-4b2127299859    : %%2499     :   : %%2480    : 0x0  
      Audit Success   12292      2010-03-16 19:51:37                                  Microsoft-Windows-Security-Auditing  5058:    .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY      :  0x3e5     :    : Microsoft Software Key Storage Provider    : %%2432    : f1e367be-60a1-49de-8eff-4b2127299859    : %%2499         :     : C:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\588ad87da3cc2611e611a4f36f82878c_c86a204f-b794-40cf-b466-5a4047d7ec91   : %%2458    : 0x0  
      Audit Success   12290      2010-03-16 19:51:49                                  Microsoft-Windows-Security-Auditing  5056:   .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7    :  ncrypt.dll     : 0x0  
      Audit Success   12290      2010-03-16 19:51:49                                  Microsoft-Windows-Security-Auditing  5061:  .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7     :    : Microsoft Software Key Storage Provider    : RSA    : {79A3E7E5-2E28-44BB-BABB-BE7864671F9E}    : %%2499     :   : %%2480    : 0x0  
      Audit Success   12292      2010-03-16 19:51:49                                  Microsoft-Windows-Security-Auditing  5058:    .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7     :    : Microsoft Software Key Storage Provider    : %%2432    : {79A3E7E5-2E28-44BB-BABB-BE7864671F9E}    : %%2499         :     : C:\ProgramData\Microsoft\Crypto\Keys\d5667446a82f99548aa231331e757daf_c86a204f-b794-40cf-b466-5a4047d7ec91   : %%2458    : 0x0  
      Audit Success   12544      2010-03-16 19:52:15                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2bc    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 19:52:15                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12290      2010-03-16 19:52:50                                  Microsoft-Windows-Security-Auditing  5061:  .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7     :    : Microsoft Software Key Storage Provider    : RSA    : {79A3E7E5-2E28-44BB-BABB-BE7864671F9E}    : %%2499     :   : %%2480    : 0x0  
      Audit Success   12292      2010-03-16 19:52:50                                  Microsoft-Windows-Security-Auditing  5058:    .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7     :    : Microsoft Software Key Storage Provider    : %%2432    : {79A3E7E5-2E28-44BB-BABB-BE7864671F9E}    : %%2499         :     : C:\ProgramData\Microsoft\Crypto\Keys\d5667446a82f99548aa231331e757daf_c86a204f-b794-40cf-b466-5a4047d7ec91   : %%2458    : 0x0  
      Audit Success   12544      2010-03-16 20:11:53                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2bc    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 20:11:53                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 20:12:56                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2bc    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 20:12:56                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 20:13:46                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2bc    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 20:13:46                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 20:18:38                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2bc    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 20:18:38                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12288      2010-03-16 21:08:28                                  Microsoft-Windows-Security-Auditing  4608:   Windows.           LSASS.EXE    .  
      Audit Success   12544      2010-03-16 21:08:28                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   0     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x4    :        :     : -     : -    :  -       :    :  -     : -    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   13568      2010-03-16 21:08:28                                  Microsoft-Windows-Security-Auditing  4902:      .     : 0   : 0xac4f  
      Audit Success   12544      2010-03-16 21:08:36                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2bc    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 21:08:36                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 21:08:38                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2bc    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 21:08:38                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2bc    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 21:08:38                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2bc    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 21:08:38                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2bc    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 21:08:38                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2bc    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 21:08:38                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-16 21:08:38                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-16 21:08:38                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-16 21:08:38                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-16 21:08:38                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12292      2010-03-16 21:08:39                                  Microsoft-Windows-Security-Auditing  5033:   Windows  .  
      Audit Success   12292      2010-03-16 21:08:39                                  Microsoft-Windows-Security-Auditing  5024:   Windows  .  
      Audit Success   12544      2010-03-16 21:08:41                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   3     :    :  S-1-5-7     :  ANONYMOUS LOGON     :  NT AUTHORITY    :  0x2433c   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x0    :  -      :     :      : -    :  -       :    :  NtLmSsp      : NTLM    : -     ( NTLM): NTLM V1    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 21:10:51                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2bc    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 21:10:51                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 21:10:54                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2bc    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 21:10:54                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 21:11:47                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2bc    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 21:11:47                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 21:14:45                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  AJEKC     :  AJEKC-PC   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x274    :  C:\Windows\System32\winlogon.exe      :    : 127.0.0.1   :   0      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2010-03-16 21:14:45                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   2     :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0xbb264   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x274    :  C:\Windows\System32\winlogon.exe      :     : AJEKC-PC     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-16 21:14:45                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   2     :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0xbb28f   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x274    :  C:\Windows\System32\winlogon.exe      :     : AJEKC-PC     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 21:14:45                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0xbb264    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-16 21:15:10                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2bc    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 21:15:10                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12290      2010-03-16 21:15:13                                  Microsoft-Windows-Security-Auditing  5061:  .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY      :  0x3e5     :    : Microsoft Software Key Storage Provider    : RSA    : f1e367be-60a1-49de-8eff-4b2127299859    : %%2499     :   : %%2480    : 0x0  
      Audit Success   12292      2010-03-16 21:15:13                                  Microsoft-Windows-Security-Auditing  5058:    .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY      :  0x3e5     :    : Microsoft Software Key Storage Provider    : %%2432    : f1e367be-60a1-49de-8eff-4b2127299859    : %%2499         :     : C:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\588ad87da3cc2611e611a4f36f82878c_c86a204f-b794-40cf-b466-5a4047d7ec91   : %%2458    : 0x0  
      Audit Success   12290      2010-03-16 21:15:28                                  Microsoft-Windows-Security-Auditing  5056:   .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7    :  ncrypt.dll     : 0x0  
      Audit Success   12290      2010-03-16 21:15:28                                  Microsoft-Windows-Security-Auditing  5061:  .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7     :    : Microsoft Software Key Storage Provider    : RSA    : {79A3E7E5-2E28-44BB-BABB-BE7864671F9E}    : %%2499     :   : %%2480    : 0x0  
      Audit Success   12292      2010-03-16 21:15:28                                  Microsoft-Windows-Security-Auditing  5058:    .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7     :    : Microsoft Software Key Storage Provider    : %%2432    : {79A3E7E5-2E28-44BB-BABB-BE7864671F9E}    : %%2499         :     : C:\ProgramData\Microsoft\Crypto\Keys\d5667446a82f99548aa231331e757daf_c86a204f-b794-40cf-b466-5a4047d7ec91   : %%2458    : 0x0  
      Audit Success   12290      2010-03-16 21:16:29                                  Microsoft-Windows-Security-Auditing  5061:  .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7     :    : Microsoft Software Key Storage Provider    : RSA    : {79A3E7E5-2E28-44BB-BABB-BE7864671F9E}    : %%2499     :   : %%2480    : 0x0  
      Audit Success   12292      2010-03-16 21:16:29                                  Microsoft-Windows-Security-Auditing  5058:    .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7     :    : Microsoft Software Key Storage Provider    : %%2432    : {79A3E7E5-2E28-44BB-BABB-BE7864671F9E}    : %%2499         :     : C:\ProgramData\Microsoft\Crypto\Keys\d5667446a82f99548aa231331e757daf_c86a204f-b794-40cf-b466-5a4047d7ec91   : %%2458    : 0x0  
      Audit Success   12544      2010-03-16 21:19:48                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2bc    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-16 21:19:48                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12288      2010-03-17 00:44:16                                  Microsoft-Windows-Security-Auditing  4608:   Windows.           LSASS.EXE    .  
      Audit Success   12544      2010-03-17 00:44:16                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   0     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x4    :        :     : -     : -    :  -       :    :  -     : -    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-17 00:44:16                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2b8    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-17 00:44:16                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13568      2010-03-17 00:44:16                                  Microsoft-Windows-Security-Auditing  4902:      .     : 0   : 0xb722  
      Audit Success   12544      2010-03-17 00:44:20                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2b8    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-17 00:44:20                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2b8    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-17 00:44:20                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2b8    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-17 00:44:20                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2b8    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-17 00:44:20                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-17 00:44:20                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-17 00:44:20                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-17 00:44:20                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   101        2010-03-17 00:44:21                                  Microsoft-Windows-Eventlog      1101: C:\Windows\System32\wevtsvc.dll
      Audit Success   12544      2010-03-17 00:44:21                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2b8    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-17 00:44:21                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12292      2010-03-17 00:44:22                                  Microsoft-Windows-Security-Auditing  5033:   Windows  .  
      Audit Success   12292      2010-03-17 00:44:24                                  Microsoft-Windows-Security-Auditing  5024:   Windows  .  
      Audit Success   12544      2010-03-17 00:44:31                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   3     :    :  S-1-5-7     :  ANONYMOUS LOGON     :  NT AUTHORITY    :  0x2aafc   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x0    :  -      :     :      : -    :  -       :    :  NtLmSsp      : NTLM    : -     ( NTLM): NTLM V1    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-17 00:44:55                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  AJEKC     :  AJEKC-PC   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x270    :  C:\Windows\System32\winlogon.exe      :    : 127.0.0.1   :   0      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2010-03-17 00:44:55                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   2     :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0x326e3   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x270    :  C:\Windows\System32\winlogon.exe      :     : AJEKC-PC     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-17 00:44:55                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   2     :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0x3272d   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x270    :  C:\Windows\System32\winlogon.exe      :     : AJEKC-PC     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-17 00:44:55                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0x326e3    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12288      2010-03-17 00:48:20                                  Microsoft-Windows-Security-Auditing  4608:   Windows.           LSASS.EXE    .  
      Audit Success   12544      2010-03-17 00:48:20                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   0     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x4    :        :     : -     : -    :  -       :    :  -     : -    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-17 00:48:20                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c0    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-17 00:48:20                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13568      2010-03-17 00:48:20                                  Microsoft-Windows-Security-Auditing  4902:      .     : 0   : 0xb610  
      Audit Success   12544      2010-03-17 00:48:24                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c0    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-17 00:48:24                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c0    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-17 00:48:24                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c0    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-17 00:48:24                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c0    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-17 00:48:24                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-17 00:48:24                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-17 00:48:24                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-17 00:48:24                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   101        2010-03-17 00:48:25                                  Microsoft-Windows-Eventlog      1101: C:\Windows\System32\wevtsvc.dll
      Audit Success   12544      2010-03-17 00:48:25                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c0    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-17 00:48:25                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12292      2010-03-17 00:48:26                                  Microsoft-Windows-Security-Auditing  5033:   Windows  .  
      Audit Success   12292      2010-03-17 00:48:28                                  Microsoft-Windows-Security-Auditing  5024:   Windows  .  
      Audit Success   12544      2010-03-17 00:48:34                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   3     :    :  S-1-5-7     :  ANONYMOUS LOGON     :  NT AUTHORITY    :  0x2ab0d   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x0    :  -      :     :      : -    :  -       :    :  NtLmSsp      : NTLM    : -     ( NTLM): NTLM V1    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-17 00:49:46                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  AJEKC     :  AJEKC-PC   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x270    :  C:\Windows\System32\winlogon.exe      :    : 127.0.0.1   :   0      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2010-03-17 00:49:46                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   2     :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0x47e67   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x270    :  C:\Windows\System32\winlogon.exe      :     : AJEKC-PC     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-17 00:49:46                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   2     :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0x47eaf   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x270    :  C:\Windows\System32\winlogon.exe      :     : AJEKC-PC     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-17 00:49:46                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0x47e67    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-17 00:49:58                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c0    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-17 00:49:58                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-17 00:50:14                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c0    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-17 00:50:14                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12290      2010-03-17 00:50:36                                  Microsoft-Windows-Security-Auditing  5061:  .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY      :  0x3e5     :    : Microsoft Software Key Storage Provider    : RSA    : f1e367be-60a1-49de-8eff-4b2127299859    : %%2499     :   : %%2480    : 0x0  
      Audit Success   12292      2010-03-17 00:50:36                                  Microsoft-Windows-Security-Auditing  5058:    .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY      :  0x3e5     :    : Microsoft Software Key Storage Provider    : %%2432    : f1e367be-60a1-49de-8eff-4b2127299859    : %%2499         :     : C:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\588ad87da3cc2611e611a4f36f82878c_c86a204f-b794-40cf-b466-5a4047d7ec91   : %%2458    : 0x0  
      Audit Success   12544      2010-03-17 00:50:48                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c0    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-17 00:50:48                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12290      2010-03-17 00:50:52                                  Microsoft-Windows-Security-Auditing  5056:   .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7    :  ncrypt.dll     : 0x0  
      Audit Success   12290      2010-03-17 00:50:52                                  Microsoft-Windows-Security-Auditing  5061:  .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7     :    : Microsoft Software Key Storage Provider    : RSA    : {79A3E7E5-2E28-44BB-BABB-BE7864671F9E}    : %%2499     :   : %%2480    : 0x0  
      Audit Success   12292      2010-03-17 00:50:52                                  Microsoft-Windows-Security-Auditing  5058:    .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7     :    : Microsoft Software Key Storage Provider    : %%2432    : {79A3E7E5-2E28-44BB-BABB-BE7864671F9E}    : %%2499         :     : C:\ProgramData\Microsoft\Crypto\Keys\d5667446a82f99548aa231331e757daf_c86a204f-b794-40cf-b466-5a4047d7ec91   : %%2458    : 0x0  
      Audit Success   12290      2010-03-17 00:51:53                                  Microsoft-Windows-Security-Auditing  5061:  .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7     :    : Microsoft Software Key Storage Provider    : RSA    : {79A3E7E5-2E28-44BB-BABB-BE7864671F9E}    : %%2499     :   : %%2480    : 0x0  
      Audit Success   12292      2010-03-17 00:51:53                                  Microsoft-Windows-Security-Auditing  5058:    .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7     :    : Microsoft Software Key Storage Provider    : %%2432    : {79A3E7E5-2E28-44BB-BABB-BE7864671F9E}    : %%2499         :     : C:\ProgramData\Microsoft\Crypto\Keys\d5667446a82f99548aa231331e757daf_c86a204f-b794-40cf-b466-5a4047d7ec91   : %%2458    : 0x0  
      Audit Success   12544      2010-03-17 00:54:50                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c0    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-17 00:54:50                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12288      2010-03-17 04:05:20                                  Microsoft-Windows-Security-Auditing  4608:   Windows.           LSASS.EXE    .  
      Audit Success   12544      2010-03-17 04:05:20                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   0     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x4    :        :     : -     : -    :  -       :    :  -     : -    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-17 04:05:20                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c4    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-17 04:05:20                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13568      2010-03-17 04:05:20                                  Microsoft-Windows-Security-Auditing  4902:      .     : 0   : 0xb7b8  
      Audit Success   101        2010-03-17 04:05:25                                  Microsoft-Windows-Eventlog      1101: C:\Windows\System32\wevtsvc.dll
      Audit Success   12544      2010-03-17 04:05:25                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c4    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-17 04:05:25                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c4    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-17 04:05:25                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c4    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-17 04:05:25                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c4    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-17 04:05:25                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-17 04:05:25                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-17 04:05:25                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-17 04:05:25                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12292      2010-03-17 04:05:26                                  Microsoft-Windows-Security-Auditing  5033:   Windows  .  
      Audit Success   12544      2010-03-17 04:05:26                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c4    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-17 04:05:26                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12292      2010-03-17 04:05:28                                  Microsoft-Windows-Security-Auditing  5024:   Windows  .  
      Audit Success   12544      2010-03-17 04:05:34                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   3     :    :  S-1-5-7     :  ANONYMOUS LOGON     :  NT AUTHORITY    :  0x2a91d   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x0    :  -      :     :      : -    :  -       :    :  NtLmSsp      : NTLM    : -     ( NTLM): NTLM V1    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-17 04:07:43                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c4    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-17 04:07:43                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-17 04:07:46                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c4    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-17 04:07:46                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-17 04:20:04                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c4    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-17 04:20:04                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12288      2010-03-17 04:25:52                                  Microsoft-Windows-Security-Auditing  4608:   Windows.           LSASS.EXE    .  
      Audit Success   12544      2010-03-17 04:25:52                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   0     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x4    :        :     : -     : -    :  -       :    :  -     : -    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-17 04:25:52                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x280    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-17 04:25:52                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13568      2010-03-17 04:25:52                                  Microsoft-Windows-Security-Auditing  4902:      .     : 0   : 0xb773  
      Audit Success   12544      2010-03-17 04:25:54                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x280    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-17 04:25:54                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-17 04:25:55                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x280    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-17 04:25:55                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x280    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-17 04:25:55                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x280    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-17 04:25:55                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-17 04:25:55                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-17 04:25:55                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   101        2010-03-17 04:25:56                                  Microsoft-Windows-Eventlog      1101: C:\Windows\System32\wevtsvc.dll
      Audit Success   12544      2010-03-17 04:25:57                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x280    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-17 04:25:57                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12292      2010-03-17 04:25:58                                  Microsoft-Windows-Security-Auditing  5033:   Windows  .  
      Audit Success   12292      2010-03-17 04:26:00                                  Microsoft-Windows-Security-Auditing  5024:   Windows  .  
      Audit Success   12544      2010-03-17 04:26:03                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   3     :    :  S-1-5-7     :  ANONYMOUS LOGON     :  NT AUTHORITY    :  0x2abed   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x0    :  -      :     :      : -    :  -       :    :  NtLmSsp      : NTLM    : -     ( NTLM): NTLM V1    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-17 04:28:07                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x280    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-17 04:28:07                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-17 04:28:09                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x280    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-17 04:28:09                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-17 04:40:36                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x280    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-17 04:40:36                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12288      2010-03-17 04:44:55                                  Microsoft-Windows-Security-Auditing  4608:   Windows.           LSASS.EXE    .  
      Audit Success   12544      2010-03-17 04:44:55                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   0     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x4    :        :     : -     : -    :  -       :    :  -     : -    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-17 04:44:55                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x288    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-17 04:44:55                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   13568      2010-03-17 04:44:55                                  Microsoft-Windows-Security-Auditing  4902:      .     : 0   : 0xb78b  
      Audit Success   12544      2010-03-17 04:44:57                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x288    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-17 04:44:57                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-17 04:44:58                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x288    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-17 04:44:58                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x288    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-17 04:44:58                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x288    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-17 04:44:58                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-17 04:44:58                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-17 04:44:58                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   101        2010-03-17 04:44:59                                  Microsoft-Windows-Eventlog      1101: C:\Windows\System32\wevtsvc.dll
      Audit Success   12544      2010-03-17 04:45:00                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x288    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-17 04:45:00                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12292      2010-03-17 04:45:01                                  Microsoft-Windows-Security-Auditing  5033:   Windows  .  
      Audit Success   12292      2010-03-17 04:45:02                                  Microsoft-Windows-Security-Auditing  5024:   Windows  .  
      Audit Success   12544      2010-03-17 04:45:06                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   3     :    :  S-1-5-7     :  ANONYMOUS LOGON     :  NT AUTHORITY    :  0x2ab20   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x0    :  -      :     :      : -    :  -       :    :  NtLmSsp      : NTLM    : -     ( NTLM): NTLM V1    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-17 04:47:11                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x288    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-17 04:47:11                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-17 04:47:14                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x288    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-17 04:47:14                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-17 04:59:39                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x288    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-17 04:59:39                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12288      2010-03-17 05:09:34                                  Microsoft-Windows-Security-Auditing  4608:   Windows.           LSASS.EXE    .  
      Audit Success   12544      2010-03-17 05:09:34                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   0     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x4    :        :     : -     : -    :  -       :    :  -     : -    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   13568      2010-03-17 05:09:34                                  Microsoft-Windows-Security-Auditing  4902:      .     : 0   : 0xb76c  
      Audit Success   12544      2010-03-17 05:09:35                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x280    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-17 05:09:35                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-17 05:09:36                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x280    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-17 05:09:36                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-17 05:09:37                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x280    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-17 05:09:37                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x280    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-17 05:09:37                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x280    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-17 05:09:37                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-17 05:09:37                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-17 05:09:37                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   101        2010-03-17 05:09:38                                  Microsoft-Windows-Eventlog      1101: C:\Windows\System32\wevtsvc.dll
      Audit Success   12292      2010-03-17 05:09:39                                  Microsoft-Windows-Security-Auditing  5033:   Windows  .  
      Audit Success   12544      2010-03-17 05:09:39                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x280    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-17 05:09:39                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12292      2010-03-17 05:09:40                                  Microsoft-Windows-Security-Auditing  5024:   Windows  .  
      Audit Success   12544      2010-03-17 05:09:44                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   3     :    :  S-1-5-7     :  ANONYMOUS LOGON     :  NT AUTHORITY    :  0x2a0cb   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x0    :  -      :     :      : -    :  -       :    :  NtLmSsp      : NTLM    : -     ( NTLM): NTLM V1    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-17 05:11:48                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x280    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-17 05:11:48                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-17 05:11:50                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x280    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-17 05:11:50                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-17 05:24:17                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x280    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-17 05:24:17                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-17 05:34:14                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x280    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-17 05:34:14                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x280    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-17 05:34:14                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-17 05:34:14                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-17 05:35:40                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x280    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-17 05:35:40                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-17 10:38:12                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  AJEKC     :  AJEKC-PC   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x2a4    :  C:\Windows\System32\winlogon.exe      :    : 127.0.0.1   :   0      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2010-03-17 10:38:12                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   2     :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0x9302b7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2a4    :  C:\Windows\System32\winlogon.exe      :     : AJEKC-PC     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-17 10:38:12                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   2     :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0x9302f0   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2a4    :  C:\Windows\System32\winlogon.exe      :     : AJEKC-PC     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-17 10:38:12                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0x9302b7    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-17 10:38:35                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x280    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-17 10:38:35                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12290      2010-03-17 10:38:36                                  Microsoft-Windows-Security-Auditing  5061:  .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY      :  0x3e5     :    : Microsoft Software Key Storage Provider    : RSA    : f1e367be-60a1-49de-8eff-4b2127299859    : %%2499     :   : %%2480    : 0x0  
      Audit Success   12292      2010-03-17 10:38:36                                  Microsoft-Windows-Security-Auditing  5058:    .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY      :  0x3e5     :    : Microsoft Software Key Storage Provider    : %%2432    : f1e367be-60a1-49de-8eff-4b2127299859    : %%2499         :     : C:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\588ad87da3cc2611e611a4f36f82878c_c86a204f-b794-40cf-b466-5a4047d7ec91   : %%2458    : 0x0  
      Audit Success   12290      2010-03-17 10:38:52                                  Microsoft-Windows-Security-Auditing  5056:   .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7    :  ncrypt.dll     : 0x0  
      Audit Success   12290      2010-03-17 10:38:53                                  Microsoft-Windows-Security-Auditing  5061:  .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7     :    : Microsoft Software Key Storage Provider    : RSA    : {79A3E7E5-2E28-44BB-BABB-BE7864671F9E}    : %%2499     :   : %%2480    : 0x0  
      Audit Success   12292      2010-03-17 10:38:53                                  Microsoft-Windows-Security-Auditing  5058:    .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7     :    : Microsoft Software Key Storage Provider    : %%2432    : {79A3E7E5-2E28-44BB-BABB-BE7864671F9E}    : %%2499         :     : C:\ProgramData\Microsoft\Crypto\Keys\d5667446a82f99548aa231331e757daf_c86a204f-b794-40cf-b466-5a4047d7ec91   : %%2458    : 0x0  
      Audit Success   12290      2010-03-17 10:39:53                                  Microsoft-Windows-Security-Auditing  5061:  .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7     :    : Microsoft Software Key Storage Provider    : RSA    : {79A3E7E5-2E28-44BB-BABB-BE7864671F9E}    : %%2499     :   : %%2480    : 0x0  
      Audit Success   12292      2010-03-17 10:39:53                                  Microsoft-Windows-Security-Auditing  5058:    .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7     :    : Microsoft Software Key Storage Provider    : %%2432    : {79A3E7E5-2E28-44BB-BABB-BE7864671F9E}    : %%2499         :     : C:\ProgramData\Microsoft\Crypto\Keys\d5667446a82f99548aa231331e757daf_c86a204f-b794-40cf-b466-5a4047d7ec91   : %%2458    : 0x0  
      Audit Success   12288      2010-03-17 10:42:47                                  Microsoft-Windows-Security-Auditing  4608:   Windows.           LSASS.EXE    .  
      Audit Success   12544      2010-03-17 10:42:47                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   0     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x4    :        :     : -     : -    :  -       :    :  -     : -    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-17 10:42:47                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c4    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-17 10:42:47                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c4    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-17 10:42:47                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-17 10:42:47                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   13568      2010-03-17 10:42:47                                  Microsoft-Windows-Security-Auditing  4902:      .     : 0   : 0xb49b  
      Audit Success   12544      2010-03-17 10:42:49                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c4    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-17 10:42:49                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c4    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-17 10:42:49                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c4    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-17 10:42:49                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-17 10:42:49                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-17 10:42:49                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   101        2010-03-17 10:42:50                                  Microsoft-Windows-Eventlog      1101: C:\Windows\System32\wevtsvc.dll
      Audit Success   12292      2010-03-17 10:42:52                                  Microsoft-Windows-Security-Auditing  5033:   Windows  .  
      Audit Success   12292      2010-03-17 10:42:52                                  Microsoft-Windows-Security-Auditing  5024:   Windows  .  
      Audit Success   12544      2010-03-17 10:42:52                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c4    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-17 10:42:52                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-17 10:42:56                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   3     :    :  S-1-5-7     :  ANONYMOUS LOGON     :  NT AUTHORITY    :  0x2946b   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x0    :  -      :     :      : -    :  -       :    :  NtLmSsp      : NTLM    : -     ( NTLM): NTLM V1    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12288      2010-03-17 10:44:38                                  Microsoft-Windows-Security-Auditing  4608:   Windows.           LSASS.EXE    .  
      Audit Success   12544      2010-03-17 10:44:38                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   0     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x4    :        :     : -     : -    :  -       :    :  -     : -    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-17 10:44:38                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c0    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-17 10:44:38                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c0    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-17 10:44:38                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-17 10:44:38                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   13568      2010-03-17 10:44:38                                  Microsoft-Windows-Security-Auditing  4902:      .     : 0   : 0xba82  
      Audit Success   12544      2010-03-17 10:44:40                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c0    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-17 10:44:40                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c0    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-17 10:44:40                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c0    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-17 10:44:40                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-17 10:44:40                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-17 10:44:40                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   101        2010-03-17 10:44:41                                  Microsoft-Windows-Eventlog      1101: C:\Windows\System32\wevtsvc.dll
      Audit Success   12292      2010-03-17 10:44:43                                  Microsoft-Windows-Security-Auditing  5033:   Windows  .  
      Audit Success   12544      2010-03-17 10:44:43                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c0    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-17 10:44:43                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12292      2010-03-17 10:44:44                                  Microsoft-Windows-Security-Auditing  5024:   Windows  .  
      Audit Success   12544      2010-03-17 10:44:47                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   3     :    :  S-1-5-7     :  ANONYMOUS LOGON     :  NT AUTHORITY    :  0x299f4   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x0    :  -      :     :      : -    :  -       :    :  NtLmSsp      : NTLM    : -     ( NTLM): NTLM V1    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   103        2010-03-17 10:45:22                                  Microsoft-Windows-Eventlog      1100: C:\Windows\System32\wevtsvc.dll
      Audit Success   12288      2010-03-17 10:47:59                                  Microsoft-Windows-Security-Auditing  4608:   Windows.           LSASS.EXE    .  
      Audit Success   12544      2010-03-17 10:47:59                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   0     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x4    :        :     : -     : -    :  -       :    :  -     : -    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-17 10:47:59                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c8    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-17 10:47:59                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c8    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-17 10:47:59                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-17 10:47:59                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-20     :  NETWORK SERVICE     :  NT AUTHORITY    :  0x3e4    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   13568      2010-03-17 10:47:59                                  Microsoft-Windows-Security-Auditing  4902:      .     : 0   : 0xac84  
      Audit Success   12544      2010-03-17 10:48:00                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c8    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-17 10:48:00                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c8    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-17 10:48:00                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c8    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-17 10:48:00                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY    :  0x3e5    :  SeAssignPrimaryTokenPrivilege     SeAuditPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-17 10:48:00                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12548      2010-03-17 10:48:00                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-17 10:48:02                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c8    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-17 10:48:02                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12292      2010-03-17 10:48:03                                  Microsoft-Windows-Security-Auditing  5033:   Windows  .  
      Audit Success   12292      2010-03-17 10:48:03                                  Microsoft-Windows-Security-Auditing  5024:   Windows  .  
      Audit Success   12544      2010-03-17 10:48:06                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-0-0     :  -     :  -    :  0x0     :   3     :    :  S-1-5-7     :  ANONYMOUS LOGON     :  NT AUTHORITY    :  0x29346   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x0    :  -      :     :      : -    :  -       :    :  NtLmSsp      : NTLM    : -     ( NTLM): NTLM V1    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-17 10:48:27                                  Microsoft-Windows-Security-Auditing  4648:          .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}          :     :  AJEKC     :  AJEKC-PC   GUID :  {00000000-0000-0000-0000-000000000000}     :     : localhost    : localhost      :    :  0x29c    :  C:\Windows\System32\winlogon.exe      :    : 127.0.0.1   :   0      ,        ,     .         , ,  ,    RUNAS.  
      Audit Success   12544      2010-03-17 10:48:27                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   2     :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0x36427   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x29c    :  C:\Windows\System32\winlogon.exe      :     : AJEKC-PC     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12544      2010-03-17 10:48:27                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   2     :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0x3645f   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x29c    :  C:\Windows\System32\winlogon.exe      :     : AJEKC-PC     : 127.0.0.1    :  0       :    :  User32      : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-17 10:48:27                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-21-4199977393-3493237858-2658114118-1001     :  AJEKC     :  AJEKC-PC    :  0x36427    :  SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-17 10:48:44                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c8    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-17 10:48:44                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-17 10:49:04                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c8    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-17 10:49:04                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12290      2010-03-17 10:49:27                                  Microsoft-Windows-Security-Auditing  5061:  .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY      :  0x3e5     :    : Microsoft Software Key Storage Provider    : RSA    : f1e367be-60a1-49de-8eff-4b2127299859    : %%2499     :   : %%2480    : 0x0  
      Audit Success   12292      2010-03-17 10:49:27                                  Microsoft-Windows-Security-Auditing  5058:    .    :    :  S-1-5-19     :  LOCAL SERVICE     :  NT AUTHORITY      :  0x3e5     :    : Microsoft Software Key Storage Provider    : %%2432    : f1e367be-60a1-49de-8eff-4b2127299859    : %%2499         :     : C:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\588ad87da3cc2611e611a4f36f82878c_c86a204f-b794-40cf-b466-5a4047d7ec91   : %%2458    : 0x0  
      Audit Success   12290      2010-03-17 10:49:47                                  Microsoft-Windows-Security-Auditing  5056:   .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7    :  ncrypt.dll     : 0x0  
      Audit Success   12290      2010-03-17 10:49:47                                  Microsoft-Windows-Security-Auditing  5061:  .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7     :    : Microsoft Software Key Storage Provider    : RSA    : {79A3E7E5-2E28-44BB-BABB-BE7864671F9E}    : %%2499     :   : %%2480    : 0x0  
      Audit Success   12292      2010-03-17 10:49:47                                  Microsoft-Windows-Security-Auditing  5058:    .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7     :    : Microsoft Software Key Storage Provider    : %%2432    : {79A3E7E5-2E28-44BB-BABB-BE7864671F9E}    : %%2499         :     : C:\ProgramData\Microsoft\Crypto\Keys\d5667446a82f99548aa231331e757daf_c86a204f-b794-40cf-b466-5a4047d7ec91   : %%2458    : 0x0  
      Audit Success   12544      2010-03-17 10:50:27                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c8    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-17 10:50:27                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12290      2010-03-17 10:50:48                                  Microsoft-Windows-Security-Auditing  5061:  .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7     :    : Microsoft Software Key Storage Provider    : RSA    : {79A3E7E5-2E28-44BB-BABB-BE7864671F9E}    : %%2499     :   : %%2480    : 0x0  
      Audit Success   12292      2010-03-17 10:50:48                                  Microsoft-Windows-Security-Auditing  5058:    .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP      :  0x3e7     :    : Microsoft Software Key Storage Provider    : %%2432    : {79A3E7E5-2E28-44BB-BABB-BE7864671F9E}    : %%2499         :     : C:\ProgramData\Microsoft\Crypto\Keys\d5667446a82f99548aa231331e757daf_c86a204f-b794-40cf-b466-5a4047d7ec91   : %%2458    : 0x0  
      Audit Success   12544      2010-03-17 10:53:00                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c8    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-17 10:53:00                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
      Audit Success   12544      2010-03-17 11:04:55                                  Microsoft-Windows-Security-Auditing  4624:      .    :    :  S-1-5-18     :  AJEKC-PC$     :  WORKGROUP    :  0x3e7     :   5     :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7   GUID :  {00000000-0000-0000-0000-000000000000}      :    :  0x2c8    :  C:\Windows\System32\services.exe      :     :      : -    :  -       :    :  Advapi       : Negotiate    : -     ( NTLM): -    :  0          .    ,    .     ""      ,  .   , ,  "",   ,   Winlogon.exe  Services.exe.      " "    .     2 ()  3 ().     " "    ,      ,     ,    .     ,    ,      .      ,         .                .   - GUID  -   ,        KDC.   -   " " ,         .   -  " "   ,    NTLM.   -  " "     .      "0",     .  
      Audit Success   12548      2010-03-17 11:04:55                                  Microsoft-Windows-Security-Auditing  4672:      .    :    :  S-1-5-18     :  SYSTEM     :  NT AUTHORITY    :  0x3e7    :  SeAssignPrimaryTokenPrivilege     SeTcbPrivilege     SeSecurityPrivilege     SeTakeOwnershipPrivilege     SeLoadDriverPrivilege     SeBackupPrivilege     SeRestorePrivilege     SeDebugPrivilege     SeAuditPrivilege     SeSystemEnvironmentPrivilege     SeImpersonatePrivilege  
                        2009-07-14 07:14:23                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2009-07-14 07:14:24                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2009-07-14 07:14:24                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2009-07-14 07:14:24                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2009-07-14 07:14:24                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2009-07-14 07:14:24                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2009-07-14 07:14:24                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                103        2009-07-14 07:14:24                                  Microsoft-Windows-Kernel-Power  109: C:\Windows\system32\microsoft-windows-kernel-power-events.dll
                1102       2009-07-14 07:14:24  SYSTEM                          Microsoft-Windows-Winlogon      7002: C:\Windows\system32\winlogon.exe
                7010       2009-07-14 07:14:24  SYSTEM                          Microsoft-Windows-UserPnp       20010: C:\Windows\system32\umpnpmgr.dll
                        2009-07-14 07:14:28                                  Microsoft-Windows-Kernel-General  13:  .  
                        2010-03-16 11:01:52  SYSTEM                          Microsoft-Windows-Kernel-General  1:  .  
                        2010-03-16 11:02:03  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 11:02:04                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:02:04                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:02:04                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:02:05                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:02:11                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:02:15                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:02:15                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:02:16                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:02:16                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:02:17                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:02:23                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:02:24                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:02:24                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:02:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:02:26                                  WMPNetworkSvc                   
                        2010-03-16 11:02:26                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:02:26  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 11:02:27                                  WMPNetworkSvc                   
                        2010-03-16 11:02:27                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:02:27                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:02:28                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:02:29                                  WMPNetworkSvc                   
                        2010-03-16 11:02:29                                  WMPNetworkSvc                   
                        2010-03-16 11:02:29                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:02:29                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:02:32                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:02:33                                  Virtual Disk Service            3: C:\Windows\System32\vds.exe
                        2010-03-16 11:02:33                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:02:42                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:02:43                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:02:45                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:02:45                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:02:45                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:02:45                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:03:07  SYSTEM                          USER32                          1074:  C:\Windows\system32\shutdown.exe (WIN-2ESMQHP8UKJ)   "restart"   AJEKC-PC    NT AUTHORITY\SYSTEM  : No title for this reason could be found     : 0x800000ff     : restart    :   
                        2010-03-16 11:03:08                                  WMPNetworkSvc                   
                        2010-03-16 11:03:08                                  WMPNetworkSvc                   
                        2010-03-16 11:03:08                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:03:08                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                1101       2010-03-16 11:03:13  SYSTEM                          Microsoft-Windows-Winlogon      7001: C:\Windows\system32\winlogon.exe
                        2010-03-16 11:03:17  AJEKC                           Microsoft-Windows-GroupPolicy   1501: C:\Windows\system32\gpsvc.dll
                        2010-03-16 11:03:19                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:03:19                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:03:24                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:03:38                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                1          2010-03-16 11:03:38  SYSTEM                          Microsoft-Windows-WindowsUpdateClient  27: C:\Windows\system32\wuaueng.dll
                        2010-03-16 11:03:39                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                1102       2010-03-16 11:03:39  SYSTEM                          Microsoft-Windows-Winlogon      7002: C:\Windows\system32\winlogon.exe
                        2010-03-16 11:03:40                                  EventLog                        6006:    .  
                        2010-03-16 11:03:40                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:03:40                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:03:40                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:03:40                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:03:40                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:03:40                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:03:40                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:03:40                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:03:40                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:03:40                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:03:40                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:03:40                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:03:40                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:03:40                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:03:40                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:03:40                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:03:40                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:03:40                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                4          2010-03-16 11:03:40  LOCAL SERVICE                   Microsoft-Windows-DHCPv6-Client  51047:   DHCPv6 .    : 1  
                4          2010-03-16 11:03:40  LOCAL SERVICE                   Microsoft-Windows-Dhcp-Client   50037:    DHCPv4.    : 1  
                        2010-03-16 11:03:41                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:03:41                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:03:41                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:03:41                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:03:41                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:03:41                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:03:41                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:03:41                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                7010       2010-03-16 11:03:41  SYSTEM                          Microsoft-Windows-UserPnp       20010: C:\Windows\system32\umpnpmgr.dll
                        2010-03-16 11:03:43                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                103        2010-03-16 11:03:43                                  Microsoft-Windows-Kernel-Power  109: C:\Windows\system32\microsoft-windows-kernel-power-events.dll
                        2010-03-16 11:03:46                                  Microsoft-Windows-Kernel-General  13:  .  
                        2010-03-16 11:04:22  SYSTEM                          Microsoft-Windows-Kernel-General  12:   .  
                        2010-03-16 11:04:25  SYSTEM                          Microsoft-Windows-FilterManager  6: C:\Windows\system32\drivers\fltmgr.sys
                4          2010-03-16 11:04:36  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 11:04:36  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 11:04:36  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 11:04:36  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 11:04:36  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 11:04:36  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 11:04:36  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 11:04:36  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                        2010-03-16 11:04:45                                  EventLog                        6009: Microsoft (R) Windows (R) 6.01. 7600  Multiprocessor Free.  
                        2010-03-16 11:04:45                                  EventLog                        6005:    .  
                        2010-03-16 11:04:45                                  EventLog                        6013:    24 .  
                        2010-03-16 11:04:45                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:04:45                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:04:45                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:04:45                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:04:45                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:04:45                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:04:45                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:04:45  SYSTEM                          Microsoft-Windows-FilterManager  6: C:\Windows\system32\drivers\fltmgr.sys
                7010       2010-03-16 11:04:45  SYSTEM                          Microsoft-Windows-UserPnp       20010: C:\Windows\system32\umpnpmgr.dll
                        2010-03-16 11:04:46                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:04:47                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:04:47                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:04:47                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:04:47                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:04:47                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:04:47                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:04:48                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:04:48                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:04:48                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:04:48                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:04:48                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:04:48                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:04:48                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:04:48                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                4          2010-03-16 11:04:48  LOCAL SERVICE                   Microsoft-Windows-Dhcp-Client   50036:   DHCPv4   
                4          2010-03-16 11:04:48  LOCAL SERVICE                   Microsoft-Windows-DHCPv6-Client  51046:   DHCPv6   
                        2010-03-16 11:04:49                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:04:49                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:04:50                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:04:51                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:04:51                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:04:51                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:04:52                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:04:52                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:04:52                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:04:52                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:04:52  SYSTEM                          Microsoft-Windows-Application-Experience  201:       .  
                        2010-03-16 11:04:53                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:04:53                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:04:53                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:04:53                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:04:54                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:04:54                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:04:54                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:04:54                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:04:54                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:04:54                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:04:54                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:04:55                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                1101       2010-03-16 11:05:00  SYSTEM                          Microsoft-Windows-Winlogon      7001: C:\Windows\system32\winlogon.exe
                        2010-03-16 11:05:07                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:05:08                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:05:13                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:05:14                                  WMPNetworkSvc                   
                        2010-03-16 11:05:14                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:05:15                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:05:15                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:05:15                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:05:15                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:05:16                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:05:17                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:05:17                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:05:38                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:05:40                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:05:41                                  WMPNetworkSvc                   
                        2010-03-16 11:05:52  SYSTEM                          Microsoft-Windows-Application-Experience  206:          .  
                        2010-03-16 11:06:54                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:06:55                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:06:56                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:06:56                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:06:56                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:06:57                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:06:58                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:07:01                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                2          2010-03-16 11:07:56  SYSTEM                          Microsoft-Windows-WindowsUpdateClient  18: C:\Windows\system32\wuaueng.dll
                        2010-03-16 11:08:32                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:08:32                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                2          2010-03-16 11:08:36  SYSTEM                          Microsoft-Windows-WindowsUpdateClient  18: C:\Windows\system32\wuaueng.dll
                7005       2010-03-16 11:08:40  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                        2010-03-16 11:08:44                                  volsnap                         33: 
                        2010-03-16 11:08:44                                  volsnap                         33: 
                        2010-03-16 11:08:44                                  volsnap                         33: 
                1102       2010-03-16 11:08:48  SYSTEM                          Microsoft-Windows-Winlogon      7002: C:\Windows\system32\winlogon.exe
                        2010-03-16 11:08:50                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                1101       2010-03-16 11:08:51  SYSTEM                          Microsoft-Windows-Winlogon      7001: C:\Windows\system32\winlogon.exe
                1          2010-03-16 11:08:54  SYSTEM                          Microsoft-Windows-WindowsUpdateClient  19: C:\Windows\system32\wuaueng.dll
                        2010-03-16 11:09:01  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 11:09:03  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                2          2010-03-16 11:09:04  SYSTEM                          Microsoft-Windows-WindowsUpdateClient  18: C:\Windows\system32\wuaueng.dll
                        2010-03-16 11:09:31  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 11:09:33  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 11:09:36  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 11:09:38  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 11:09:40  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 11:09:42  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 11:09:44  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 11:09:48  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 11:09:50  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 11:09:51  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 11:09:53  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 11:09:58  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 11:10:01  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 11:10:02  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 11:10:03                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:10:05  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                2          2010-03-16 11:10:05  SYSTEM                          Microsoft-Windows-WindowsUpdateClient  18: C:\Windows\system32\wuaueng.dll
                        2010-03-16 11:10:09  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 11:10:11  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 11:10:12  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 11:10:14  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 11:10:16  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 11:10:18  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 11:10:20  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 11:10:22  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 11:10:24  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 11:10:26  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                2          2010-03-16 11:10:27  SYSTEM                          Microsoft-Windows-WindowsUpdateClient  18: C:\Windows\system32\wuaueng.dll
                        2010-03-16 11:10:32  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 11:10:34  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 11:10:36  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                2          2010-03-16 11:10:43  SYSTEM                          Microsoft-Windows-WindowsUpdateClient  18: C:\Windows\system32\wuaueng.dll
                2          2010-03-16 11:10:43  SYSTEM                          Microsoft-Windows-WindowsUpdateClient  18: C:\Windows\system32\wuaueng.dll
                2          2010-03-16 11:10:51  SYSTEM                          Microsoft-Windows-WindowsUpdateClient  18: C:\Windows\system32\wuaueng.dll
                2          2010-03-16 11:10:51  SYSTEM                          Microsoft-Windows-WindowsUpdateClient  18: C:\Windows\system32\wuaueng.dll
                2          2010-03-16 11:10:56  SYSTEM                          Microsoft-Windows-WindowsUpdateClient  18: C:\Windows\system32\wuaueng.dll
                2          2010-03-16 11:10:56  SYSTEM                          Microsoft-Windows-WindowsUpdateClient  18: C:\Windows\system32\wuaueng.dll
                2          2010-03-16 11:11:06  SYSTEM                          Microsoft-Windows-WindowsUpdateClient  18: C:\Windows\system32\wuaueng.dll
                2          2010-03-16 11:11:06  SYSTEM                          Microsoft-Windows-WindowsUpdateClient  18: C:\Windows\system32\wuaueng.dll
                2          2010-03-16 11:11:11  SYSTEM                          Microsoft-Windows-WindowsUpdateClient  18: C:\Windows\system32\wuaueng.dll
                2          2010-03-16 11:11:11  SYSTEM                          Microsoft-Windows-WindowsUpdateClient  18: C:\Windows\system32\wuaueng.dll
                2          2010-03-16 11:11:17  SYSTEM                          Microsoft-Windows-WindowsUpdateClient  18: C:\Windows\system32\wuaueng.dll
                2          2010-03-16 11:11:17  SYSTEM                          Microsoft-Windows-WindowsUpdateClient  18: C:\Windows\system32\wuaueng.dll
                2          2010-03-16 11:11:24  SYSTEM                          Microsoft-Windows-WindowsUpdateClient  18: C:\Windows\system32\wuaueng.dll
                2          2010-03-16 11:11:44  SYSTEM                          Microsoft-Windows-WindowsUpdateClient  18: C:\Windows\system32\wuaueng.dll
                2          2010-03-16 11:11:44  SYSTEM                          Microsoft-Windows-WindowsUpdateClient  18: C:\Windows\system32\wuaueng.dll
                        2010-03-16 11:11:48                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:11:59                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:13:49                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:14:48                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:15:08                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:15:28                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:15:28                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:16:01                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:17:49                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:18:39                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:18:57                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:19:26  AJEKC                           USER32                          1074:  C:\Windows\system32\wbem\wmiprvse.exe (AJEKC-PC)   ""   AJEKC-PC    AJEKC-PC\AJEKC  : No title for this reason could be found     : 0x80070015     :     :   
                        2010-03-16 11:19:28                                  EventLog                        6006:    .  
                        2010-03-16 11:19:28                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:19:28                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:19:28                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:19:28                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:19:28                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:19:28                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:19:28                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:19:28                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:19:28                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:19:28                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:19:28                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:19:28                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:19:28                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                1          2010-03-16 11:19:28  SYSTEM                          Microsoft-Windows-WindowsUpdateClient  27: C:\Windows\system32\wuaueng.dll
                1102       2010-03-16 11:19:28  SYSTEM                          Microsoft-Windows-Winlogon      7002: C:\Windows\system32\winlogon.exe
                4          2010-03-16 11:19:28  LOCAL SERVICE                   Microsoft-Windows-DHCPv6-Client  51047:   DHCPv6 .    : 1  
                4          2010-03-16 11:19:28  LOCAL SERVICE                   Microsoft-Windows-Dhcp-Client   50037:    DHCPv4.    : 1  
                7010       2010-03-16 11:19:28  SYSTEM                          Microsoft-Windows-UserPnp       20010: C:\Windows\system32\umpnpmgr.dll
                        2010-03-16 11:19:29                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:19:29                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:19:29                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:19:29                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:19:29                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:19:29                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:19:29                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:19:29                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:19:29                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:19:29                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:19:29                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:19:29                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:19:29                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:19:30                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:19:30                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:19:30                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:19:30                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:19:30                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:19:32                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                103        2010-03-16 11:19:32                                  Microsoft-Windows-Kernel-Power  109: C:\Windows\system32\microsoft-windows-kernel-power-events.dll
                        2010-03-16 11:19:36                                  Microsoft-Windows-Kernel-General  13:  .  
                        2010-03-16 11:20:31  SYSTEM                          Microsoft-Windows-Kernel-General  12:   .  
                        2010-03-16 11:20:34  SYSTEM                          Microsoft-Windows-FilterManager  6: C:\Windows\system32\drivers\fltmgr.sys
                4          2010-03-16 11:20:41  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 11:20:41  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 11:20:41  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 11:20:41  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 11:20:41  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 11:20:41  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 11:20:41  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 11:20:41  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                        2010-03-16 11:20:55                                  EventLog                        6009: Microsoft (R) Windows (R) 6.01. 7600  Multiprocessor Free.  
                        2010-03-16 11:20:55                                  EventLog                        6005:    .  
                        2010-03-16 11:20:55                                  EventLog                        6013:    25 .  
                        2010-03-16 11:20:55                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:20:55                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:20:55                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:20:55                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:20:55                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:20:55                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:20:55  SYSTEM                          Microsoft-Windows-FilterManager  6: C:\Windows\system32\drivers\fltmgr.sys
                7010       2010-03-16 11:20:55  SYSTEM                          Microsoft-Windows-UserPnp       20010: C:\Windows\system32\umpnpmgr.dll
                        2010-03-16 11:20:56                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:20:56                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:20:57                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:20:57                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:20:57                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:20:57                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:20:57                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:20:57                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:20:58                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:20:58                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:20:58                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:20:58                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:20:58                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:20:58                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:20:58                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:20:58                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:20:58                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                4          2010-03-16 11:20:58  LOCAL SERVICE                   Microsoft-Windows-Dhcp-Client   50036:   DHCPv4   
                4          2010-03-16 11:20:58  LOCAL SERVICE                   Microsoft-Windows-DHCPv6-Client  51046:   DHCPv6   
                        2010-03-16 11:20:59                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:20:59                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:21:00                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:21:01                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:21:01                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:21:01                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:21:01  SYSTEM                          Microsoft-Windows-Application-Experience  201:       .  
                        2010-03-16 11:21:02                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:21:02                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:21:02                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:21:02                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:21:02                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:21:03                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:21:03                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:21:04                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:21:04                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:21:04                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:21:04                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:21:04                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:21:04                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:21:04                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:21:05                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                1101       2010-03-16 11:21:18  SYSTEM                          Microsoft-Windows-Winlogon      7001: C:\Windows\system32\winlogon.exe
                        2010-03-16 11:21:21                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:21:24                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:22:07                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:22:08                                  WMPNetworkSvc                   
                        2010-03-16 11:22:08                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:22:08                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:22:09                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:22:09                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:22:09                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:22:09                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:22:09                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:22:10                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:22:10                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:22:10                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:22:11                                  WMPNetworkSvc                   
                        2010-03-16 11:22:22                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:22:23  SYSTEM                          Microsoft-Windows-Application-Experience  206:          .  
                        2010-03-16 11:22:31                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:23:04                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:23:04                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:23:06                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:23:06                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:23:06                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:23:08                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:23:19                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:26:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:32:22                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:34:20                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:44:37  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 11:44:37  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 11:44:40                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:44:40                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:44:40                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                2          2010-03-16 11:44:42  SYSTEM                          Microsoft-Windows-WindowsUpdateClient  17: C:\Windows\system32\wuaueng.dll
                        2010-03-16 11:44:50  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 11:44:57  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 11:44:58  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                1          2010-03-16 11:45:03  SYSTEM                          Microsoft-Windows-WindowsUpdateClient  19: C:\Windows\system32\wuaueng.dll
                1          2010-03-16 11:47:00  SYSTEM                          Microsoft-Windows-WindowsUpdateClient  19: C:\Windows\system32\wuaueng.dll
                        2010-03-16 11:47:50  SYSTEM                          Service Control Manager         7045: C:\Windows\system32\services.exe
                7005       2010-03-16 11:47:50  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 11:47:51  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                1          2010-03-16 11:48:19  SYSTEM                          Microsoft-Windows-WindowsUpdateClient  19: C:\Windows\system32\wuaueng.dll
                2          2010-03-16 11:48:19  SYSTEM                          Microsoft-Windows-WindowsUpdateClient  21: C:\Windows\system32\wuaueng.dll
                        2010-03-16 11:50:48                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:51:36  AJEKC                           USER32                          1074:  Explorer.EXE   ""   AJEKC-PC    AJEKC-PC\AJEKC  : Other (Unplanned)     : 0x0     :     :   
                        2010-03-16 11:51:38                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:51:38  AJEKC                           USER32                          1074:  C:\Windows\system32\winlogon.exe (AJEKC-PC)   "restart"   AJEKC-PC    AJEKC-PC\AJEKC  : No title for this reason could be found     : 0x500ff     : restart    :   
                1          2010-03-16 11:51:38  SYSTEM                          Microsoft-Windows-WindowsUpdateClient  27: C:\Windows\system32\wuaueng.dll
                1102       2010-03-16 11:51:38  SYSTEM                          Microsoft-Windows-Winlogon      7002: C:\Windows\system32\winlogon.exe
                        2010-03-16 11:51:39                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:51:50                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:51:51                                  EventLog                        6006:    .  
                        2010-03-16 11:51:51                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:51:51                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:51:51                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:51:51                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:51:51                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:51:51                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:51:51                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:51:51                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:51:51                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:51:51                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:51:51                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:51:51                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:51:51                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:51:51                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:51:51                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:51:51                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:51:51                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:51:51                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:51:51                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:51:51                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:51:51                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                4          2010-03-16 11:51:51  LOCAL SERVICE                   Microsoft-Windows-DHCPv6-Client  51047:   DHCPv6 .    : 1  
                4          2010-03-16 11:51:51  LOCAL SERVICE                   Microsoft-Windows-Dhcp-Client   50037:    DHCPv4.    : 1  
                7010       2010-03-16 11:51:51  SYSTEM                          Microsoft-Windows-UserPnp       20010: C:\Windows\system32\umpnpmgr.dll
                        2010-03-16 11:51:52                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:51:52                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:51:52                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:51:52                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:51:54                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                103        2010-03-16 11:51:54                                  Microsoft-Windows-Kernel-Power  109: C:\Windows\system32\microsoft-windows-kernel-power-events.dll
                        2010-03-16 11:51:58                                  Microsoft-Windows-Kernel-General  13:  .  
                        2010-03-16 11:52:33  SYSTEM                          Microsoft-Windows-Kernel-General  12:   .  
                        2010-03-16 11:52:36  SYSTEM                          Microsoft-Windows-FilterManager  6: C:\Windows\system32\drivers\fltmgr.sys
                4          2010-03-16 11:52:43  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 11:52:43  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 11:52:43  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 11:52:43  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 11:52:43  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 11:52:43  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 11:52:43  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 11:52:43  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                        2010-03-16 11:52:54                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:52:54                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:52:54  SYSTEM                          Microsoft-Windows-FilterManager  6: C:\Windows\system32\drivers\fltmgr.sys
                7010       2010-03-16 11:52:54  SYSTEM                          Microsoft-Windows-UserPnp       20010: C:\Windows\system32\umpnpmgr.dll
                        2010-03-16 11:52:55                                  EventLog                        6009: Microsoft (R) Windows (R) 6.01. 7600  Multiprocessor Free.  
                        2010-03-16 11:52:55                                  EventLog                        6005:    .  
                        2010-03-16 11:52:55                                  EventLog                        6013:    22 .  
                        2010-03-16 11:52:55                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:52:55                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:52:55                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:52:55                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:52:55                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:52:55                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:52:57                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:52:57                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:52:57                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:52:57                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:52:57                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:52:57                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:52:57                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:53:03                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:53:03                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:53:03                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:53:03                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:53:03                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:53:03                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:53:03                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:53:03                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:53:03                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:53:03                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:53:03                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:53:03                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                4          2010-03-16 11:53:03  LOCAL SERVICE                   Microsoft-Windows-Dhcp-Client   50036:   DHCPv4   
                4          2010-03-16 11:53:03  LOCAL SERVICE                   Microsoft-Windows-DHCPv6-Client  51046:   DHCPv6   
                        2010-03-16 11:53:04                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:53:04                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:53:04                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:53:04                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:53:04                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:53:04                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:53:04                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:53:04                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:53:04                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:53:04                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:53:04  SYSTEM                          Microsoft-Windows-Application-Experience  201:       .  
                        2010-03-16 11:53:05                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:53:05                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:53:05                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:53:05                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:53:05                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:53:05                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:53:05                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:53:06                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:53:07                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:53:09                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:53:11                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:53:12                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:53:13  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                1101       2010-03-16 11:53:23  SYSTEM                          Microsoft-Windows-Winlogon      7001: C:\Windows\system32\winlogon.exe
                        2010-03-16 11:53:28                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:53:37                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:53:38                                  WMPNetworkSvc                   
                        2010-03-16 11:53:38                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:53:40                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:53:41                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:53:41                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:53:41                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:53:41                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:53:42                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:53:42                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:53:42                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:53:43                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:53:44                                  WMPNetworkSvc                   
                        2010-03-16 11:54:03                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:55:05                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:55:05                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:55:05                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:55:07                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:55:23                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                1          2010-03-16 11:55:53  SYSTEM                          Microsoft-Windows-WindowsUpdateClient  19: C:\Windows\system32\wuaueng.dll
                1          2010-03-16 11:55:53  SYSTEM                          Microsoft-Windows-WindowsUpdateClient  19: C:\Windows\system32\wuaueng.dll
                1          2010-03-16 11:55:53  SYSTEM                          Microsoft-Windows-WindowsUpdateClient  19: C:\Windows\system32\wuaueng.dll
                1          2010-03-16 11:55:53  SYSTEM                          Microsoft-Windows-WindowsUpdateClient  19: C:\Windows\system32\wuaueng.dll
                1          2010-03-16 11:55:53  SYSTEM                          Microsoft-Windows-WindowsUpdateClient  19: C:\Windows\system32\wuaueng.dll
                1          2010-03-16 11:55:53  SYSTEM                          Microsoft-Windows-WindowsUpdateClient  19: C:\Windows\system32\wuaueng.dll
                1          2010-03-16 11:55:53  SYSTEM                          Microsoft-Windows-WindowsUpdateClient  19: C:\Windows\system32\wuaueng.dll
                1          2010-03-16 11:55:53  SYSTEM                          Microsoft-Windows-WindowsUpdateClient  19: C:\Windows\system32\wuaueng.dll
                1          2010-03-16 11:55:53  SYSTEM                          Microsoft-Windows-WindowsUpdateClient  19: C:\Windows\system32\wuaueng.dll
                1          2010-03-16 11:55:53  SYSTEM                          Microsoft-Windows-WindowsUpdateClient  19: C:\Windows\system32\wuaueng.dll
                1          2010-03-16 11:55:53  SYSTEM                          Microsoft-Windows-WindowsUpdateClient  19: C:\Windows\system32\wuaueng.dll
                1          2010-03-16 11:55:53  SYSTEM                          Microsoft-Windows-WindowsUpdateClient  19: C:\Windows\system32\wuaueng.dll
                1          2010-03-16 11:55:53  SYSTEM                          Microsoft-Windows-WindowsUpdateClient  19: C:\Windows\system32\wuaueng.dll
                1          2010-03-16 11:55:53  SYSTEM                          Microsoft-Windows-WindowsUpdateClient  19: C:\Windows\system32\wuaueng.dll
                1          2010-03-16 11:55:53  SYSTEM                          Microsoft-Windows-WindowsUpdateClient  19: C:\Windows\system32\wuaueng.dll
                1          2010-03-16 11:55:53  SYSTEM                          Microsoft-Windows-WindowsUpdateClient  19: C:\Windows\system32\wuaueng.dll
                1          2010-03-16 11:55:53  SYSTEM                          Microsoft-Windows-WindowsUpdateClient  19: C:\Windows\system32\wuaueng.dll
                        2010-03-16 11:57:06                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:57:11  AJEKC                           Service Control Manager         7045: C:\Windows\system32\services.exe
                        2010-03-16 11:57:12                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:57:18                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:57:21  AJEKC                           Service Control Manager         7045: C:\Windows\system32\services.exe
                        2010-03-16 11:57:22  AJEKC                           Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 11:58:11                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 11:59:18  SYSTEM                          Microsoft-Windows-Application-Experience  206:          .  
                        2010-03-16 11:59:26  AJEKC                           Service Control Manager         7045: C:\Windows\system32\services.exe
                        2010-03-16 12:00:33                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:00:33                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:00:41                                  EventLog                        6013:    489 .  
                            2010-03-16 12:00:44                                  Service Control Manager         7030: C:\Windows\system32\services.exe
                        2010-03-16 12:00:44  AJEKC                           Service Control Manager         7045: C:\Windows\system32\services.exe
                7005       2010-03-16 12:01:05  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 12:01:05  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 12:01:10  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 12:01:11  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 12:01:11  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 12:01:14  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                        2010-03-16 12:01:16  AJEKC                           USER32                          1074:  C:\Windows\system32\winlogon.exe (AJEKC-PC)   "restart"   AJEKC-PC    AJEKC-PC\AJEKC  : No title for this reason could be found     : 0x500ff     : restart    :   
                1          2010-03-16 12:01:16  SYSTEM                          Microsoft-Windows-WindowsUpdateClient  27: C:\Windows\system32\wuaueng.dll
                1102       2010-03-16 12:01:16  SYSTEM                          Microsoft-Windows-Winlogon      7002: C:\Windows\system32\winlogon.exe
                        2010-03-16 12:01:17                                  EventLog                        6006:    .  
                        2010-03-16 12:01:17                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:01:17                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:01:17                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:01:17                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:01:17                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:01:17                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:01:17                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:01:17                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:01:17                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:01:17                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:01:17                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:01:17                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:01:17                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:01:17                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:01:17                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:01:17                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:01:17                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:01:17                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:01:17                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:01:17                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:01:17                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:01:17                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:01:17                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                4          2010-03-16 12:01:17  LOCAL SERVICE                   Microsoft-Windows-DHCPv6-Client  51047:   DHCPv6 .    : 1  
                4          2010-03-16 12:01:17  LOCAL SERVICE                   Microsoft-Windows-Dhcp-Client   50037:    DHCPv4.    : 1  
                        2010-03-16 12:01:18                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:01:18                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:01:18                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:01:18                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:01:18                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:01:18                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:01:18                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:01:18                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:01:18                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                7010       2010-03-16 12:01:18  SYSTEM                          Microsoft-Windows-UserPnp       20010: C:\Windows\system32\umpnpmgr.dll
                        2010-03-16 12:01:19                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                103        2010-03-16 12:01:19                                  Microsoft-Windows-Kernel-Power  109: C:\Windows\system32\microsoft-windows-kernel-power-events.dll
                        2010-03-16 12:01:24                                  Microsoft-Windows-Kernel-General  13:  .  
                        2010-03-16 12:02:05  SYSTEM                          Microsoft-Windows-Kernel-General  12:   .  
                        2010-03-16 12:02:08  SYSTEM                          Microsoft-Windows-FilterManager  6: C:\Windows\system32\drivers\fltmgr.sys
                4          2010-03-16 12:02:14  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 12:02:14  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 12:02:14  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 12:02:14  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 12:02:14  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 12:02:14  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 12:02:14  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 12:02:14  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                        2010-03-16 12:02:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:02:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:02:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:02:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:02:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:02:25  SYSTEM                          Microsoft-Windows-FilterManager  6: C:\Windows\system32\drivers\fltmgr.sys
                7010       2010-03-16 12:02:25  SYSTEM                          Microsoft-Windows-UserPnp       20010: C:\Windows\system32\umpnpmgr.dll
                        2010-03-16 12:02:26                                  EventLog                        6009: Microsoft (R) Windows (R) 6.01. 7600  Multiprocessor Free.  
                        2010-03-16 12:02:26                                  EventLog                        6005:    .  
                        2010-03-16 12:02:26                                  EventLog                        6013:    21 .  
                        2010-03-16 12:02:26                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:02:26                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:02:27                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:02:27                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:02:28                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:02:28                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:02:28                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:02:28                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:02:28                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:02:28                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:02:28                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:02:28                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:02:28                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:02:28                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:02:28                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:02:28                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:02:28                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                4          2010-03-16 12:02:28  LOCAL SERVICE                   Microsoft-Windows-Dhcp-Client   50036:   DHCPv4   
                4          2010-03-16 12:02:28  LOCAL SERVICE                   Microsoft-Windows-DHCPv6-Client  51046:   DHCPv6   
                        2010-03-16 12:02:29                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:02:30                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:02:31                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:02:32                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:02:33                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:02:33                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:02:33                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:02:34                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:02:34                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:02:34                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:02:34  SYSTEM                          Microsoft-Windows-Application-Experience  201:       .  
                        2010-03-16 12:02:35                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:02:35                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:02:35                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:02:35                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:02:36                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:02:36                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:02:36                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:02:36                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:02:37                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:02:37                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:02:37                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:02:37                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:02:37                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:02:38                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                1101       2010-03-16 12:02:44  SYSTEM                          Microsoft-Windows-Winlogon      7001: C:\Windows\system32\winlogon.exe
                        2010-03-16 12:02:46                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:03:10                                  WMPNetworkSvc                   
                        2010-03-16 12:03:10                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:03:10                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:03:12                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:03:12                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:03:12                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:03:12                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:03:12                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:03:12                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:03:12                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:03:12                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:03:13                                  WMPNetworkSvc                   
                        2010-03-16 12:03:13                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:03:17  SYSTEM                          Service Control Manager         7045: C:\Windows\system32\services.exe
                7005       2010-03-16 12:03:18  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 12:03:19  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                        2010-03-16 12:03:24                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:03:24                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:03:24                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:03:24                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:03:24                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:03:24                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:03:24                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:03:24                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:03:24                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:03:24                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:03:24                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:03:24                                  EventLog                        6006:    .  
                        2010-03-16 12:03:24                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:03:24                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:03:24  AJEKC                           USER32                          1074:  C:\Windows\system32\winlogon.exe (AJEKC-PC)   "restart"   AJEKC-PC    AJEKC-PC\AJEKC  : No title for this reason could be found     : 0x500ff     : restart    :   
                1102       2010-03-16 12:03:24  SYSTEM                          Microsoft-Windows-Winlogon      7002: C:\Windows\system32\winlogon.exe
                4          2010-03-16 12:03:24  LOCAL SERVICE                   Microsoft-Windows-DHCPv6-Client  51047:   DHCPv6 .    : 1  
                4          2010-03-16 12:03:24  LOCAL SERVICE                   Microsoft-Windows-Dhcp-Client   50037:    DHCPv4.    : 1  
                        2010-03-16 12:03:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:03:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:03:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:03:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:03:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                7010       2010-03-16 12:03:25  SYSTEM                          Microsoft-Windows-UserPnp       20010: C:\Windows\system32\umpnpmgr.dll
                        2010-03-16 12:03:26                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:03:26                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:03:26                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:03:26                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:03:26                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                103        2010-03-16 12:03:26                                  Microsoft-Windows-Kernel-Power  109: C:\Windows\system32\microsoft-windows-kernel-power-events.dll
                        2010-03-16 12:03:32                                  Microsoft-Windows-Kernel-General  13:  .  
                        2010-03-16 12:04:14  SYSTEM                          Microsoft-Windows-Kernel-General  12:   .  
                        2010-03-16 12:04:17  SYSTEM                          Microsoft-Windows-FilterManager  6: C:\Windows\system32\drivers\fltmgr.sys
                4          2010-03-16 12:04:24  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 12:04:24  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 12:04:24  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 12:04:24  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 12:04:24  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 12:04:24  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 12:04:24  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 12:04:24  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                        2010-03-16 12:04:32                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:04:32                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:04:32                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:04:32                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:04:32                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:04:32  SYSTEM                          Microsoft-Windows-FilterManager  6: C:\Windows\system32\drivers\fltmgr.sys
                7010       2010-03-16 12:04:32  SYSTEM                          Microsoft-Windows-UserPnp       20010: C:\Windows\system32\umpnpmgr.dll
                        2010-03-16 12:04:33                                  EventLog                        6009: Microsoft (R) Windows (R) 6.01. 7600  Multiprocessor Free.  
                        2010-03-16 12:04:33                                  EventLog                        6005:    .  
                        2010-03-16 12:04:33                                  EventLog                        6013:    19 .  
                        2010-03-16 12:04:33                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:04:33                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:04:34                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:04:34                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:04:34                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:04:34                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:04:34                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:04:34                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:04:35                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:04:35                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:04:35                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:04:35                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:04:35                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:04:35                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:04:35                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:04:35                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:04:35                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                4          2010-03-16 12:04:35  LOCAL SERVICE                   Microsoft-Windows-Dhcp-Client   50036:   DHCPv4   
                4          2010-03-16 12:04:35  LOCAL SERVICE                   Microsoft-Windows-DHCPv6-Client  51046:   DHCPv6   
                        2010-03-16 12:04:36                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:04:37                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:04:38                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:04:38                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:04:39                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:04:39                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:04:39                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:04:40                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:04:40                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:04:40                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:04:40  SYSTEM                          Microsoft-Windows-Application-Experience  201:       .  
                        2010-03-16 12:04:41                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:04:41                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:04:41                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:04:41                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:04:42                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:04:43                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:04:43                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:04:43                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:04:43                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:04:43                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:04:43                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:04:43                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:04:44                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:05:07                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                1101       2010-03-16 12:05:07  SYSTEM                          Microsoft-Windows-Winlogon      7001: C:\Windows\system32\winlogon.exe
                        2010-03-16 12:05:12                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:05:19                                  WMPNetworkSvc                   
                        2010-03-16 12:05:19                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:05:19                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:05:20                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:05:20                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:05:20                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:05:20                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:05:21                                  WMPNetworkSvc                   
                        2010-03-16 12:05:21                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:05:21                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:05:21                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:05:21                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:05:21                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:05:30                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:05:30                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                7005       2010-03-16 12:05:40  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                        2010-03-16 12:05:43                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:05:47  SYSTEM                          Service Control Manager         7045: C:\Windows\system32\services.exe
                7005       2010-03-16 12:05:48  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 12:05:49  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                        2010-03-16 12:06:06  AJEKC                           USER32                          1074:  Explorer.EXE   ""   AJEKC-PC    AJEKC-PC\AJEKC  : Other (Unplanned)     : 0x0     :     :   
                        2010-03-16 12:06:09                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:06:09  AJEKC                           USER32                          1074:  C:\Windows\system32\winlogon.exe (AJEKC-PC)   "restart"   AJEKC-PC    AJEKC-PC\AJEKC  : No title for this reason could be found     : 0x500ff     : restart    :   
                1102       2010-03-16 12:06:09  SYSTEM                          Microsoft-Windows-Winlogon      7002: C:\Windows\system32\winlogon.exe
                        2010-03-16 12:06:10                                  EventLog                        6006:    .  
                        2010-03-16 12:06:10                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:06:10                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:06:10                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:06:10                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:06:10                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:06:10                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:06:10                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:06:10                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:06:10                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:06:10                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:06:10                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:06:10                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:06:10                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:06:10                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:06:10                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:06:10                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:06:10                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:06:10                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:06:10                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                4          2010-03-16 12:06:10  LOCAL SERVICE                   Microsoft-Windows-DHCPv6-Client  51047:   DHCPv6 .    : 1  
                4          2010-03-16 12:06:10  LOCAL SERVICE                   Microsoft-Windows-Dhcp-Client   50037:    DHCPv4.    : 1  
                7010       2010-03-16 12:06:10  SYSTEM                          Microsoft-Windows-UserPnp       20010: C:\Windows\system32\umpnpmgr.dll
                        2010-03-16 12:06:11                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:06:11                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:06:11                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:06:11                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:06:12                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                103        2010-03-16 12:06:12                                  Microsoft-Windows-Kernel-Power  109: C:\Windows\system32\microsoft-windows-kernel-power-events.dll
                        2010-03-16 12:06:17                                  Microsoft-Windows-Kernel-General  13:  .  
                        2010-03-16 12:06:58  SYSTEM                          Microsoft-Windows-Kernel-General  12:   .  
                        2010-03-16 12:07:01  SYSTEM                          Microsoft-Windows-FilterManager  6: C:\Windows\system32\drivers\fltmgr.sys
                4          2010-03-16 12:07:08  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 12:07:08  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 12:07:08  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 12:07:08  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 12:07:08  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 12:07:08  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 12:07:08  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 12:07:08  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                        2010-03-16 12:07:13                                  EventLog                        6009: Microsoft (R) Windows (R) 6.01. 7600  Multiprocessor Free.  
                        2010-03-16 12:07:13                                  EventLog                        6005:    .  
                        2010-03-16 12:07:13                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:07:13                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:07:13                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:07:13                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:07:13                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:07:13  SYSTEM                          Microsoft-Windows-FilterManager  6: C:\Windows\system32\drivers\fltmgr.sys
                7010       2010-03-16 12:07:13  SYSTEM                          Microsoft-Windows-UserPnp       20010: C:\Windows\system32\umpnpmgr.dll
                        2010-03-16 12:07:14                                  EventLog                        6013:    16 .  
                        2010-03-16 12:07:14                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:07:14                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:07:14                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:07:15                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:07:15                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:07:15                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:07:15                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:07:15                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:07:15                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:07:15                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:07:15                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:07:15                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:07:15                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:07:16                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:07:16                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:07:16                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:07:16                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                4          2010-03-16 12:07:16  LOCAL SERVICE                   Microsoft-Windows-Dhcp-Client   50036:   DHCPv4   
                4          2010-03-16 12:07:16  LOCAL SERVICE                   Microsoft-Windows-DHCPv6-Client  51046:   DHCPv6   
                        2010-03-16 12:07:17                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:07:17                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:07:18                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:07:18                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:07:19                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:07:19                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:07:19                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:07:20                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:07:20                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:07:20                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:07:20                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:07:20                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:07:20                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:07:20                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:07:20  SYSTEM                          Microsoft-Windows-Application-Experience  201:       .  
                        2010-03-16 12:07:21                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:07:21                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:07:21                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:07:21                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:07:21                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:07:22                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:07:22                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:07:22                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:07:23                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                7005       2010-03-16 12:07:30  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 12:07:32  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                1101       2010-03-16 12:07:36  SYSTEM                          Microsoft-Windows-Winlogon      7001: C:\Windows\system32\winlogon.exe
                        2010-03-16 12:07:37                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:07:44                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:07:47                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:07:48                                  WMPNetworkSvc                   
                        2010-03-16 12:07:48                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:07:48                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:07:48                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:07:49                                  WMPNetworkSvc                   
                        2010-03-16 12:07:49                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:07:49                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:07:49                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:07:49                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:07:49                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:07:49                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:07:49                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:08:11                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:09:21                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:09:22                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:09:23                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:09:23                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:09:23                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:09:24                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:09:24                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:09:26                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:09:36                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:09:58                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:10:13                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:10:23                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:14:26                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:17:43  SYSTEM                          Microsoft-Windows-Application-Experience  206:          .  
                        2010-03-16 12:20:13  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 12:20:48  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 12:20:49                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:27:44                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:27:47                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                7005       2010-03-16 12:29:21  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 12:29:22  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 12:29:22  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 12:29:22  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 12:29:23  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 12:29:23  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 12:29:23  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 12:29:24  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 12:29:24  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 12:29:24  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 12:29:25  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 12:29:25  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 12:29:26  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 12:29:26  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 12:29:26  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 12:29:27  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 12:29:27  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 12:29:28  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 12:29:29  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 12:29:29  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 12:29:30  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 12:29:30  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 12:29:31  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 12:29:32  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 12:29:32  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                        2010-03-16 12:30:03                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:32:03                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:32:53                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:33:54                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:37:51  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 12:37:53                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:37:53  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 12:40:05                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:41:55  AJEKC                           USER32                          1074:  rundll32.exe   ""   AJEKC-PC    AJEKC-PC\AJEKC  : Other (Unplanned)     : 0x0     :     :   
                        2010-03-16 12:41:56                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:41:58  AJEKC                           USER32                          1074:  C:\Windows\system32\winlogon.exe (AJEKC-PC)   "restart"   AJEKC-PC    AJEKC-PC\AJEKC  : No title for this reason could be found     : 0x500ff     : restart    :   
                1102       2010-03-16 12:41:58  SYSTEM                          Microsoft-Windows-Winlogon      7002: C:\Windows\system32\winlogon.exe
                        2010-03-16 12:41:59                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:41:59                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:41:59                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:41:59                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:41:59                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:41:59                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:41:59                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:41:59                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:41:59                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:41:59                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                1          2010-03-16 12:41:59  SYSTEM                          Microsoft-Windows-WindowsUpdateClient  27: C:\Windows\system32\wuaueng.dll
                4          2010-03-16 12:41:59  LOCAL SERVICE                   Microsoft-Windows-DHCPv6-Client  51047:   DHCPv6 .    : 1  
                4          2010-03-16 12:41:59  LOCAL SERVICE                   Microsoft-Windows-Dhcp-Client   50037:    DHCPv4.    : 1  
                        2010-03-16 12:42:00                                  EventLog                        6006:    .  
                        2010-03-16 12:42:00                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:42:00                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:42:00                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:42:00                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:42:00                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:42:00                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:42:00                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:42:00                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:42:00                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:42:00                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:42:00                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:42:00                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:42:00                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:42:00                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:42:00                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:42:00                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                7010       2010-03-16 12:42:00  SYSTEM                          Microsoft-Windows-UserPnp       20010: C:\Windows\system32\umpnpmgr.dll
                        2010-03-16 12:42:01                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:42:01                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:42:01                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:42:03                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:42:03                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                103        2010-03-16 12:42:03                                  Microsoft-Windows-Kernel-Power  109: C:\Windows\system32\microsoft-windows-kernel-power-events.dll
                        2010-03-16 12:42:06                                  Microsoft-Windows-Kernel-General  13:  .  
                        2010-03-16 12:42:48  SYSTEM                          Microsoft-Windows-Kernel-General  12:   .  
                        2010-03-16 12:42:51  SYSTEM                          Microsoft-Windows-FilterManager  6: C:\Windows\system32\drivers\fltmgr.sys
                4          2010-03-16 12:42:58  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 12:42:58  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 12:42:58  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 12:42:58  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 12:42:58  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 12:42:58  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 12:42:58  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 12:42:58  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                        2010-03-16 12:43:18                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                7010       2010-03-16 12:43:18  SYSTEM                          Microsoft-Windows-UserPnp       20010: C:\Windows\system32\umpnpmgr.dll
                        2010-03-16 12:43:19                                  EventLog                        6009: Microsoft (R) Windows (R) 6.01. 7600  Multiprocessor Free.  
                        2010-03-16 12:43:19                                  EventLog                        6005:    .  
                        2010-03-16 12:43:19                                  EventLog                        6013:    31 .  
                        2010-03-16 12:43:19                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:43:19                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:43:19                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:43:19                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:43:19                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:43:19                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:43:19                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:43:19                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:43:19                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:43:19                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:43:19                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:43:19                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:43:19                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:43:19                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:43:19                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:43:19                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:43:19                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:43:19                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:43:19                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:43:19                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:43:19                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:43:19                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:43:19                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:43:19                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:43:19                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:43:19                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:43:19                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:43:19                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:43:19                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:43:19  SYSTEM                          Microsoft-Windows-FilterManager  6: C:\Windows\system32\drivers\fltmgr.sys
                4          2010-03-16 12:43:19  LOCAL SERVICE                   Microsoft-Windows-Dhcp-Client   50036:   DHCPv4   
                4          2010-03-16 12:43:19  LOCAL SERVICE                   Microsoft-Windows-DHCPv6-Client  51046:   DHCPv6   
                        2010-03-16 12:43:20                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:43:20                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:43:20                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:43:20                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:43:20                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:43:20                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:43:20                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:43:20                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:43:20                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:43:20                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:43:20                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:43:20                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:43:20                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:43:20                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:43:20  SYSTEM                          Microsoft-Windows-Application-Experience  201:       .  
                        2010-03-16 12:43:21                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                1101       2010-03-16 12:43:25  SYSTEM                          Microsoft-Windows-Winlogon      7001: C:\Windows\system32\winlogon.exe
                        2010-03-16 12:43:31                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:43:32                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:43:33                                  WMPNetworkSvc                   
                        2010-03-16 12:43:33                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:43:33                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:43:33                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:43:34                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:43:34                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:43:34                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:43:36                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:43:36                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:43:36                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:43:36                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:43:37                                  WMPNetworkSvc                   
                        2010-03-16 12:43:53                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:43:55                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:45:20                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:45:20                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:45:21                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:45:22                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:45:22                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:45:23                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:45:24                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:45:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:45:45  SYSTEM                          Microsoft-Windows-Application-Experience  206:          .  
                        2010-03-16 12:46:42                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:46:43                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:46:44                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:46:47  SYSTEM                          Service Control Manager         7045: C:\Windows\system32\services.exe
                        2010-03-16 12:46:49                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:46:52                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:46:55                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:47:28                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:47:55                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:48:49                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:49:09                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:50:26                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:51:09                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:51:20                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:51:56                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:58:26                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 12:59:40                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 13:01:47                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 13:09:12  AJEKC                           Service Control Manager         7045: C:\Windows\system32\services.exe
                        2010-03-16 13:09:13                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 13:09:15  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 13:09:16                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 13:09:18                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 13:09:18  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 13:13:42                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 13:14:50                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 13:16:07                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                7005       2010-03-16 13:16:42  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 13:16:42  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                        2010-03-16 13:16:51                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                7005       2010-03-16 13:16:51  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 13:16:51  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 13:16:52  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 13:16:52  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 13:16:52  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                        2010-03-16 13:17:05                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                7005       2010-03-16 13:17:10  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 13:17:10  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 13:17:10  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 13:17:11  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 13:17:11  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 13:17:11  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                        2010-03-16 13:17:36  SYSTEM                          Service Control Manager         7045: C:\Windows\system32\services.exe
                        2010-03-16 13:17:37  SYSTEM                          Service Control Manager         7045: C:\Windows\system32\services.exe
                7005       2010-03-16 13:17:37  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 13:17:37  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 13:17:37  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                        2010-03-16 13:17:38                                  BTHUSB                          18: 
                        2010-03-16 13:17:39                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 13:17:39  SYSTEM                          Service Control Manager         7045: C:\Windows\system32\services.exe
                7005       2010-03-16 13:17:39  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                        2010-03-16 13:17:40  SYSTEM                          Service Control Manager         7045: C:\Windows\system32\services.exe
                7005       2010-03-16 13:17:40  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 13:17:42  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 13:17:42  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                        2010-03-16 13:17:43  SYSTEM                          Service Control Manager         7045: C:\Windows\system32\services.exe
                7005       2010-03-16 13:17:43  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 13:17:44  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 13:17:44  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 13:17:45  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                        2010-03-16 13:21:52                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 13:23:19                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 13:27:38                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 13:27:40  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 13:27:41                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 13:27:41  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 13:32:37                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 13:47:58                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 13:48:03                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 13:48:12                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 13:50:12                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 13:58:40                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 13:58:58                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 13:58:58                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                7005       2010-03-16 13:59:09  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                        2010-03-16 13:59:14                                  volsnap                         33: 
                        2010-03-16 13:59:25  SYSTEM                          Service Control Manager         7045: C:\Windows\system32\services.exe
                        2010-03-16 13:59:26  SYSTEM                          Microsoft-Windows-FilterManager  6: C:\Windows\system32\drivers\fltmgr.sys
                        2010-03-16 13:59:27  SYSTEM                          Service Control Manager         7045: C:\Windows\system32\services.exe
                        2010-03-16 13:59:35  SYSTEM                          Service Control Manager         7045: C:\Windows\system32\services.exe
                        2010-03-16 13:59:39  SYSTEM                          Service Control Manager         7045: C:\Windows\system32\services.exe
                        2010-03-16 13:59:42  SYSTEM                          Service Control Manager         7045: C:\Windows\system32\services.exe
                        2010-03-16 13:59:46  SYSTEM                          Service Control Manager         7045: C:\Windows\system32\services.exe
                        2010-03-16 13:59:55                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 13:59:55                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 13:59:55  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 14:00:01                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 14:02:34                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 14:02:34                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 14:04:34                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 14:05:34                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 14:09:59                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 14:13:33                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 14:14:27                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 14:16:57                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 14:19:24  AJEKC                           USER32                          1074:  Explorer.EXE   " "   AJEKC-PC    AJEKC-PC\AJEKC  : Other (Unplanned)     : 0x0     :      :   
                        2010-03-16 14:19:31  AJEKC                           USER32                          1074:  C:\Windows\system32\winlogon.exe (AJEKC-PC)   "power off"   AJEKC-PC    AJEKC-PC\AJEKC  : No title for this reason could be found     : 0x500ff     : power off    :   
                1102       2010-03-16 14:19:31  SYSTEM                          Microsoft-Windows-Winlogon      7002: C:\Windows\system32\winlogon.exe
                        2010-03-16 14:19:32                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 14:19:32                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                1          2010-03-16 14:19:32  SYSTEM                          Microsoft-Windows-WindowsUpdateClient  27: C:\Windows\system32\wuaueng.dll
                        2010-03-16 14:19:33                                  EventLog                        6006:    .  
                        2010-03-16 14:19:33                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 14:19:33                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 14:19:33                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 14:19:33                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 14:19:33                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 14:19:33                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 14:19:33                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 14:19:33                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 14:19:33                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 14:19:33                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 14:19:33                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 14:19:33                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 14:19:33                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 14:19:33                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 14:19:33                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 14:19:33                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                4          2010-03-16 14:19:33  LOCAL SERVICE                   Microsoft-Windows-DHCPv6-Client  51047:   DHCPv6 .    : 1  
                4          2010-03-16 14:19:33  LOCAL SERVICE                   Microsoft-Windows-Dhcp-Client   50037:    DHCPv4.    : 1  
                7010       2010-03-16 14:19:33  SYSTEM                          Microsoft-Windows-UserPnp       20010: C:\Windows\system32\umpnpmgr.dll
                        2010-03-16 14:19:34                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 14:19:34                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 14:19:34                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 14:19:34                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 14:19:34                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 14:19:34                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 14:19:35                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 14:19:35                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 14:19:35                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 14:19:36                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 14:19:37                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 14:19:37                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                103        2010-03-16 14:19:38                                  Microsoft-Windows-Kernel-Power  109: C:\Windows\system32\microsoft-windows-kernel-power-events.dll
                        2010-03-16 14:19:42                                  Microsoft-Windows-Kernel-General  13:  .  
                        2010-03-16 17:19:24  SYSTEM                          Microsoft-Windows-Kernel-General  12:   .  
                        2010-03-16 17:19:27  SYSTEM                          Microsoft-Windows-FilterManager  6: C:\Windows\system32\drivers\fltmgr.sys
                        2010-03-16 17:19:30  SYSTEM                          Microsoft-Windows-FilterManager  6: C:\Windows\system32\drivers\fltmgr.sys
                4          2010-03-16 17:19:33  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 17:19:33  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 17:19:33  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 17:19:33  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 17:19:33  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 17:19:33  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 17:19:33  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 17:19:33  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                        2010-03-16 17:19:49                                  EventLog                        6009: Microsoft (R) Windows (R) 6.01. 7600  Multiprocessor Free.  
                        2010-03-16 17:19:49                                  EventLog                        6005:    .  
                        2010-03-16 17:19:49                                  EventLog                        6013:    26 .  
                        2010-03-16 17:19:49                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:19:49                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:19:49                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:19:49                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:19:49                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:19:49                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:19:49                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:19:49  SYSTEM                          Microsoft-Windows-FilterManager  6: C:\Windows\system32\drivers\fltmgr.sys
                7010       2010-03-16 17:19:49  SYSTEM                          Microsoft-Windows-UserPnp       20010: C:\Windows\system32\umpnpmgr.dll
                          2010-03-16 17:19:49  SYSTEM                          Microsoft-Windows-Wininit       11:        .      ,  ,      .  
                        2010-03-16 17:19:50                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:19:50                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:19:50                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:19:50                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:19:50                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:19:50                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:19:50                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:19:50                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:19:50                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:19:50                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:19:50                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:19:50                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:19:50                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:19:50                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:19:50                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:19:50                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:19:50                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:19:50                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:19:50                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:19:50                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                4          2010-03-16 17:19:50  LOCAL SERVICE                   Microsoft-Windows-Dhcp-Client   50036:   DHCPv4   
                4          2010-03-16 17:19:50  LOCAL SERVICE                   Microsoft-Windows-DHCPv6-Client  51046:   DHCPv6   
                        2010-03-16 17:19:53                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:19:53                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:19:53                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:19:53                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:19:54                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:19:54                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:19:54                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:19:54                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:19:54                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:19:54                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:19:54                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:19:54                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:19:54  SYSTEM                          Microsoft-Windows-Application-Experience  201:       .  
                        2010-03-16 17:19:57                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:20:01                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:20:01                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:20:01                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:20:01                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:20:01                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:20:01                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:20:02                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:20:02                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:20:02                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:20:02                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:20:02                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                1101       2010-03-16 17:20:20  SYSTEM                          Microsoft-Windows-Winlogon      7001: C:\Windows\system32\winlogon.exe
                        2010-03-16 17:20:27                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:20:29                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:20:32                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:20:40                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:20:41                                  WMPNetworkSvc                   
                        2010-03-16 17:20:41                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:20:44                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:20:44                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:20:44                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:20:44                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:20:44                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:20:47                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:20:47                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:20:47                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:20:50                                  WMPNetworkSvc                   
                        2010-03-16 17:21:06                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:22:01                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:22:02                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:22:02                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:22:03                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:22:03                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:22:05                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:22:21                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:22:53                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:24:17  SYSTEM                          Microsoft-Windows-Application-Experience  206:          .  
                        2010-03-16 17:24:40  AJEKC                           Service Control Manager         7045: C:\Windows\system32\services.exe
                        2010-03-16 17:24:47                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:25:37                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:27:05                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:27:37                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                          2010-03-16 17:30:39  NETWORK SERVICE                 Microsoft-Windows-DNS-Client    1014:     www.newgulliver.ru        DNS.  
                        2010-03-16 17:31:13                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:32:53  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 17:32:54  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 17:32:55                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:34:58                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:40:38                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:50:28  SYSTEM                          Microsoft-Windows-Kernel-General  12:   .  
                        2010-03-16 17:50:42  SYSTEM                          Microsoft-Windows-FilterManager  6: C:\Windows\system32\drivers\fltmgr.sys
                4          2010-03-16 17:50:47  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 17:50:47  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 17:50:47  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 17:50:47  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 17:50:47  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 17:50:47  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 17:50:47  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 17:50:47  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                        2010-03-16 17:51:08                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:51:08                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                7010       2010-03-16 17:51:08  SYSTEM                          Microsoft-Windows-UserPnp       20010: C:\Windows\system32\umpnpmgr.dll
                        2010-03-16 17:51:09                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:51:09                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:51:09                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:51:13  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 17:51:13  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 17:51:14  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 17:51:14  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 17:51:14  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 17:51:14  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 17:51:14  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 17:51:15  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 17:51:15  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 17:51:15  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 17:51:15  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 17:51:16  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 17:51:16  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 17:51:16  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 17:51:16  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 17:51:16  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 17:51:17  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 17:51:17  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 17:51:17  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 17:51:17  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 17:51:17  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 17:51:18  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 17:51:18  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 17:51:18  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 17:51:18  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 17:51:18  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 17:51:19  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 17:51:19  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 17:51:19  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 17:51:19  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 17:51:20  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 17:51:20  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 17:51:20  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 17:51:20  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 17:51:20  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 17:51:21  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 17:51:21  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 17:51:21  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 17:51:21  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 17:51:22                                  EventLog                        6009: Microsoft (R) Windows (R) 6.01. 7600  Multiprocessor Free.  
                        2010-03-16 17:51:22                                  EventLog                        6005:    .  
                        2010-03-16 17:51:22                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:51:22                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:51:22                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:51:22                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:51:22                                  EventLog                        6011: NetBIOS-   DNS-      37L4247E29-32  WIN-2ESMQHP8UKJ.  
                        2010-03-16 17:51:22  SYSTEM                          Microsoft-Windows-FilterManager  6: C:\Windows\system32\drivers\fltmgr.sys
                        2010-03-16 17:51:23                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:51:23                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:51:23                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:51:24                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:51:24                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:51:24                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:51:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:51:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:51:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:51:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:51:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:51:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:51:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:51:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:51:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:51:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                4          2010-03-16 17:51:25  LOCAL SERVICE                   Microsoft-Windows-Dhcp-Client   50036:   DHCPv4   
                4          2010-03-16 17:51:25  LOCAL SERVICE                   Microsoft-Windows-DHCPv6-Client  51046:   DHCPv6   
                        2010-03-16 17:51:26                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:51:26                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:51:27                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:51:27                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:51:27                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:51:27                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:51:27                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:51:27                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:51:27  SYSTEM                          Microsoft-Windows-Application-Experience  201:       .  
                        2010-03-16 17:51:28                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:51:28                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:51:28                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:51:29                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:51:30                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:51:30                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:51:30                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:51:30                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:51:31                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:51:31                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:51:31                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:51:32                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                7005       2010-03-16 17:51:33  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:51:33  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:51:34  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:51:34  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:51:35  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:51:35  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:51:35  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:51:36  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:51:36  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:51:37  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:51:37  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:51:38  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:51:38  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:51:39  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:51:39  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:51:40  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:51:40  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:51:41  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:51:41  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:51:41  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:51:42  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:51:42  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:51:42  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:51:43  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:00  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:01  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:02  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:02  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:02  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:03  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:03  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:04  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:04  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:05  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:05  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:06  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:06  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:06  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:07  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:07  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:07  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:08  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:09  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:10  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:10  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:10  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:11  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:11  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:11  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:11  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:11  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:12  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:12  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:13  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:13  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:13  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:13  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:13  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:14  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:14  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:14  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:15  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:15  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:15  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:16  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:16  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:17  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:17  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:17  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:18  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:18  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:22  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                        2010-03-16 17:52:23                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                7005       2010-03-16 17:52:23  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:23  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:23  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:24  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:24  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:24  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:24  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:25  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:25  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:25  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:26  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:26  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:26  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:27  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:27  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:27  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:27  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:28  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:28  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:28  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:29  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                        2010-03-16 17:52:32                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                7005       2010-03-16 17:52:34  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:34  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:34  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:35  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:35  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:36  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:36  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:37  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:37  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:37  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:38  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:38  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:38  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:39  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:39  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:40  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:40  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                        2010-03-16 17:52:42                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                7005       2010-03-16 17:52:42  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:42  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:43  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:43  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:43  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:44  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:44  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:45  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:47  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:48  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:48  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:48  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:49  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:50  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:50  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:51  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:51  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:51  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:54  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:55  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:55  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:56  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:56  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:56  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                        2010-03-16 17:52:57  SYSTEM                          Service Control Manager         7045: C:\Windows\system32\services.exe
                7005       2010-03-16 17:52:57  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:58  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:58  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:59  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:59  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:52:59  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:00  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:00  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                        2010-03-16 17:53:01                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                7005       2010-03-16 17:53:01  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:01  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:01  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:02  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:02  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:03  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:03  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:04  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:04  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:08  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:09  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:09  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:10  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:10  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:10  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:11  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:11  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:11  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:12  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:12  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:15  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:15  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:16  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:16  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:17  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:19  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:20  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:20  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:21  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:24  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:24  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:25  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:25  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:28  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:29  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                        2010-03-16 17:53:31                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:53:31                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                7005       2010-03-16 17:53:31  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:31  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:31  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                        2010-03-16 17:53:32                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:53:32                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:53:32                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                7005       2010-03-16 17:53:32  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                        2010-03-16 17:53:33                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:53:33  SYSTEM                          Service Control Manager         7045: C:\Windows\system32\services.exe
                7005       2010-03-16 17:53:34  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:34  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:35  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                        2010-03-16 17:53:36  SYSTEM                          Service Control Manager         7045: C:\Windows\system32\services.exe
                7005       2010-03-16 17:53:37  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:38  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:38  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:39  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:39  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:40  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:40  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                        2010-03-16 17:53:43                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                7005       2010-03-16 17:53:44  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:44  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:45  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:45  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                        2010-03-16 17:53:47  SYSTEM                          Service Control Manager         7045: C:\Windows\system32\services.exe
                7005       2010-03-16 17:53:47  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                        2010-03-16 17:53:48  SYSTEM                          Service Control Manager         7045: C:\Windows\system32\services.exe
                7005       2010-03-16 17:53:48  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:48  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                        2010-03-16 17:53:49  SYSTEM                          Service Control Manager         7045: C:\Windows\system32\services.exe
                7005       2010-03-16 17:53:49  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:49  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                        2010-03-16 17:53:50  SYSTEM                          Service Control Manager         7045: C:\Windows\system32\services.exe
                7005       2010-03-16 17:53:50  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:50  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:50  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:51  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:51  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:51  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                        2010-03-16 17:53:52  SYSTEM                          Service Control Manager         7045: C:\Windows\system32\services.exe
                7005       2010-03-16 17:53:52  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:52  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:53  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:56  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:56  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:56  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:57  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:58  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:58  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:53:58  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:54:00  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:54:01  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:54:01  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:54:02  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:54:02  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:54:03  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:54:03  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:54:03  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:54:04  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:54:04  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:54:19  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 17:54:19  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                        2010-03-16 17:54:26                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:54:31                                  HTTP                            
                        2010-03-16 17:54:31                                  HTTP                            
                        2010-03-16 17:54:37                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:54:37                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:54:37  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 17:54:37  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                7010       2010-03-16 17:54:38  SYSTEM                          Microsoft-Windows-UserPnp       20010: C:\Windows\system32\umpnpmgr.dll
                        2010-03-16 17:54:59                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:54:59                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:55:59                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:56:22                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:58:02                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                3000       2010-03-16 17:58:12  SYSTEM                          Microsoft-Windows-Setup         2003: C:\Windows\system32\oobe\winsetup.dll
                4000       2010-03-16 17:58:12  SYSTEM                          Microsoft-Windows-Setup         2004: C:\Windows\system32\oobe\winsetup.dll
                        2010-03-16 17:58:14  SYSTEM                          USER32                          1074:  C:\Windows\system32\winlogon.exe (37L4247E29-32)   "restart"   WIN-2ESMQHP8UKJ    NT AUTHORITY\SYSTEM  : Operating System: Upgrade (Planned)     : 0x80020003     : restart    :   
                        2010-03-16 17:58:15                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:58:15                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:58:15                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:58:15                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:58:16                                  EventLog                        6006:    .  
                        2010-03-16 17:58:16                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:58:16                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:58:16                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:58:16                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:58:16                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:58:16                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:58:16                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:58:16                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:58:16                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:58:16                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:58:16                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:58:16                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:58:16                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:58:16                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:58:16                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:58:16                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:58:16                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:58:16                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:58:16                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:58:16                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                4          2010-03-16 17:58:16  LOCAL SERVICE                   Microsoft-Windows-DHCPv6-Client  51047:   DHCPv6 .    : 1  
                4          2010-03-16 17:58:16  LOCAL SERVICE                   Microsoft-Windows-Dhcp-Client   50037:    DHCPv4.    : 1  
                7010       2010-03-16 17:58:16  SYSTEM                          Microsoft-Windows-UserPnp       20010: C:\Windows\system32\umpnpmgr.dll
                        2010-03-16 17:58:18                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:58:19                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:58:20                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                103        2010-03-16 17:58:20                                  Microsoft-Windows-Kernel-Power  109: C:\Windows\system32\microsoft-windows-kernel-power-events.dll
                        2010-03-16 17:58:23                                  Microsoft-Windows-Kernel-General  13:  .  
                        2010-03-16 17:58:58  SYSTEM                          Microsoft-Windows-Kernel-General  12:   .  
                        2010-03-16 17:59:01  SYSTEM                          Microsoft-Windows-FilterManager  6: C:\Windows\system32\drivers\fltmgr.sys
                        2010-03-16 17:59:02                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:59:04                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                4          2010-03-16 17:59:08  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 17:59:08  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 17:59:08  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 17:59:08  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 17:59:08  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 17:59:08  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 17:59:08  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 17:59:08  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                        2010-03-16 17:59:15                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:59:15                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:59:16                                  Virtual Disk Service            3: C:\Windows\System32\vds.exe
                        2010-03-16 17:59:16                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:59:23                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:59:27                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                7010       2010-03-16 17:59:27  SYSTEM                          Microsoft-Windows-UserPnp       20010: C:\Windows\system32\umpnpmgr.dll
                        2010-03-16 17:59:28                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:59:28                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:59:28                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:59:28                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:59:32                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:59:53                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 17:59:59                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:00:01                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:00:01                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:00:01                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:00:02                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:00:04                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:00:04                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:00:33                                  EventLog                        6011: NetBIOS-   DNS-      WIN-2ESMQHP8UKJ  AJEKC-PC.  
                        2010-03-16 18:00:33                                  EventLog                        6009: Microsoft (R) Windows (R) 6.01. 7600  Multiprocessor Free.  
                        2010-03-16 18:00:33                                  EventLog                        6005:    .  
                        2010-03-16 18:00:33                                  EventLog                        6013:    96 .  
                        2010-03-16 18:00:33                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:00:33                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:00:34                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:00:35                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:00:35                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:00:35                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:00:36                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:00:36                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:00:36                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:00:36                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:00:36  SYSTEM                          Microsoft-Windows-FilterManager  6: C:\Windows\system32\drivers\fltmgr.sys
                        2010-03-16 18:00:38                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:00:38                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:00:38                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:00:38                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:00:38                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:00:38                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:00:38                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:00:38                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:00:38                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                4          2010-03-16 18:00:38  LOCAL SERVICE                   Microsoft-Windows-Dhcp-Client   50036:   DHCPv4   
                4          2010-03-16 18:00:38  LOCAL SERVICE                   Microsoft-Windows-DHCPv6-Client  51046:   DHCPv6   
                        2010-03-16 18:00:39                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:00:39                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:00:39                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:00:39                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:00:39                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:00:39  SYSTEM                          Microsoft-Windows-Application-Experience  201:       .  
                        2010-03-16 18:00:40                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:00:40                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:00:41                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:00:41                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:00:42                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:00:42                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:00:42                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:00:42                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:00:42                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:00:43                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:00:43  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 18:00:45                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:01:52  SYSTEM                          Microsoft-Windows-Kernel-General  1:  .  
                        2010-03-16 18:02:06                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:02:41                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:04:03                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:04:41                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:12:15                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:12:19  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 18:12:30  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 18:12:34                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:15:44                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:19:14                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:19:33                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:19:44                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:20:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:25:27                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                7005       2010-03-16 18:27:36  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                        2010-03-16 18:27:57                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:28:55                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:30:41                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:33:41                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:34:15                                  Virtual Disk Service            4: C:\Windows\System32\vds.exe
                        2010-03-16 18:34:15                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:34:15                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:39:44                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:42:07                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                            2010-03-16 18:43:44                                  Service Control Manager         7030: C:\Windows\system32\services.exe
                        2010-03-16 18:43:44  AJEKC                           Service Control Manager         7045: C:\Windows\system32\services.exe
                            2010-03-16 18:43:45                                  Service Control Manager         7030: C:\Windows\system32\services.exe
                        2010-03-16 18:43:45  AJEKC                           Service Control Manager         7045: C:\Windows\system32\services.exe
                        2010-03-16 18:43:50                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:44:05                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:44:07                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:44:12                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:44:53                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:48:28                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:57:35                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 18:58:45                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:06:31                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:06:35                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:06:36                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:06:43                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:08:36                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:17:48                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:18:38                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:23:01                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:26:12                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:27:03                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:29:42                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:34:41                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:41:12                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:42:20                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:42:21                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                7005       2010-03-16 19:42:41  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                        2010-03-16 19:44:05                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:44:53                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:45:33                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:45:40                                  Virtual Disk Service            3: C:\Windows\System32\vds.exe
                        2010-03-16 19:45:40                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:47:05                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                            2010-03-16 19:47:10  SYSTEM                          Microsoft-Windows-Kernel-General  5:   .  
                        2010-03-16 19:49:26  SYSTEM                          Microsoft-Windows-Kernel-General  12:   .  
                        2010-03-16 19:49:29  SYSTEM                          Microsoft-Windows-FilterManager  6: C:\Windows\system32\drivers\fltmgr.sys
                        2010-03-16 19:49:33  SYSTEM                          Microsoft-Windows-FilterManager  6: C:\Windows\system32\drivers\fltmgr.sys
                63         2010-03-16 19:49:33  SYSTEM                          Microsoft-Windows-Kernel-Power  41: C:\Windows\system32\microsoft-windows-kernel-power-events.dll
                4          2010-03-16 19:49:36  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 19:49:36  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 19:49:36  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 19:49:36  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 19:49:36  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 19:49:36  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 19:49:36  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 19:49:36  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                        2010-03-16 19:49:52                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:49:52                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:49:52                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:49:52                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:49:52                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:49:52  SYSTEM                          Microsoft-Windows-FilterManager  6: C:\Windows\system32\drivers\fltmgr.sys
                7010       2010-03-16 19:49:52  SYSTEM                          Microsoft-Windows-UserPnp       20010: C:\Windows\system32\umpnpmgr.dll
                          2010-03-16 19:49:52  SYSTEM                          Microsoft-Windows-Wininit       11:        .      ,  ,      .  
                            2010-03-16 19:49:53                                  EventLog                        6008:      07:47:31 p.m.  ?16/?03/?2010  .  
                        2010-03-16 19:49:53                                  EventLog                        6009: Microsoft (R) Windows (R) 6.01. 7600  Multiprocessor Free.  
                        2010-03-16 19:49:53                                  EventLog                        6005:    .  
                        2010-03-16 19:49:53                                  EventLog                        6013:    27 .  
                        2010-03-16 19:49:53                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:49:53                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:49:53                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:49:53                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:49:53                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:49:53                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:49:53                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:49:53                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:49:53                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:49:53                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:49:53                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:49:53                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:49:53                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:49:53                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:49:53                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:49:53                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:49:53                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                4          2010-03-16 19:49:53  LOCAL SERVICE                   Microsoft-Windows-Dhcp-Client   50036:   DHCPv4   
                4          2010-03-16 19:49:53  LOCAL SERVICE                   Microsoft-Windows-DHCPv6-Client  51046:   DHCPv6   
                        2010-03-16 19:49:54                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:49:54                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:49:54                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:49:54                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:49:54                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                            2010-03-16 19:49:56                                  BugCheck                        
                        2010-03-16 19:49:57                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:49:57                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:49:57                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:49:57                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                1101       2010-03-16 19:49:58  SYSTEM                          Microsoft-Windows-Winlogon      7001: C:\Windows\system32\winlogon.exe
                        2010-03-16 19:50:01                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:50:02                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:50:02                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:50:02                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:50:02                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:50:02                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:50:02                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:50:02                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:50:02                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:50:02                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:50:02  SYSTEM                          Microsoft-Windows-Application-Experience  201:       .  
                        2010-03-16 19:50:06                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:50:06                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:50:06                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:50:06                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:50:06                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:50:06                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:50:06                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:50:06                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:50:06                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:50:06                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:50:16                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:50:21                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:50:23                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:50:35                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:50:46                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:50:58                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:51:12                                  WMPNetworkSvc                   
                        2010-03-16 19:51:12                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:51:20                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:51:23                                  BugCheck                        
                        2010-03-16 19:51:24                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:51:24                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:51:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:51:26                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:51:27                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:51:27                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:51:28                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:51:29                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:51:32                                  WMPNetworkSvc                   
                        2010-03-16 19:51:49                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                          2010-03-16 19:51:49                                  Tcpip                           4227:   TCP/IP     ,                 .     ,          ,            TCP/IP        .        TCP/IP ,                 .  
                        2010-03-16 19:52:09                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:52:10                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:52:14                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:52:15                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:52:16                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:52:16                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:52:19                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:52:21                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:52:46                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 19:54:03  SYSTEM                          Microsoft-Windows-Application-Experience  206:          .  
                        2010-03-16 19:57:18                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                          2010-03-16 19:57:53                                  Tcpip                           4227:   TCP/IP     ,                 .     ,          ,            TCP/IP        .        TCP/IP ,                 .  
                        2010-03-16 19:58:39                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 20:06:59                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 20:08:06                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 20:08:46                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 20:09:10                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 20:11:55                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                7005       2010-03-16 20:12:00  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 20:12:00  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                7005       2010-03-16 20:12:52  SYSTEM                          Microsoft-Windows-UserPnp       20003: C:\Windows\system32\umpnpmgr.dll
                        2010-03-16 20:12:56                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 20:13:24  SYSTEM                          Service Control Manager         7045: C:\Windows\system32\services.exe
                        2010-03-16 20:13:26                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                7005       2010-03-16 20:13:39  SYSTEM                          Microsoft-Windows-UserPnp       20001: C:\Windows\system32\umpnpmgr.dll
                        2010-03-16 20:13:46                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 20:13:56                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 20:14:01                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 20:15:46                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 20:18:38                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 20:22:32  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 20:22:34                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 20:22:34  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 20:24:04                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 20:29:57                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 20:38:07                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 20:44:41                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:08:12  SYSTEM                          Microsoft-Windows-Kernel-General  12:   .  
                        2010-03-16 21:08:15  SYSTEM                          Microsoft-Windows-FilterManager  6: C:\Windows\system32\drivers\fltmgr.sys
                        2010-03-16 21:08:19  SYSTEM                          Microsoft-Windows-FilterManager  6: C:\Windows\system32\drivers\fltmgr.sys
                4          2010-03-16 21:08:22  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 21:08:22  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 21:08:22  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 21:08:22  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 21:08:22  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 21:08:22  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 21:08:22  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-16 21:08:22  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                        2010-03-16 21:08:36                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:08:36                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:08:36  SYSTEM                          Microsoft-Windows-FilterManager  6: C:\Windows\system32\drivers\fltmgr.sys
                7010       2010-03-16 21:08:36  SYSTEM                          Microsoft-Windows-UserPnp       20010: C:\Windows\system32\umpnpmgr.dll
                            2010-03-16 21:08:38                                  EventLog                        6008:      09:07:34 p.m.  ?16/?03/?2010  .  
                        2010-03-16 21:08:38                                  EventLog                        6009: Microsoft (R) Windows (R) 6.01. 7600  Multiprocessor Free.  
                        2010-03-16 21:08:38                                  EventLog                        6005:    .  
                        2010-03-16 21:08:38                                  EventLog                        6013:    26 .  
                        2010-03-16 21:08:38                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:08:38                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:08:38                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:08:38                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:08:38                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:08:38                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:08:38                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:08:38                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:08:38                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:08:38                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:08:38                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:08:38                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:08:38                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:08:38                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:08:38                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:08:38                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:08:38                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:08:38                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:08:38                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:08:38                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:08:38                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:08:38                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                4          2010-03-16 21:08:38  LOCAL SERVICE                   Microsoft-Windows-Dhcp-Client   50036:   DHCPv4   
                4          2010-03-16 21:08:38  LOCAL SERVICE                   Microsoft-Windows-DHCPv6-Client  51046:   DHCPv6   
                          2010-03-16 21:08:38  SYSTEM                          Microsoft-Windows-Wininit       11:        .      ,  ,      .  
                        2010-03-16 21:08:39                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:08:39                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:08:39                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:08:39                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:08:39                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:08:39                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:08:39                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:08:39                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:08:40                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:08:40                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:08:40                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:08:40                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:08:40                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:08:40                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:08:40                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:08:40                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:08:40                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:08:40  SYSTEM                          Microsoft-Windows-Application-Experience  201:       .  
                        2010-03-16 21:08:41                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:08:47                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:08:47                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:08:47                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:08:47                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:08:47                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:08:47                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:08:48                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:08:48                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:08:57                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:08:58                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:08:58                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:09:16                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:10:39                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:10:47                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:10:49                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:10:50                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:10:51                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:10:52                                  WMPNetworkSvc                   
                        2010-03-16 21:10:52                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:10:52                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:10:53                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:10:54                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:10:55                                  WMPNetworkSvc                   
                        2010-03-16 21:10:58                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:11:01                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:11:48                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:13:43                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:14:43                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                1101       2010-03-16 21:14:46  SYSTEM                          Microsoft-Windows-Winlogon      7001: C:\Windows\system32\winlogon.exe
                        2010-03-16 21:14:57                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:14:59                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:14:59                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:15:00                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:15:01                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:15:01                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:15:01                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:15:11                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:15:11                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:15:17                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:15:28                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                          2010-03-16 21:15:34                                  Tcpip                           4227:   TCP/IP     ,                 .     ,          ,            TCP/IP        .        TCP/IP ,                 .  
                        2010-03-16 21:15:57                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:17:11                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:17:12  SYSTEM                          Microsoft-Windows-Application-Experience  206:          .  
                        2010-03-16 21:19:48                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:21:49  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 21:21:50                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:21:50  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                          2010-03-16 21:24:23                                  Tcpip                           4227:   TCP/IP     ,                 .     ,          ,            TCP/IP        .        TCP/IP ,                 .  
                        2010-03-16 21:27:28                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:29:57                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:43:37                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:44:29                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:47:47                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:48:39                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:51:09                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:59:07                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 21:59:59  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 22:00:00                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 22:00:05                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 22:00:05  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-16 22:01:08                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 22:15:37                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 22:29:30                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 22:40:16                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 22:51:56                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                          2010-03-16 23:01:42  NETWORK SERVICE                 Microsoft-Windows-DNS-Client    1014:     www.avatava.org.ua        DNS.  
                        2010-03-16 23:02:08                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 23:17:46                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 23:18:38                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-16 23:29:15                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                          2010-03-16 23:30:21  NETWORK SERVICE                 Microsoft-Windows-DNS-Client    1014:     ajax.googleapis.com        DNS.  
                          2010-03-17 00:07:17  NETWORK SERVICE                 Microsoft-Windows-DNS-Client    1014:     tracker.ex.ua        DNS.  
                          2010-03-17 00:16:18  NETWORK SERVICE                 Microsoft-Windows-DNS-Client    1014:     bt.rutor.org        DNS.  
                        2010-03-17 00:40:20                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:44:00  SYSTEM                          Microsoft-Windows-Kernel-General  12:   .  
                        2010-03-17 00:44:03  SYSTEM                          Microsoft-Windows-FilterManager  6: C:\Windows\system32\drivers\fltmgr.sys
                        2010-03-17 00:44:07  SYSTEM                          Microsoft-Windows-FilterManager  6: C:\Windows\system32\drivers\fltmgr.sys
                63         2010-03-17 00:44:08  SYSTEM                          Microsoft-Windows-Kernel-Power  41: C:\Windows\system32\microsoft-windows-kernel-power-events.dll
                4          2010-03-17 00:44:11  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-17 00:44:11  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-17 00:44:11  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-17 00:44:11  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-17 00:44:11  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-17 00:44:11  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-17 00:44:11  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-17 00:44:11  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                        2010-03-17 00:44:16                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:44:16                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                7010       2010-03-17 00:44:16  SYSTEM                          Microsoft-Windows-UserPnp       20010: C:\Windows\system32\umpnpmgr.dll
                        2010-03-17 00:44:17  SYSTEM                          Microsoft-Windows-FilterManager  6: C:\Windows\system32\drivers\fltmgr.sys
                            2010-03-17 00:44:20                                  EventLog                        6008:      12:42:20 a.m.  ?17/?03/?2010  .  
                        2010-03-17 00:44:20                                  EventLog                        6009: Microsoft (R) Windows (R) 6.01. 7600  Multiprocessor Free.  
                        2010-03-17 00:44:20                                  EventLog                        6005:    .  
                        2010-03-17 00:44:20                                  EventLog                        6013:    21 .  
                        2010-03-17 00:44:20                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:44:20                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:44:20                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:44:20                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:44:20                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:44:20                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:44:21                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:44:21                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:44:21                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:44:21                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:44:21                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:44:21                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:44:21                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:44:21                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:44:21                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:44:21                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:44:21                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:44:21                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:44:21                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:44:21                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:44:21                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:44:21                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                4          2010-03-17 00:44:21  LOCAL SERVICE                   Microsoft-Windows-Dhcp-Client   50036:   DHCPv4   
                4          2010-03-17 00:44:21  LOCAL SERVICE                   Microsoft-Windows-DHCPv6-Client  51046:   DHCPv6   
                        2010-03-17 00:44:22                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:44:22                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:44:23                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:44:24                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                            2010-03-17 00:44:25                                  BugCheck                        
                        2010-03-17 00:44:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:44:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:44:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                          2010-03-17 00:44:26  SYSTEM                          Microsoft-Windows-Wininit       11:        .      ,  ,      .  
                        2010-03-17 00:44:27                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:44:28                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:44:28                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:44:28  SYSTEM                          Microsoft-Windows-Application-Experience  201:       .  
                        2010-03-17 00:44:29                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:44:29                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:44:29                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:44:29                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:44:29                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:44:29                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:44:30                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:44:31                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                1101       2010-03-17 00:44:57  SYSTEM                          Microsoft-Windows-Winlogon      7001: C:\Windows\system32\winlogon.exe
                        2010-03-17 00:44:58                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:44:59                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:44:59                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:44:59                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:44:59                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:44:59                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:44:59                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:44:59                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:45:00                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:45:02                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:48:05  SYSTEM                          Microsoft-Windows-Kernel-General  12:   .  
                        2010-03-17 00:48:08  SYSTEM                          Microsoft-Windows-FilterManager  6: C:\Windows\system32\drivers\fltmgr.sys
                        2010-03-17 00:48:11  SYSTEM                          Microsoft-Windows-FilterManager  6: C:\Windows\system32\drivers\fltmgr.sys
                63         2010-03-17 00:48:12  SYSTEM                          Microsoft-Windows-Kernel-Power  41: C:\Windows\system32\microsoft-windows-kernel-power-events.dll
                4          2010-03-17 00:48:15  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-17 00:48:15  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-17 00:48:15  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-17 00:48:15  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-17 00:48:15  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-17 00:48:15  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-17 00:48:15  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-17 00:48:15  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                        2010-03-17 00:48:20                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:48:20                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:48:20  SYSTEM                          Microsoft-Windows-FilterManager  6: C:\Windows\system32\drivers\fltmgr.sys
                7010       2010-03-17 00:48:20  SYSTEM                          Microsoft-Windows-UserPnp       20010: C:\Windows\system32\umpnpmgr.dll
                            2010-03-17 00:48:24                                  EventLog                        6008:      12:46:08 a.m.  ?17/?03/?2010  .  
                        2010-03-17 00:48:24                                  EventLog                        6009: Microsoft (R) Windows (R) 6.01. 7600  Multiprocessor Free.  
                        2010-03-17 00:48:24                                  EventLog                        6005:    .  
                        2010-03-17 00:48:24                                  EventLog                        6013:    20 .  
                        2010-03-17 00:48:24                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:48:24                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:48:24                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:48:24                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:48:24                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:48:24                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:48:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:48:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:48:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:48:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:48:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:48:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:48:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:48:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:48:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:48:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:48:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:48:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:48:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:48:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:48:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:48:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:48:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:48:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                4          2010-03-17 00:48:25  LOCAL SERVICE                   Microsoft-Windows-Dhcp-Client   50036:   DHCPv4   
                4          2010-03-17 00:48:25  LOCAL SERVICE                   Microsoft-Windows-DHCPv6-Client  51046:   DHCPv6   
                        2010-03-17 00:48:26                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:48:27                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                            2010-03-17 00:48:29                                  BugCheck                        
                        2010-03-17 00:48:29                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:48:29                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:48:29                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:48:30                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                          2010-03-17 00:48:30  SYSTEM                          Microsoft-Windows-Wininit       11:        .      ,  ,      .  
                        2010-03-17 00:48:31                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:48:32                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:48:32                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:48:32                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:48:32                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:48:32                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:48:32                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:48:32  SYSTEM                          Microsoft-Windows-Application-Experience  201:       .  
                        2010-03-17 00:48:33                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:48:33                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:48:34                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:48:43                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:48:44                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:48:44                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:48:44                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:48:44                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:48:44                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:48:44                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:48:44                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:48:44                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:48:49                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:48:49                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:49:06                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                1101       2010-03-17 00:49:47  SYSTEM                          Microsoft-Windows-Winlogon      7001: C:\Windows\system32\winlogon.exe
                        2010-03-17 00:49:48                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:50:00                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:50:09                                  WMPNetworkSvc                   
                        2010-03-17 00:50:09                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:50:15                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:50:16                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:50:17                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:50:19                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:50:22                                  WMPNetworkSvc                   
                        2010-03-17 00:50:23                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:50:23                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:50:24                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:50:26                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:50:27                                  BugCheck                        
                        2010-03-17 00:50:28                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:50:28                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:50:48                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:50:52                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:50:53  SYSTEM                          Microsoft-Windows-Application-Experience  206:          .  
                          2010-03-17 00:51:23                                  Tcpip                           4227:   TCP/IP     ,                 .     ,          ,            TCP/IP        .        TCP/IP ,                 .  
                        2010-03-17 00:51:27                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:51:39                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:51:48                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:51:49                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:52:15                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:54:50                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:55:38                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:56:45                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 00:59:55                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 01:06:01                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 01:06:49                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 01:09:52                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 01:14:54                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 01:20:40                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 01:28:29                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 01:29:17                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 01:34:18                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                          2010-03-17 02:06:39  NETWORK SERVICE                 Microsoft-Windows-DNS-Client    1014:     tracker.xpear.de        DNS.  
                        2010-03-17 02:45:02                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 02:50:03                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:01:37                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:05:05  SYSTEM                          Microsoft-Windows-Kernel-General  12:   .  
                        2010-03-17 04:05:08  SYSTEM                          Microsoft-Windows-FilterManager  6: C:\Windows\system32\drivers\fltmgr.sys
                        2010-03-17 04:05:12  SYSTEM                          Microsoft-Windows-FilterManager  6: C:\Windows\system32\drivers\fltmgr.sys
                63         2010-03-17 04:05:13  SYSTEM                          Microsoft-Windows-Kernel-Power  41: C:\Windows\system32\microsoft-windows-kernel-power-events.dll
                4          2010-03-17 04:05:16  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-17 04:05:16  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-17 04:05:16  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-17 04:05:16  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-17 04:05:16  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-17 04:05:16  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-17 04:05:16  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-17 04:05:16  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                        2010-03-17 04:05:20                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:05:20                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:05:20  SYSTEM                          Microsoft-Windows-FilterManager  6: C:\Windows\system32\drivers\fltmgr.sys
                7010       2010-03-17 04:05:20  SYSTEM                          Microsoft-Windows-UserPnp       20010: C:\Windows\system32\umpnpmgr.dll
                            2010-03-17 04:05:25                                  EventLog                        6008:      04:03:12 a.m.  ?17/?03/?2010  .  
                        2010-03-17 04:05:25                                  EventLog                        6009: Microsoft (R) Windows (R) 6.01. 7600  Multiprocessor Free.  
                        2010-03-17 04:05:25                                  EventLog                        6005:    .  
                        2010-03-17 04:05:25                                  EventLog                        6013:    20 .  
                        2010-03-17 04:05:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:05:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:05:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:05:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:05:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:05:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:05:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:05:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:05:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:05:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:05:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:05:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:05:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:05:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:05:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:05:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:05:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:05:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:05:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:05:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:05:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                4          2010-03-17 04:05:25  LOCAL SERVICE                   Microsoft-Windows-Dhcp-Client   50036:   DHCPv4   
                4          2010-03-17 04:05:25  LOCAL SERVICE                   Microsoft-Windows-DHCPv6-Client  51046:   DHCPv6   
                        2010-03-17 04:05:26                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:05:26                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:05:26                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:05:26                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:05:27                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                            2010-03-17 04:05:28                                  BugCheck                        
                          2010-03-17 04:05:30  SYSTEM                          Microsoft-Windows-Wininit       11:        .      ,  ,      .  
                        2010-03-17 04:05:32                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:05:32                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:05:32                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:05:32                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:05:33                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:05:34                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:05:34                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:05:34                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:05:34                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:05:34                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:05:34                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:05:34                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:05:34                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:05:34                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:05:34  SYSTEM                          Microsoft-Windows-Application-Experience  201:       .  
                        2010-03-17 04:05:43                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:05:43                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:05:43                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:05:43                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:05:43                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:05:43                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:05:43                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:05:43                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:05:43                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:05:49                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:05:49                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:06:08                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:07:26                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:07:43                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:07:43                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:07:43                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:07:44                                  WMPNetworkSvc                   
                        2010-03-17 04:07:44                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:07:45                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:07:46                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:07:48                                  WMPNetworkSvc                   
                        2010-03-17 04:07:49                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:07:52                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:10:30                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:12:48                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:20:04                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:20:05                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:22:19                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:23:27                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:25:37  SYSTEM                          Microsoft-Windows-Kernel-General  12:   .  
                        2010-03-17 04:25:40  SYSTEM                          Microsoft-Windows-FilterManager  6: C:\Windows\system32\drivers\fltmgr.sys
                        2010-03-17 04:25:45  SYSTEM                          Microsoft-Windows-FilterManager  6: C:\Windows\system32\drivers\fltmgr.sys
                63         2010-03-17 04:25:46  SYSTEM                          Microsoft-Windows-Kernel-Power  41: C:\Windows\system32\microsoft-windows-kernel-power-events.dll
                4          2010-03-17 04:25:48  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-17 04:25:48  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-17 04:25:48  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-17 04:25:48  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-17 04:25:48  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-17 04:25:48  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-17 04:25:48  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-17 04:25:48  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                        2010-03-17 04:25:53                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:25:53                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:25:53  SYSTEM                          Microsoft-Windows-FilterManager  6: C:\Windows\system32\drivers\fltmgr.sys
                7010       2010-03-17 04:25:53  SYSTEM                          Microsoft-Windows-UserPnp       20010: C:\Windows\system32\umpnpmgr.dll
                        2010-03-17 04:25:54                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                            2010-03-17 04:25:55                                  EventLog                        6008:      04:23:58 a.m.  ?17/?03/?2010  .  
                        2010-03-17 04:25:55                                  EventLog                        6009: Microsoft (R) Windows (R) 6.01. 7600  Multiprocessor Free.  
                        2010-03-17 04:25:55                                  EventLog                        6005:    .  
                        2010-03-17 04:25:55                                  EventLog                        6013:    19 .  
                        2010-03-17 04:25:55                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:25:55                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:25:55                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:25:55                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:25:55                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                            2010-03-17 04:25:56                                  BugCheck                        
                        2010-03-17 04:25:56                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:25:56                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:25:57                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:25:57                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:25:57                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:25:57                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:25:57                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:25:57                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:25:57                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:25:57                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:25:57                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:25:57                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:25:57                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:25:57                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:25:57                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:25:57                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:25:57                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                4          2010-03-17 04:25:57  LOCAL SERVICE                   Microsoft-Windows-Dhcp-Client   50036:   DHCPv4   
                4          2010-03-17 04:25:57  LOCAL SERVICE                   Microsoft-Windows-DHCPv6-Client  51046:   DHCPv6   
                        2010-03-17 04:25:58                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:25:58                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:25:59                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:26:00                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:26:00                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:26:00                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:26:01                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:26:01                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:26:01                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:26:01                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:26:02                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:26:02                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:26:02                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:26:02                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:26:02                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:26:02                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:26:02  SYSTEM                          Microsoft-Windows-Application-Experience  201:       .  
                          2010-03-17 04:26:02  SYSTEM                          Microsoft-Windows-Wininit       11:        .      ,  ,      .  
                        2010-03-17 04:26:03                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:26:07                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:26:07                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:26:07                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:26:07                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:26:07                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:26:07                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:26:07                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:26:07                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:26:08                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:26:14                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:26:15                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:26:37                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:28:07                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:28:07                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:28:08                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:28:09                                  WMPNetworkSvc                   
                        2010-03-17 04:28:09                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:28:09                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:28:09                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:28:11                                  WMPNetworkSvc                   
                        2010-03-17 04:28:14                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:28:17                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:31:03                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:31:19                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:33:12                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:40:36                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:40:37                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:42:37                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:44:41  SYSTEM                          Microsoft-Windows-Kernel-General  12:   .  
                        2010-03-17 04:44:44  SYSTEM                          Microsoft-Windows-FilterManager  6: C:\Windows\system32\drivers\fltmgr.sys
                        2010-03-17 04:44:48  SYSTEM                          Microsoft-Windows-FilterManager  6: C:\Windows\system32\drivers\fltmgr.sys
                63         2010-03-17 04:44:48  SYSTEM                          Microsoft-Windows-Kernel-Power  41: C:\Windows\system32\microsoft-windows-kernel-power-events.dll
                4          2010-03-17 04:44:51  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-17 04:44:51  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-17 04:44:51  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-17 04:44:51  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-17 04:44:51  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-17 04:44:51  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-17 04:44:51  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-17 04:44:51  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                        2010-03-17 04:44:56                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:44:56                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:44:56  SYSTEM                          Microsoft-Windows-FilterManager  6: C:\Windows\system32\drivers\fltmgr.sys
                7010       2010-03-17 04:44:56  SYSTEM                          Microsoft-Windows-UserPnp       20010: C:\Windows\system32\umpnpmgr.dll
                        2010-03-17 04:44:57                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:44:57                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                            2010-03-17 04:44:58                                  EventLog                        6008:      04:42:31 a.m.  ?17/?03/?2010  .  
                        2010-03-17 04:44:58                                  EventLog                        6009: Microsoft (R) Windows (R) 6.01. 7600  Multiprocessor Free.  
                        2010-03-17 04:44:58                                  EventLog                        6005:    .  
                        2010-03-17 04:44:58                                  EventLog                        6013:    17 .  
                        2010-03-17 04:44:58                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:44:58                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:44:58                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:44:58                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                            2010-03-17 04:44:59                                  BugCheck                        
                        2010-03-17 04:44:59                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:44:59                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:44:59                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:44:59                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:44:59                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:45:00                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:45:00                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:45:00                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:45:00                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:45:00                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:45:00                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:45:00                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:45:00                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:45:00                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:45:00                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:45:00                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:45:00                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:45:00                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                4          2010-03-17 04:45:00  LOCAL SERVICE                   Microsoft-Windows-Dhcp-Client   50036:   DHCPv4   
                4          2010-03-17 04:45:00  LOCAL SERVICE                   Microsoft-Windows-DHCPv6-Client  51046:   DHCPv6   
                        2010-03-17 04:45:01                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:45:01                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:45:03                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:45:03                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:45:04                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:45:04                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:45:05                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:45:05                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:45:05                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:45:05                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:45:05                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:45:05                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:45:05                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:45:05                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:45:05                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:45:05  SYSTEM                          Microsoft-Windows-Application-Experience  201:       .  
                          2010-03-17 04:45:05  SYSTEM                          Microsoft-Windows-Wininit       11:        .      ,  ,      .  
                        2010-03-17 04:45:06                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:45:10                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:45:10                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:45:10                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:45:10                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:45:10                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:45:10                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:45:10                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:45:10                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:45:10                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:45:14                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:45:14                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:45:40                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:47:10                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:47:11                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:47:11                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:47:13                                  WMPNetworkSvc                   
                        2010-03-17 04:47:13                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:47:13                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:47:14                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:47:15                                  WMPNetworkSvc                   
                        2010-03-17 04:47:17                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:47:20                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:50:06                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:50:23                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:52:15                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:59:39                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 04:59:40                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:01:44                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:09:20  SYSTEM                          Microsoft-Windows-Kernel-General  12:   .  
                        2010-03-17 05:09:23  SYSTEM                          Microsoft-Windows-FilterManager  6: C:\Windows\system32\drivers\fltmgr.sys
                        2010-03-17 05:09:27  SYSTEM                          Microsoft-Windows-FilterManager  6: C:\Windows\system32\drivers\fltmgr.sys
                63         2010-03-17 05:09:28  SYSTEM                          Microsoft-Windows-Kernel-Power  41: C:\Windows\system32\microsoft-windows-kernel-power-events.dll
                4          2010-03-17 05:09:30  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-17 05:09:30  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-17 05:09:30  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-17 05:09:30  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-17 05:09:30  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-17 05:09:30  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-17 05:09:30  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-17 05:09:30  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                        2010-03-17 05:09:35                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:09:35                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:09:35  SYSTEM                          Microsoft-Windows-FilterManager  6: C:\Windows\system32\drivers\fltmgr.sys
                7010       2010-03-17 05:09:35  SYSTEM                          Microsoft-Windows-UserPnp       20010: C:\Windows\system32\umpnpmgr.dll
                        2010-03-17 05:09:36                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:09:36                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                            2010-03-17 05:09:37                                  EventLog                        6008:      05:07:33 a.m.  ?17/?03/?2010  .  
                        2010-03-17 05:09:37                                  EventLog                        6009: Microsoft (R) Windows (R) 6.01. 7600  Multiprocessor Free.  
                        2010-03-17 05:09:37                                  EventLog                        6005:    .  
                        2010-03-17 05:09:37                                  EventLog                        6013:    17 .  
                        2010-03-17 05:09:37                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:09:37                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:09:37                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:09:37                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:09:37                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                            2010-03-17 05:09:38                                  BugCheck                        
                        2010-03-17 05:09:38                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:09:38                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:09:38                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:09:38                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:09:38                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:09:38                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:09:38                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:09:38                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:09:38                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:09:38                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:09:38                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:09:38                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:09:38                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:09:38                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                4          2010-03-17 05:09:38  LOCAL SERVICE                   Microsoft-Windows-Dhcp-Client   50036:   DHCPv4   
                4          2010-03-17 05:09:38  LOCAL SERVICE                   Microsoft-Windows-DHCPv6-Client  51046:   DHCPv6   
                        2010-03-17 05:09:39                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:09:39                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:09:39                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:09:39                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:09:39                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:09:41                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:09:41                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:09:41                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:09:41                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:09:43                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:09:43                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:09:43                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:09:43                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:09:43                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:09:43                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:09:43                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:09:43                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:09:43                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:09:43  SYSTEM                          Microsoft-Windows-Application-Experience  201:       .  
                        2010-03-17 05:09:44                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                          2010-03-17 05:09:44  SYSTEM                          Microsoft-Windows-Wininit       11:        .      ,  ,      .  
                        2010-03-17 05:09:47                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:09:47                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:09:47                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:09:47                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:09:47                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:09:47                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:09:47                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:09:47                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:09:48                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:09:51                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:09:57                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:10:18                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:11:47                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:11:47                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:11:48                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:11:50                                  WMPNetworkSvc                   
                        2010-03-17 05:11:50                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:11:50                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:11:50                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:11:52                                  WMPNetworkSvc                   
                        2010-03-17 05:11:55                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:11:58                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:14:44                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:15:00                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:16:53                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:24:17                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:24:17                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:26:21                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:34:14                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:34:14                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:34:17                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:34:41                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:35:41                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:37:16                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:40:16                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:44:11                                  volsnap                         33: 
                        2010-03-17 05:44:11                                  volsnap                         33: 
                        2010-03-17 05:44:41                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:49:41                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:50:37                                  volsnap                         33: 
                        2010-03-17 05:52:48  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-17 05:52:50                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 05:52:50  SYSTEM                          Service Control Manager         7040: C:\Windows\system32\services.exe
                        2010-03-17 05:57:50                                  volsnap                         33: 
                        2010-03-17 06:06:13                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 08:56:00                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 09:12:30                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:38:11                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                1101       2010-03-17 10:38:13  SYSTEM                          Microsoft-Windows-Winlogon      7001: C:\Windows\system32\winlogon.exe
                        2010-03-17 10:38:14                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:38:15                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:38:24                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:38:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:38:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:38:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:38:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:38:26                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:38:26                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:38:30                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:38:35                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:38:52                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:39:09                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:39:14                                  BugCheck                        
                        2010-03-17 10:40:04                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:42:33  SYSTEM                          Microsoft-Windows-Kernel-General  12:   .  
                        2010-03-17 10:42:36  SYSTEM                          Microsoft-Windows-FilterManager  6: C:\Windows\system32\drivers\fltmgr.sys
                        2010-03-17 10:42:41  SYSTEM                          Microsoft-Windows-FilterManager  6: C:\Windows\system32\drivers\fltmgr.sys
                63         2010-03-17 10:42:41  SYSTEM                          Microsoft-Windows-Kernel-Power  41: C:\Windows\system32\microsoft-windows-kernel-power-events.dll
                4          2010-03-17 10:42:43  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-17 10:42:43  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-17 10:42:43  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-17 10:42:43  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-17 10:42:43  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-17 10:42:43  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-17 10:42:43  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-17 10:42:43  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                        2010-03-17 10:42:47                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:42:47                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:42:47                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:42:47                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:42:47  SYSTEM                          Microsoft-Windows-FilterManager  6: C:\Windows\system32\drivers\fltmgr.sys
                7010       2010-03-17 10:42:47  SYSTEM                          Microsoft-Windows-UserPnp       20010: C:\Windows\system32\umpnpmgr.dll
                            2010-03-17 10:42:49                                  EventLog                        6008:      10:40:28 a.m.  ?17/?03/?2010  .  
                        2010-03-17 10:42:49                                  EventLog                        6009: Microsoft (R) Windows (R) 6.01. 7600  Multiprocessor Free.  
                        2010-03-17 10:42:49                                  EventLog                        6005:    .  
                        2010-03-17 10:42:49                                  EventLog                        6013:    17 .  
                        2010-03-17 10:42:49                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:42:49                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:42:49                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:42:49                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                            2010-03-17 10:42:50                                  BugCheck                        
                        2010-03-17 10:42:50                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:42:50                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:42:50                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:42:50                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:42:50                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:42:50                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:42:50                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:42:50                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:42:50                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:42:50                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:42:50                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:42:51                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:42:51                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:42:51                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:42:51                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:42:51                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                4          2010-03-17 10:42:51  LOCAL SERVICE                   Microsoft-Windows-Dhcp-Client   50036:   DHCPv4   
                4          2010-03-17 10:42:51  LOCAL SERVICE                   Microsoft-Windows-DHCPv6-Client  51046:   DHCPv6   
                        2010-03-17 10:42:52                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:42:52                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:42:52                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:42:52                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:42:53                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:42:53                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:42:53                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:42:54                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:42:54                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:42:54                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:42:55                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:42:55                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:42:55                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:42:55                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:42:55                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:42:55                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:42:55                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:42:55  SYSTEM                          Microsoft-Windows-Application-Experience  201:       .  
                        2010-03-17 10:42:56                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                          2010-03-17 10:42:57  SYSTEM                          Microsoft-Windows-Wininit       11:        .      ,  ,      .  
                        2010-03-17 10:43:20                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:44:23  SYSTEM                          Microsoft-Windows-Kernel-General  12:   .  
                        2010-03-17 10:44:26  SYSTEM                          Microsoft-Windows-FilterManager  6: C:\Windows\system32\drivers\fltmgr.sys
                        2010-03-17 10:44:33  SYSTEM                          Microsoft-Windows-FilterManager  6: C:\Windows\system32\drivers\fltmgr.sys
                63         2010-03-17 10:44:33  SYSTEM                          Microsoft-Windows-Kernel-Power  41: C:\Windows\system32\microsoft-windows-kernel-power-events.dll
                4          2010-03-17 10:44:34  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-17 10:44:34  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-17 10:44:34  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-17 10:44:34  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-17 10:44:34  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-17 10:44:34  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-17 10:44:34  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-17 10:44:34  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                        2010-03-17 10:44:38                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:44:38                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:44:38                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:44:38                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:44:38  SYSTEM                          Microsoft-Windows-FilterManager  6: C:\Windows\system32\drivers\fltmgr.sys
                7010       2010-03-17 10:44:38  SYSTEM                          Microsoft-Windows-UserPnp       20010: C:\Windows\system32\umpnpmgr.dll
                            2010-03-17 10:44:40                                  EventLog                        6008:      10:42:49 a.m.  ?17/?03/?2010  .  
                        2010-03-17 10:44:40                                  EventLog                        6009: Microsoft (R) Windows (R) 6.01. 7600  Multiprocessor Free.  
                        2010-03-17 10:44:40                                  EventLog                        6005:    .  
                        2010-03-17 10:44:40                                  EventLog                        6013:    18 .  
                        2010-03-17 10:44:40                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:44:40                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:44:40                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:44:40                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:44:40                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                            2010-03-17 10:44:41                                  BugCheck                        
                        2010-03-17 10:44:41                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:44:41                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:44:41                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:44:41                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:44:41                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:44:42                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:44:42                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:44:42                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:44:42                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:44:42                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:44:42                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:44:42                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:44:42                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:44:42                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:44:42                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                4          2010-03-17 10:44:42  LOCAL SERVICE                   Microsoft-Windows-Dhcp-Client   50036:   DHCPv4   
                4          2010-03-17 10:44:42  LOCAL SERVICE                   Microsoft-Windows-DHCPv6-Client  51046:   DHCPv6   
                        2010-03-17 10:44:43                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:44:43                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:44:43                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:44:43                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:44:44                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:44:44                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:44:44                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:44:45                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:44:46                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:44:46                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:44:46                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:44:46                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:44:46                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:44:46                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:44:46                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:44:46                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:44:46  SYSTEM                          Microsoft-Windows-Application-Experience  201:       .  
                        2010-03-17 10:44:47                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:44:47                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                          2010-03-17 10:44:48  SYSTEM                          Microsoft-Windows-Wininit       11:        .      ,  ,      .  
                        2010-03-17 10:44:49  SYSTEM                          USER32                          1074:  C:\Windows\system32\winlogon.exe (AJEKC-PC)   "power off"   AJEKC-PC    NT AUTHORITY\SYSTEM  : No title for this reason could be found     : 0x500ff     : power off    :   
                        2010-03-17 10:44:50                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:45:07                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:45:08                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:45:08                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:45:08                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:45:08                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:45:08                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:45:08                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:45:09                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                            2010-03-17 10:45:11                                  Service Control Manager         7024: C:\Windows\system32\services.exe
                            2010-03-17 10:45:11  SYSTEM                          Microsoft-Windows-Bits-Client   16392: C:\Windows\system32\qmgr.dll
                        2010-03-17 10:45:11                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                            2010-03-17 10:45:13                                  BROWSER                         8017:     ,     'LanmanWorkstation'    4294967295.                1                     2                     3                     4                    5                     6                     7                  
                            2010-03-17 10:45:13                                  Service Control Manager         7023: C:\Windows\system32\services.exe
                        2010-03-17 10:45:13                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:45:13                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                103        2010-03-17 10:45:15                                  Microsoft-Windows-Kernel-Power  109: C:\Windows\system32\microsoft-windows-kernel-power-events.dll
                        2010-03-17 10:45:21                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:45:22                                  EventLog                        6006:    .  
                        2010-03-17 10:45:22                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:45:22                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:45:22                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:45:22                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:45:22                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:45:22                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:45:22                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:45:22                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:45:22                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:45:22                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:45:22                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                4          2010-03-17 10:45:22  LOCAL SERVICE                   Microsoft-Windows-DHCPv6-Client  51047:   DHCPv6 .    : 1  
                4          2010-03-17 10:45:22  LOCAL SERVICE                   Microsoft-Windows-Dhcp-Client   50037:    DHCPv4.    : 1  
                        2010-03-17 10:45:23                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:45:23                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:45:23                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:45:23                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:45:23                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:45:23                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:45:23                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:45:23                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                7010       2010-03-17 10:45:23  SYSTEM                          Microsoft-Windows-UserPnp       20010: C:\Windows\system32\umpnpmgr.dll
                        2010-03-17 10:45:24                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:45:33                                  Microsoft-Windows-Kernel-General  13:  .  
                        2010-03-17 10:47:46  SYSTEM                          Microsoft-Windows-Kernel-General  12:   .  
                        2010-03-17 10:47:49  SYSTEM                          Microsoft-Windows-FilterManager  6: C:\Windows\system32\drivers\fltmgr.sys
                        2010-03-17 10:47:53  SYSTEM                          Microsoft-Windows-FilterManager  6: C:\Windows\system32\drivers\fltmgr.sys
                4          2010-03-17 10:47:55  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-17 10:47:55  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-17 10:47:55  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-17 10:47:55  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-17 10:47:55  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-17 10:47:55  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-17 10:47:55  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                4          2010-03-17 10:47:55  SYSTEM                          Microsoft-Windows-Kernel-Processor-Power  26: C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
                        2010-03-17 10:47:59                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:47:59                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:47:59                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:47:59                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:47:59  SYSTEM                          Microsoft-Windows-FilterManager  6: C:\Windows\system32\drivers\fltmgr.sys
                7010       2010-03-17 10:47:59  SYSTEM                          Microsoft-Windows-UserPnp       20010: C:\Windows\system32\umpnpmgr.dll
                        2010-03-17 10:48:00                                  EventLog                        6009: Microsoft (R) Windows (R) 6.01. 7600  Multiprocessor Free.  
                        2010-03-17 10:48:00                                  EventLog                        6005:    .  
                        2010-03-17 10:48:00                                  EventLog                        6013:    14 .  
                        2010-03-17 10:48:00                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:48:00                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:48:00                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:48:00                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:48:00                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:48:00                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:48:01                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:48:01                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:48:01                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:48:01                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:48:01                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:48:01                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:48:01                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:48:01                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:48:01                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:48:01                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:48:01                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                4          2010-03-17 10:48:01  LOCAL SERVICE                   Microsoft-Windows-Dhcp-Client   50036:   DHCPv4   
                        2010-03-17 10:48:02                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:48:02                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:48:02                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:48:02                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                4          2010-03-17 10:48:02  LOCAL SERVICE                   Microsoft-Windows-DHCPv6-Client  51046:   DHCPv6   
                        2010-03-17 10:48:03                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:48:03                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:48:03                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:48:03                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:48:04                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:48:04                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:48:04                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:48:05                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:48:05                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:48:05                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:48:05                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:48:05                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:48:05                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:48:05                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:48:05  SYSTEM                          Microsoft-Windows-Application-Experience  201:       .  
                        2010-03-17 10:48:06                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:48:06                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:48:06                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                          2010-03-17 10:48:09  SYSTEM                          Microsoft-Windows-Wininit       11:        .      ,  ,      .  
                        2010-03-17 10:48:23                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:48:23                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:48:23                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:48:23                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:48:23                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:48:23                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:48:23                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:48:23                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:48:23                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:48:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:48:25                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                1101       2010-03-17 10:48:28  SYSTEM                          Microsoft-Windows-Winlogon      7001: C:\Windows\system32\winlogon.exe
                        2010-03-17 10:48:30                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:48:40                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:48:46                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:48:50                                  WMPNetworkSvc                   
                        2010-03-17 10:48:50                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:48:57                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:49:05                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:49:07                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:49:12                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:49:12                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:49:14                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:49:17                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:49:18                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:49:18                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:49:21                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:49:35                                  WMPNetworkSvc                   
                        2010-03-17 10:49:47                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:50:27                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:50:29                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                          2010-03-17 10:50:30                                  Tcpip                           4227:   TCP/IP     ,                 .     ,          ,            TCP/IP        .        TCP/IP ,                 .  
                        2010-03-17 10:50:39                                  BugCheck                        
                        2010-03-17 10:51:05                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:51:30  SYSTEM                          Microsoft-Windows-Application-Experience  206:          .  
                        2010-03-17 10:51:37                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:52:16                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:53:00                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:54:20                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                            2010-03-17 10:54:52                                  Service Control Manager         7022: C:\Windows\system32\services.exe
                        2010-03-17 10:55:45                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:57:35                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 10:57:38                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 11:00:47                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 11:01:46                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 11:04:55                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 11:06:23                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 11:06:47                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 11:09:55                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 11:15:00                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 11:17:44                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 11:27:52                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 11:28:04                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 11:29:22                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 11:33:18                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 11:43:01                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 11:43:10                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 11:43:19  AJEKC                           Service Control Manager         7045: C:\Windows\system32\services.exe
                        2010-03-17 11:43:49                                  Service Control Manager         7036: C:\Windows\system32\services.exe
                        2010-03-17 11:43:53                                  Service Control Manager         7036: C:\Windows\system32\services.exe


--------[   ]-------------------------------------------------------------------------------------------------------

      :
      Borland Database Engine                           -
      Borland InterBase Client                          -
      Easysoft ODBC-InterBase 6                         -
      Easysoft ODBC-InterBase 7                         -
      Firebird Client                                   -
      Jet Engine                                        4.00.9756.0
      MDAC                                              6.1.7600.16385 (win7_rtm.090713-1255)
      ODBC                                              6.1.7600.16385 (win7_rtm.090713-1255)
      MySQL Connector/ODBC                              -
      Oracle Client                                     -
      PsqlODBC                                          -
      Sybase ASE ODBC                                   -

     :
      Borland InterBase Server                          -
      Firebird Server                                   -
      Microsoft SQL Server                              -
      Microsoft SQL Server Compact Edition              -
      Microsoft SQL Server Express Edition              -
      MySQL Server                                      -
      Oracle Server                                     -
      PostgreSQL Server                                 -
      Sybase SQL Server                                 -


--------[  ODBC ]-----------------------------------------------------------------------------------------------

    Driver da Microsoft para arquivos texto (*.txt; *.csv)      odbcjt32.dll                              *.,*.asc,*.csv,*.tab,*.txt,*.csv
    Driver do Microsoft Access (*.mdb)                          odbcjt32.dll                              *.mdb
    [ TRIAL VERSION ]                                           [ TRIAL VERSION ]   [ TRIAL VERSION ]     [ TRIAL VERSION ]
    Driver do Microsoft Excel(*.xls)                            odbcjt32.dll                              *.xls
    Driver do Microsoft Paradox (*.db )                         odbcjt32.dll                              *.db
    [ TRIAL VERSION ]                                           [ TRIAL VERSION ]   [ TRIAL VERSION ]     [ TRIAL VERSION ]
    Microsoft Access Driver (*.mdb)                             odbcjt32.dll                              *.mdb
    Microsoft Access-Treiber (*.mdb)                            odbcjt32.dll                              *.mdb
    [ TRIAL VERSION ]                                           [ TRIAL VERSION ]   [ TRIAL VERSION ]     [ TRIAL VERSION ]
    Microsoft dBase VFP Driver (*.dbf)                          vfpodbc.dll                               *.dbf,*.cdx,*.idx,*.fpt
    Microsoft dBase-Treiber (*.dbf)                             odbcjt32.dll                              *.dbf,*.ndx,*.mdx
    [ TRIAL VERSION ]                                           [ TRIAL VERSION ]   [ TRIAL VERSION ]     [ TRIAL VERSION ]
    Microsoft Excel-Treiber (*.xls)                             odbcjt32.dll                              *.xls
    Microsoft FoxPro VFP Driver (*.dbf)                         vfpodbc.dll                               *.dbf,*.cdx,*.idx,*.fpt
    [ TRIAL VERSION ]                                           [ TRIAL VERSION ]   [ TRIAL VERSION ]     [ TRIAL VERSION ]
    Microsoft Paradox Driver (*.db )                            odbcjt32.dll                              *.db
    Microsoft Paradox-Treiber (*.db )                           odbcjt32.dll                              *.db
    [ TRIAL VERSION ]                                           [ TRIAL VERSION ]   [ TRIAL VERSION ]     [ TRIAL VERSION ]
    Microsoft Text-Treiber (*.txt; *.csv)                       odbcjt32.dll                              *.,*.asc,*.csv,*.tab,*.txt,*.csv
    Microsoft Visual FoxPro Driver                              vfpodbc.dll                               *.dbf,*.cdx,*.idx,*.fpt
    [ TRIAL VERSION ]                                           [ TRIAL VERSION ]   [ TRIAL VERSION ]     [ TRIAL VERSION ]
    SQL Server                                                  sqlsrv32.dll                              


--------[ Debug - PCI ]-------------------------------------------------------------------------------------------------

    B00 D00 F00:  Intel X58 Chipset - ESI Port [B-2]
                  
      Offset 000:  86 80 05 34  00 00 10 00  12 00 00 06  10 00 00 00 
      Offset 010:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  00 00 00 00  00 00 00 00  00 00 00 00  58 14 00 50 
      Offset 030:  00 00 00 00  60 00 00 00  00 00 00 00  0C 01 00 00 
      Offset 040:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 050:  01 40 D1 FE  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 060:  05 90 02 01  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 090:  10 E0 42 00  20 80 00 00  00 00 00 00  41 3C 39 00 
      Offset 0A0:  00 00 41 30  00 00 00 00  C0 07 00 01  00 00 00 00 
      Offset 0B0:  00 00 00 00  3E 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  01 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  01 00 03 C8  08 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 

    B00 D01 F00:  Intel Tylersburg Chipset - PCI Express Root Port 1 (x4/x2) [B-2]
                  
      Offset 000:  86 80 08 34  07 00 10 00  12 00 04 06  10 00 01 00 
      Offset 010:  00 00 00 00  00 00 00 00  00 01 01 00  70 70 00 00 
      Offset 020:  B0 FD B0 FD  A1 FD A1 FD  00 00 00 00  00 00 00 00 
      Offset 030:  00 00 00 00  40 00 00 00  00 00 00 00  10 01 00 00 
      Offset 040:  0D 60 00 00  58 14 01 50  00 00 00 00  00 00 00 00 
      Offset 050:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 060:  05 90 02 01  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 090:  10 E0 42 00  21 80 00 00  20 00 00 00  42 3C 39 00 
      Offset 0A0:  00 00 01 10  00 00 00 00  C0 03 40 00  00 00 01 00 
      Offset 0B0:  00 00 00 00  3E 00 00 00  09 00 00 00  00 00 00 00 
      Offset 0C0:  01 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  01 00 03 C8  08 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 

    B00 D03 F00:  Intel Tylersburg Chipset - PCI Express Root Port 3 (x16/x8/x4) [B-2]
                  
      Offset 000:  86 80 0A 34  07 00 10 00  12 00 04 06  10 00 01 00 
      Offset 010:  00 00 00 00  00 00 00 00  00 02 02 00  E0 E0 00 00 
      Offset 020:  00 F8 F0 FB  01 D0 F1 DF  00 00 00 00  00 00 00 00 
      Offset 030:  00 00 00 00  40 00 00 00  00 00 00 00  10 01 18 00 
      Offset 040:  0D 60 00 00  58 14 01 50  00 00 00 00  00 00 00 00 
      Offset 050:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 060:  05 90 02 01  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 090:  10 E0 42 00  21 80 00 00  00 00 00 00  02 3D 39 00 
      Offset 0A0:  00 00 02 71  00 00 00 00  C0 03 40 00  00 00 01 00 
      Offset 0B0:  00 00 00 00  3E 00 00 00  09 00 00 00  00 00 00 00 
      Offset 0C0:  02 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  01 00 03 C8  08 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 

    B00 D05 F00:  Intel Tylersburg Chipset - PCI Express Root Port 5 (x8/x4) [B-2]
                  
      Offset 000:  86 80 0C 34  07 00 10 00  12 00 04 06  10 00 01 00 
      Offset 010:  00 00 00 00  00 00 00 00  00 03 03 00  D0 D0 00 00 
      Offset 020:  90 FD 90 FD  21 FD 21 FD  00 00 00 00  00 00 00 00 
      Offset 030:  00 00 00 00  40 00 00 00  00 00 00 00  10 01 00 00 
      Offset 040:  0D 60 00 00  58 14 01 50  00 00 00 00  00 00 00 00 
      Offset 050:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 060:  05 90 02 01  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 090:  10 E0 42 00  21 80 00 00  20 00 00 00  02 3C 39 00 
      Offset 0A0:  00 00 02 10  00 00 00 00  C0 03 40 00  00 00 01 00 
      Offset 0B0:  00 00 00 00  3E 00 00 00  09 00 00 00  00 00 00 00 
      Offset 0C0:  01 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  01 00 03 C8  08 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 

    B00 D07 F00:  Intel Tylersburg Chipset - PCI Express Root Port 7 (x16/x8/x4) [B-2]
                  
      Offset 000:  86 80 0E 34  07 00 10 00  12 00 04 06  10 00 01 00 
      Offset 010:  00 00 00 00  00 00 00 00  00 04 04 00  90 90 00 00 
      Offset 020:  F0 FC F0 FC  E1 FD E1 FD  00 00 00 00  00 00 00 00 
      Offset 030:  00 00 00 00  40 00 00 00  00 00 00 00  10 01 00 00 
      Offset 040:  0D 60 00 00  58 14 01 50  00 00 00 00  00 00 00 00 
      Offset 050:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 060:  05 90 02 01  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 090:  10 E0 42 00  21 80 00 00  20 00 00 00  02 3D 39 00 
      Offset 0A0:  00 00 01 10  00 00 00 00  C0 03 40 00  00 00 01 00 
      Offset 0B0:  00 00 00 00  3E 00 00 00  09 00 00 00  00 00 00 00 
      Offset 0C0:  01 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  01 00 03 C8  08 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 

    B00 D09 F00:  Intel Tylersburg Chipset - PCI Express Root Port 9 (x8/x4) [B-2]
                  
      Offset 000:  86 80 10 34  07 00 10 00  12 00 04 06  10 00 01 00 
      Offset 010:  00 00 00 00  00 00 00 00  00 05 05 00  80 80 00 00 
      Offset 020:  D0 FD D0 FD  C1 FD C1 FD  00 00 00 00  00 00 00 00 
      Offset 030:  00 00 00 00  40 00 00 00  00 00 00 00  10 01 00 00 
      Offset 040:  0D 60 00 00  58 14 01 50  00 00 00 00  00 00 00 00 
      Offset 050:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 060:  05 90 02 01  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 090:  10 E0 42 00  21 80 00 00  20 00 00 00  02 3C 39 00 
      Offset 0A0:  00 00 01 10  00 00 00 00  C0 03 40 00  00 00 01 00 
      Offset 0B0:  00 00 00 00  3E 00 00 00  09 00 00 00  00 00 00 00 
      Offset 0C0:  01 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  01 00 03 C8  08 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 

    B00 D10 F00:  Intel Tylersburg Chipset - CSI Port 0 [B-2]
                  
      Offset 000:  86 80 25 34  00 00 10 00  12 00 00 08  10 00 80 00 
      Offset 010:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 030:  00 00 00 00  50 00 00 00  00 00 00 00  00 00 00 00 
      Offset 040:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 050:  09 00 FF F0  02 00 C0 00  00 68 00 00  39 00 00 00 
      Offset 060:  88 C6 FA 07  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  07 02 00 02  00 20 7E 00  00 10 00 00  00 00 00 00 
      Offset 090:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0A0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 08 96 08  00 00 00 00  00 FC 06 06  00 00 5F 00 
      Offset 0D0:  C5 00 00 00  00 00 D1 00  00 00 00 00  81 04 01 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  64 11 11 11  64 11 11 11 

    B00 D10 F01:  Intel Tylersburg Chipset - CSI Port 0 [B-2]
                  
      Offset 000:  86 80 26 34  00 00 00 00  12 00 00 08  10 00 80 00 
      Offset 010:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 030:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 040:  01 00 00 00  00 00 00 00  00 00 00 00  46 22 40 00 
      Offset 050:  08 00 02 00  00 00 00 00  02 00 00 00  00 00 00 00 
      Offset 060:  00 00 00 00  40 00 00 00  00 00 00 00  02 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  01 00 41 10  04 41 10 04  00 00 00 00  00 00 00 00 
      Offset 090:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0A0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  02 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 00 00 00  02 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  02 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 

    B00 D11 F00:  Intel Tylersburg Chipset - CSI Port 1 [B-2]
                  
      Offset 000:  86 80 27 34  00 00 10 00  12 00 00 08  10 00 80 00 
      Offset 010:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 030:  00 00 00 00  50 00 00 00  00 00 00 00  00 00 00 00 
      Offset 040:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 050:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 060:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 090:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0A0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 

    B00 D11 F01:  Intel Tylersburg Chipset - CSI Port 1 [B-2]
                  
      Offset 000:  86 80 28 34  00 00 00 00  12 00 00 08  10 00 80 00 
      Offset 010:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 030:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 040:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 050:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 060:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 090:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0A0:  40 00 00 00  FF FF FF FF  00 00 00 00  00 00 00 00 
      Offset 0B0:  80 00 00 00  FF FF FF FF  00 00 00 00  00 00 00 00 
      Offset 0C0:  40 00 FF 00  FF FF FF FF  00 00 00 00  00 00 00 00 
      Offset 0D0:  A0 00 00 00  FF FF FF FF  00 00 00 00  00 00 00 00 
      Offset 0E0:  01 00 00 00  16 18 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 

    B00 D13 F00:  Intel Tylersburg Chipset - I/OxAPIC Interrupt Controller [B-2]
                  
      Offset 000:  86 80 2D 34  06 00 10 00  12 20 00 08  10 00 80 00 
      Offset 010:  00 F0 FF FD  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 030:  00 00 00 00  6C 00 00 00  00 00 00 00  00 00 00 00 
      Offset 040:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 050:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 060:  00 00 00 00  00 00 00 00  00 00 00 00  01 00 03 C8 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 090:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0A0:  A8 1F 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 

    B00 D14 F00:  Intel Tylersburg Chipset - System Management Registers [B-2]
                  
      Offset 000:  86 80 2E 34  00 00 10 00  12 00 00 08  10 00 80 00 
      Offset 010:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 030:  00 00 00 00  40 00 00 00  00 00 00 00  00 00 00 00 
      Offset 040:  10 00 92 00  00 80 00 00  00 00 00 00  00 F4 3B 00 
      Offset 050:  00 00 00 10  00 00 00 00  C0 07 00 00  00 00 01 00 
      Offset 060:  00 00 00 00  00 80 00 00  00 00 00 00  00 F4 3B 00 
      Offset 070:  00 00 00 10  00 00 00 00  C0 07 00 00  00 00 00 00 
      Offset 080:  00 00 00 00  00 00 00 00  00 00 FF FF  FF FF 07 00 
      Offset 090:  00 00 00 00  00 00 00 00  48 00 04 00  14 EC 03 00 
      Offset 0A0:  00 00 00 00  00 00 00 00  03 00 F0 CF  00 00 00 00 
      Offset 0B0:  00 00 FF FF  FF FF 07 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 00 FF FF  FF FF 07 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  00 00 00 CC  00 00 00 AC  01 00 00 00  00 00 00 FC 
      Offset 0E0:  FF FF FF FF  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  54 F5 FF 03  00 00 00 00  80 7F 00 00  00 00 00 00 

    B00 D14 F01:  Intel Tylersburg Chipset - Scratchpad/GPIO Registers [B-2]
                  
      Offset 000:  86 80 22 34  00 00 10 00  12 00 00 08  10 00 80 00 
      Offset 010:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 030:  00 00 00 00  40 00 00 00  00 00 00 00  00 00 00 00 
      Offset 040:  10 00 92 00  00 80 00 00  00 00 00 00  00 F4 3B 00 
      Offset 050:  00 00 00 10  00 00 00 00  C0 07 00 00  00 00 01 00 
      Offset 060:  00 00 00 00  00 80 00 00  00 00 00 00  00 F4 3B 00 
      Offset 070:  00 00 00 10  00 00 00 00  C0 07 00 00  00 00 00 00 
      Offset 080:  00 00 00 00  01 0C 14 14  00 00 00 00  00 00 00 00 
      Offset 090:  00 00 00 00  00 00 00 00  1F 0A 01 02  00 00 00 BF 
      Offset 0A0:  00 00 00 00  00 08 90 00  05 00 90 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 D0 FE FF  00 00 00 00 
      Offset 0C0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  01 0C 14 14  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  1F 0A 01 02  00 00 00 BF 

    B00 D14 F02:  Intel Tylersburg Chipset - IOH Control/Status and RAS Registers [B-2]
                  
      Offset 000:  86 80 23 34  00 00 10 00  12 00 00 08  10 00 80 00 
      Offset 010:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 030:  00 00 00 00  40 00 00 00  00 00 00 00  00 00 00 00 
      Offset 040:  10 00 92 00  00 80 00 00  00 00 00 00  00 F4 3B 00 
      Offset 050:  00 00 00 10  00 00 00 00  C0 07 00 00  00 00 01 00 
      Offset 060:  00 00 00 00  00 80 00 00  00 00 00 00  00 F4 3B 00 
      Offset 070:  00 00 00 10  00 00 00 00  C0 07 00 00  00 00 00 00 
      Offset 080:  A4 82 A0 02  50 01 AA AA  A8 00 00 00  65 15 00 00 
      Offset 090:  00 00 00 00  24 00 00 00  04 08 00 00  22 05 00 00 
      Offset 0A0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  01 00 00 00  00 00 00 00  00 00 00 00  00 42 00 00 
      Offset 0D0:  00 00 00 00  00 08 08 92  95 00 A6 35  00 00 10 00 
      Offset 0E0:  40 58 04 00  FB 03 00 00  FF 07 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 

    B00 D15 F00:  Intel Tylersburg Chipset - Trusted Execution Technology Registers [B-2]
                  
      Offset 000:  86 80 2F 34  00 00 00 00  12 20 00 08  10 00 80 00 
      Offset 010:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 030:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 040:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 050:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 060:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 090:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0A0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 

    B00 D1A F00:  Intel 82801JB ICH10 - USB Universal Host Controller
                  
      Offset 000:  86 80 37 3A  05 00 90 02  00 00 03 0C  00 00 80 00 
      Offset 010:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  01 FF 00 00  00 00 00 00  00 00 00 00  58 14 04 50 
      Offset 030:  00 00 00 00  50 00 00 00  00 00 00 00  10 01 00 00 
      Offset 040:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 050:  13 00 06 03  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 060:  10 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 090:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0A0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 2F 00 00  03 00 00 00  00 00 01 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  86 0F 00 00  00 00 00 00 

    B00 D1A F01:  Intel 82801JB ICH10 - USB Universal Host Controller
                  
      Offset 000:  86 80 38 3A  05 00 90 02  00 00 03 0C  00 00 00 00 
      Offset 010:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  01 FE 00 00  00 00 00 00  00 00 00 00  58 14 04 50 
      Offset 030:  00 00 00 00  50 00 00 00  00 00 00 00  15 02 00 00 
      Offset 040:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 050:  13 00 06 03  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 060:  10 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 090:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0A0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 2F 00 00  03 00 00 00  00 00 01 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  86 0F 00 00  00 00 00 00 

    B00 D1A F02:  Intel 82801JB ICH10 - USB Universal Host Controller
                  
      Offset 000:  86 80 39 3A  05 00 90 02  00 00 03 0C  00 00 00 00 
      Offset 010:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  01 FD 00 00  00 00 00 00  00 00 00 00  58 14 04 50 
      Offset 030:  00 00 00 00  50 00 00 00  00 00 00 00  12 03 00 00 
      Offset 040:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 050:  13 00 06 03  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 060:  10 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 090:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0A0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 2F 00 00  03 00 00 00  00 00 01 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  86 0F 00 00  00 00 00 00 

    B00 D1A F07:  Intel 82801JB ICH10 - USB2 Enhanced Host Controller
                  
      Offset 000:  86 80 3C 3A  06 00 90 02  00 20 03 0C  00 00 00 00 
      Offset 010:  00 E0 FF FD  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  00 00 00 00  00 00 00 00  00 00 00 00  58 14 06 50 
      Offset 030:  00 00 00 00  50 00 00 00  00 00 00 00  12 03 00 00 
      Offset 040:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 050:  01 58 C2 C9  00 00 00 00  0A 98 A0 20  00 00 00 00 
      Offset 060:  20 20 FF 01  00 00 00 00  01 00 00 01  00 20 00 C0 
      Offset 070:  00 00 F7 0F  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  00 00 00 00  01 00 00 00  00 00 00 00  00 00 00 00 
      Offset 090:  00 00 00 00  00 00 00 00  13 00 06 03  00 00 00 00 
      Offset 0A0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 AA FF 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  86 85 40 80  86 0F 00 00  0A 13 02 20 

    B00 D1B F00:  Intel 82801JB ICH10 - High Definition Audio Controller
                  
      Offset 000:  86 80 3E 3A  06 00 10 00  00 00 03 04  10 00 00 00 
      Offset 010:  04 80 FF FD  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  00 00 00 00  00 00 00 00  00 00 00 00  58 14 02 A0 
      Offset 030:  00 00 00 00  50 00 00 00  00 00 00 00  16 01 00 00 
      Offset 040:  01 00 00 07  07 00 00 00  00 00 00 00  00 00 00 00 
      Offset 050:  01 60 42 C8  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 060:  05 70 80 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  10 00 91 00  00 00 00 10  00 08 10 00  00 00 00 00 
      Offset 080:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 090:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0A0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 04 00 01  00 00 00 00  31 00 A3 02  00 00 00 00 
      Offset 0D0:  61 00 A3 02  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  86 0F 00 00  00 00 00 00 

    B00 D1C F00:  Intel 82801JB ICH10 - PCI Express Root Port 1
                  
      Offset 000:  86 80 40 3A  07 00 10 00  00 00 04 06  10 00 81 00 
      Offset 010:  00 00 00 00  00 00 00 00  00 06 06 00  C0 C0 00 20 
      Offset 020:  80 FD 80 FD  71 FD 71 FD  00 00 00 00  00 00 00 00 
      Offset 030:  00 00 00 00  40 00 00 00  00 00 00 00  10 01 00 00 
      Offset 040:  10 80 41 01  00 80 00 00  00 00 10 00  11 44 11 01 
      Offset 050:  00 00 01 10  60 05 80 00  00 00 00 00  00 00 00 00 
      Offset 060:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  05 90 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 090:  0D A0 00 00  58 14 01 50  00 00 00 00  00 00 00 00 
      Offset 0A0:  01 00 02 C8  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 00 00 00  00 00 11 08  00 00 00 00 
      Offset 0E0:  00 00 C7 00  06 07 08 00  30 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  86 0F 00 00  00 00 00 00 

    B00 D1C F01:  Intel 82801JB ICH10 - PCI Express Root Port 2
                  
      Offset 000:  86 80 42 3A  07 00 10 00  00 00 04 06  10 00 81 00 
      Offset 010:  00 00 00 00  00 00 00 00  00 07 07 00  B0 B0 00 00 
      Offset 020:  60 FD 60 FD  51 FD 51 FD  00 00 00 00  00 00 00 00 
      Offset 030:  00 00 00 00  40 00 00 00  00 00 00 00  11 02 00 00 
      Offset 040:  10 80 41 01  00 80 00 00  00 00 10 00  11 24 11 02 
      Offset 050:  40 00 11 30  60 05 88 00  00 00 48 01  00 00 00 00 
      Offset 060:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  05 90 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 090:  0D A0 00 00  58 14 01 50  00 00 00 00  00 00 00 00 
      Offset 0A0:  01 00 02 C8  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 00 00 00  00 00 11 08  00 00 00 00 
      Offset 0E0:  00 00 C7 00  06 07 08 00  30 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  86 0F 00 00  00 00 00 00 

    B00 D1C F04:  Intel 82801JB ICH10 - PCI Express Root Port 5
                  
      Offset 000:  86 80 48 3A  07 00 10 00  00 00 04 06  10 00 81 00 
      Offset 010:  00 00 00 00  00 00 00 00  00 08 08 00  A0 A0 00 00 
      Offset 020:  40 FD 40 FD  31 FD 31 FD  00 00 00 00  00 00 00 00 
      Offset 030:  00 00 00 00  40 00 00 00  00 00 00 00  10 01 00 00 
      Offset 040:  10 80 41 01  00 80 00 00  00 00 11 00  11 24 11 05 
      Offset 050:  40 00 11 30  60 05 A0 00  00 00 48 01  00 00 00 00 
      Offset 060:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  05 90 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 090:  0D A0 00 00  58 14 01 50  00 00 00 00  00 00 00 00 
      Offset 0A0:  01 00 02 C8  00 01 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 00 00 00  00 00 11 08  00 00 00 00 
      Offset 0E0:  00 00 C7 00  06 07 08 00  30 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  86 0F 00 00  00 00 00 00 

    B00 D1D F00:  Intel 82801JB ICH10 - USB Universal Host Controller
                  
      Offset 000:  86 80 34 3A  05 00 90 02  00 00 03 0C  00 00 80 00 
      Offset 010:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  01 FC 00 00  00 00 00 00  00 00 00 00  58 14 04 50 
      Offset 030:  00 00 00 00  50 00 00 00  00 00 00 00  17 01 00 00 
      Offset 040:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 050:  13 00 06 03  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 060:  10 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 090:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0A0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 2F 00 00  03 00 00 00  00 00 01 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  86 0F 00 00  00 00 00 00 

    B00 D1D F01:  Intel 82801JB ICH10 - USB Universal Host Controller
                  
      Offset 000:  86 80 35 3A  05 00 90 02  00 00 03 0C  00 00 00 00 
      Offset 010:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  01 FB 00 00  00 00 00 00  00 00 00 00  58 14 04 50 
      Offset 030:  00 00 00 00  50 00 00 00  00 00 00 00  13 02 00 00 
      Offset 040:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 050:  13 00 06 03  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 060:  10 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 090:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0A0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 2F 00 00  03 00 00 00  00 00 01 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  86 0F 00 00  00 00 00 00 

    B00 D1D F02:  Intel 82801JB ICH10 - USB Universal Host Controller
                  
      Offset 000:  86 80 36 3A  05 00 90 02  00 00 03 0C  00 00 00 00 
      Offset 010:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  01 FA 00 00  00 00 00 00  00 00 00 00  58 14 04 50 
      Offset 030:  00 00 00 00  50 00 00 00  00 00 00 00  12 03 00 00 
      Offset 040:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 050:  13 00 06 03  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 060:  10 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 090:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0A0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 2F 00 00  03 00 00 00  00 00 01 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  86 0F 00 00  00 00 00 00 

    B00 D1D F07:  Intel 82801JB ICH10 - USB2 Enhanced Host Controller
                  
      Offset 000:  86 80 3A 3A  06 00 90 02  00 20 03 0C  00 00 00 00 
      Offset 010:  00 D0 FF FD  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  00 00 00 00  00 00 00 00  00 00 00 00  58 14 06 50 
      Offset 030:  00 00 00 00  50 00 00 00  00 00 00 00  17 01 00 00 
      Offset 040:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 050:  01 58 C2 C9  00 00 00 00  0A 98 A0 20  00 00 00 00 
      Offset 060:  20 20 FF 01  00 00 00 00  01 00 00 01  00 20 00 C0 
      Offset 070:  00 00 F7 0F  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  00 00 00 00  01 00 00 00  00 00 00 00  00 00 00 00 
      Offset 090:  00 00 00 00  00 00 00 00  13 00 06 03  00 00 00 00 
      Offset 0A0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 AA FF 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  86 85 40 80  86 0F 00 00  0A 13 02 20 

    B00 D1E F00:  Intel 82801JB I/O Controller Hub 10 (ICH10) [A-0]
                  
      Offset 000:  86 80 4E 24  07 00 10 00  90 01 04 06  00 00 01 00 
      Offset 010:  00 00 00 00  00 00 00 00  00 09 09 20  60 60 80 22 
      Offset 020:  10 FD 10 FD  01 FD 01 FD  00 00 00 00  00 00 00 00 
      Offset 030:  00 00 00 00  50 00 00 00  00 00 00 00  FF 00 00 00 
      Offset 040:  00 00 00 00  00 00 00 00  00 00 00 00  00 12 00 00 
      Offset 050:  0D 00 00 00  58 14 00 50  00 00 00 00  00 00 00 00 
      Offset 060:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 090:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0A0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  86 0F 00 00  00 00 00 00 

    B00 D1F F00:  Intel 82801JB ICH10R - LPC Bridge
                  
      Offset 000:  86 80 16 3A  07 01 10 02  00 00 01 06  00 00 80 00 
      Offset 010:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  00 00 00 00  00 00 00 00  00 00 00 00  58 14 01 50 
      Offset 030:  00 00 00 00  E0 00 00 00  00 00 00 00  00 00 00 00 
      Offset 040:  01 04 00 00  80 00 00 00  81 04 00 00  10 00 00 00 
      Offset 050:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 060:  8C 8A 87 8B  D0 00 00 00  80 89 85 83  F8 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  00 00 08 34  01 08 0C 00  91 02 0C 00  00 00 00 00 
      Offset 090:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0A0:  E0 06 00 00  38 02 00 00  13 1C 0A 24  00 03 00 40 
      Offset 0B0:  00 00 F0 00  00 00 00 00  55 55 55 59  00 00 00 00 
      Offset 0C0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  33 22 11 00  67 45 00 00  80 C0 00 00  08 00 00 00 
      Offset 0E0:  09 00 0C 10  01 00 C4 02  64 02 00 00  00 00 00 00 
      Offset 0F0:  01 C0 D1 FE  00 00 00 00  86 0F 00 00  00 00 00 00 

    B00 D1F F02:  Intel 82801JB ICH10 - 4-port SATA Controller
                  
      Offset 000:  86 80 20 3A  05 00 B0 02  00 8A 01 01  00 00 00 00 
      Offset 010:  01 00 00 00  01 00 00 00  01 00 00 00  01 00 00 00 
      Offset 020:  01 F9 00 00  01 F8 00 00  00 00 00 00  58 14 02 B0 
      Offset 030:  00 00 00 00  70 00 00 00  00 00 00 00  FF 02 00 00 
      Offset 040:  00 80 07 A3  00 00 00 00  04 00 00 01  00 00 00 00 
      Offset 050:  00 00 00 00  00 40 00 00  00 00 00 00  00 00 00 00 
      Offset 060:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  01 B0 03 00  08 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  05 70 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 090:  00 00 0F 82  93 01 80 00  00 00 00 00  00 00 00 00 
      Offset 0A0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  13 00 06 03  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 00 00 00  05 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  86 0F 00 00  00 00 00 00 

    B00 D1F F03:  Intel 82801JB ICH10 - SMBus Controller
                  
      Offset 000:  86 80 30 3A  03 00 80 02  00 00 05 0C  00 00 00 00 
      Offset 010:  04 C0 FF FD  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  01 05 00 00  00 00 00 00  00 00 00 00  58 14 01 50 
      Offset 030:  00 00 00 00  00 00 00 00  00 00 00 00  07 03 00 00 
      Offset 040:  01 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 050:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 060:  03 04 04 00  00 00 08 08  00 00 00 00  00 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  04 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 090:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0A0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  86 0F 00 00  00 00 00 00 

    B00 D1F F05:  Intel 82801JB ICH10 - 2-port SATA Controller
                  
      Offset 000:  86 80 26 3A  05 00 B0 02  00 85 01 01  00 00 00 00 
      Offset 010:  01 F6 00 00  01 F5 00 00  01 F4 00 00  01 F3 00 00 
      Offset 020:  01 F2 00 00  01 F1 00 00  00 00 00 00  58 14 02 B0 
      Offset 030:  00 00 00 00  70 00 00 00  00 00 00 00  13 02 00 00 
      Offset 040:  00 80 00 80  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 050:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 060:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  01 B0 03 00  08 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  05 70 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 090:  00 00 03 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0A0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  13 00 06 03  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  86 0F 00 00  00 00 00 00 

    B02 D00 F00:  Asus EN9800GT Video Adapter
                  
      Offset 000:  DE 10 05 06  07 00 10 00  A2 00 00 03  10 00 00 00 
      Offset 010:  00 00 00 FA  0C 00 00 D0  00 00 00 00  04 00 00 F8 
      Offset 020:  00 00 00 00  01 EF 00 00  00 00 00 00  43 10 A0 82 
      Offset 030:  00 00 00 00  60 00 00 00  00 00 00 00  10 01 00 00 
      Offset 040:  43 10 A0 82  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 050:  01 00 00 00  01 00 00 00  CE D6 23 00  00 00 00 00 
      Offset 060:  01 68 03 00  08 00 00 00  05 78 80 00  00 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  10 00 02 00  E0 84 00 00 
      Offset 080:  10 29 00 00  02 2D 00 00  08 00 02 11  00 00 00 00 
      Offset 090:  00 00 00 00  00 00 00 00  00 00 00 00  10 00 00 00 
      Offset 0A0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 

    B07 D00 F00:  Gigabyte GBB363 SATA-II RAID Controller
                  
      Offset 000:  7B 19 63 23  07 00 10 00  02 85 01 01  10 00 00 00 
      Offset 010:  01 BF 00 00  01 BE 00 00  01 BD 00 00  01 BC 00 00 
      Offset 020:  01 BB 00 00  00 E0 6F FD  00 00 00 00  58 14 00 B0 
      Offset 030:  00 00 00 00  68 00 00 00  00 00 00 00  11 01 00 00 
      Offset 040:  B1 A1 C0 00  C8 08 FF E0  20 00 00 24  00 00 00 00 
      Offset 050:  10 00 11 02  00 00 00 00  00 20 00 00  11 F4 03 01 
      Offset 060:  00 00 11 10  00 00 00 00  01 50 02 40  00 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  08 08 A0 00  A0 01 0A 00  0F AA 0F 00  00 00 00 00 
      Offset 090:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0A0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  C3 8B 38 00  03 45 02 00  9C 34 27 C0  49 92 00 00 
      Offset 0D0:  18 00 80 80  01 00 00 00  00 00 EB 00  00 00 00 01 
      Offset 0E0:  00 00 00 00  00 00 00 00  9C 34 27 C0  49 92 00 89 
      Offset 0F0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 

    B08 D00 F00:  Realtek RTL8168D/8111D PCI-E Gigabit Ethernet Adapter
                  
      Offset 000:  EC 10 68 81  07 04 10 00  03 00 00 02  10 00 00 00 
      Offset 010:  01 AE 00 00  00 00 00 00  0C F0 3F FD  00 00 00 00 
      Offset 020:  0C 80 3F FD  00 00 00 00  00 00 00 00  58 14 00 E0 
      Offset 030:  00 00 00 00  40 00 00 00  00 00 00 00  00 01 00 00 
      Offset 040:  01 50 C3 FF  08 01 00 00  00 00 00 00  00 00 00 00 
      Offset 050:  05 70 80 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 060:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  10 AC 02 02  C1 8C 28 00  10 50 10 00  11 3C 07 00 
      Offset 080:  00 00 11 10  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 090:  00 00 00 00  10 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0A0:  00 00 00 00  00 00 00 00  00 00 00 00  11 CC 03 80 
      Offset 0B0:  04 00 00 00  04 08 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 00 00 00  00 00 00 00  00 00 00 00  03 00 00 00 
      Offset 0D0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 

    B09 D06 F00:  Texas Instruments TSB43AB23 1394A-2000 OHCI PHY/Link-Layer Controller
                  
      Offset 000:  4C 10 24 80  06 00 10 02  00 10 00 0C  10 20 00 00 
      Offset 010:  00 F0 1F FD  00 80 1F FD  00 00 00 00  00 00 00 00 
      Offset 020:  00 00 00 00  00 00 00 00  00 00 00 00  58 14 00 10 
      Offset 030:  00 00 00 00  44 00 00 00  00 00 00 00  12 01 02 04 
      Offset 040:  00 00 00 00  01 00 02 7E  00 80 00 00  00 00 00 00 
      Offset 050:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 060:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 090:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0A0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  08 00 00 00 
      Offset 0F0:  10 00 00 00  86 10 00 00  58 14 00 10  00 00 00 00 

    BFF D00 F00:  Intel QuickPath Architecture - Generic Non-Core Registers
                  
      Offset 000:  86 80 41 2C  06 00 00 00  04 00 00 06  00 00 80 00 
      Offset 010:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  00 00 00 00  00 00 00 00  00 00 00 00  58 14 00 50 
      Offset 030:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 040:  20 00 00 00  00 00 00 00  20 00 00 00  00 00 00 00 
      Offset 050:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 060:  20 00 20 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  00 00 00 00  00 00 00 00  02 00 00 00  00 00 00 00 
      Offset 090:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0A0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  10 10 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 

    BFF D00 F01:  Intel QuickPath Architecture - System Address Decoder (SAD)
                  
      Offset 000:  86 80 01 2C  06 00 00 00  04 00 00 06  00 00 80 00 
      Offset 010:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  00 00 00 00  00 00 00 00  00 00 00 00  58 14 00 50 
      Offset 030:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 040:  10 11 11 00  00 00 00 00  00 00 00 00  00 0A 00 00 
      Offset 050:  01 00 00 E0  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 060:  00 00 10 60  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  C3 0C 00 00  C0 0F 00 00  C3 1A 00 00  C0 1A 00 00 
      Offset 090:  C0 1A 00 00  C0 1A 00 00  C0 1A 00 00  C0 1A 00 00 
      Offset 0A0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  11 11 11 11  00 00 00 00  11 11 11 11  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 

    BFF D02 F00:  Intel QuickPath Interconnect - QPI Link 0 Control
                  
      Offset 000:  86 80 10 2C  06 00 00 00  04 00 00 06  00 00 80 00 
      Offset 010:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  00 00 00 00  00 00 00 00  00 00 00 00  58 14 00 50 
      Offset 030:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 040:  00 01 8F 08  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 050:  00 00 00 86  00 00 00 00  55 45 06 00  00 00 00 00 
      Offset 060:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  B6 EB 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 090:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0A0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 00 7F 00  86 02 00 00  00 00 00 B3  00 00 00 00 
      Offset 0D0:  01 07 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 

    BFF D02 F01:  Intel QuickPath Interconnect - QPI Physical 0 Control
                  
      Offset 000:  86 80 11 2C  06 00 00 00  04 00 00 06  00 00 80 00 
      Offset 010:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  00 00 00 00  00 00 00 00  00 00 00 00  58 14 00 50 
      Offset 030:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 040:  09 00 FF F0  01 00 80 0B  00 00 10 00  73 02 00 00 
      Offset 050:  12 01 0C 7E  12 00 00 00  01 00 00 00  01 00 00 00 
      Offset 060:  00 00 00 00  00 00 00 00  00 51 C3 10  A0 A0 40 00 
      Offset 070:  00 00 00 00  FF FF 0F 80  00 00 00 00  FF FF 0F 00 
      Offset 080:  03 0F 0F 07  00 00 00 00  01 00 00 00  01 00 0F 0F 
      Offset 090:  02 00 00 00  02 02 01 00  08 08 88 08  02 05 00 00 
      Offset 0A0:  00 70 01 00  08 28 32 00  84 00 00 06  02 00 00 00 
      Offset 0B0:  77 15 AE 4D  00 00 00 00  00 00 00 00  01 00 00 00 
      Offset 0C0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  00 00 11 04  00 00 00 00  00 00 00 00  03 00 08 00 
      Offset 0E0:  00 00 02 00  00 00 40 00  00 00 82 24  00 00 00 00 
      Offset 0F0:  00 00 00 00  42 01 00 00  00 00 00 00  00 00 00 00 

    BFF D03 F00:  Intel IMC Registers
                  
      Offset 000:  86 80 18 2C  06 00 00 00  04 00 00 06  00 00 80 00 
      Offset 010:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  00 00 00 00  00 00 00 00  00 00 00 00  58 14 00 50 
      Offset 030:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 040:  00 00 00 00  00 00 00 00  40 07 00 00  08 00 00 00 
      Offset 050:  00 00 00 00  FF 00 00 00  00 00 00 00  00 00 00 00 
      Offset 060:  89 44 02 00  94 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  0E 00 00 00  00 00 00 00  00 00 00 00  00 08 00 00 
      Offset 080:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 090:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0A0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 

    BFF D03 F01:  Intel IMC Target Address Decoder
                  
      Offset 000:  86 80 19 2C  06 00 00 00  04 00 00 06  00 00 80 00 
      Offset 010:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  00 00 00 00  00 00 00 00  00 00 00 00  58 14 00 50 
      Offset 030:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 040:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 050:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 060:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  85 0C 00 00  C3 0C 00 00  C0 0F 00 00  45 1A 00 00 
      Offset 090:  C3 1A 00 00  C0 1A 00 00  C0 1A 00 00  C0 1A 00 00 
      Offset 0A0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  10 02 10 02  22 22 22 22  00 00 00 00  10 02 10 02 
      Offset 0D0:  01 01 01 01  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 

    BFF D03 F04:  Intel IMC Test Registers
                  
      Offset 000:  86 80 1C 2C  06 00 00 00  04 00 00 06  00 00 80 00 
      Offset 010:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  00 00 00 00  00 00 00 00  00 00 00 00  58 14 00 50 
      Offset 030:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 040:  09 00 FF F0  01 00 80 0B  03 10 10 04  E7 00 01 03 
      Offset 050:  08 00 00 1E  08 00 00 00  15 00 00 00  01 00 00 00 
      Offset 060:  00 00 00 00  00 00 00 00  00 00 40 00  00 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 090:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0A0:  00 00 00 00  00 00 00 00  0E 00 00 00  00 00 00 00 
      Offset 0B0:  EF CD AB 89  00 00 00 00  00 00 00 00  01 00 00 00 
      Offset 0C0:  00 00 00 00  00 00 00 00  00 00 40 00  00 00 00 00 
      Offset 0D0:  0F 00 11 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  09 0A 00 00  00 00 00 00 

    BFF D04 F00:  Intel IMC Channel 0 Control Registers
                  
      Offset 000:  86 80 20 2C  06 00 00 00  04 00 00 06  00 00 80 00 
      Offset 010:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  00 00 00 00  00 00 00 00  00 00 00 00  58 14 00 50 
      Offset 030:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 040:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 050:  00 00 00 00  00 00 00 00  31 7C 3F 06  40 01 00 00 
      Offset 060:  D0 18 90 00  00 00 00 00  01 00 00 00  0C 00 00 00 
      Offset 070:  28 19 42 08  48 04 00 00  00 00 00 00  03 00 00 00 
      Offset 080:  58 33 23 1B  10 B5 00 00  36 CD 24 00  3C FA E3 01 
      Offset 090:  23 02 90 32  90 1A 40 60  F0 3D 01 00  50 50 A1 03 
      Offset 0A0:  00 00 00 00  00 00 01 01  04 04 01 01  01 02 05 09 
      Offset 0B0:  05 06 05 09  FF FF AF 0D  C0 11 00 00  40 10 00 00 
      Offset 0C0:  10 04 08 00  04 01 02 00  10 08 07 00  00 08 00 00 
      Offset 0D0:  0F 0F 00 00  2B 00 00 00  03 20 00 00  00 00 00 00 
      Offset 0E0:  10 04 00 00  00 01 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 

    BFF D04 F01:  Intel IMC Channel 0 Address Registers
                  
      Offset 000:  86 80 21 2C  06 00 00 00  04 00 00 06  00 00 80 00 
      Offset 010:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  00 00 00 00  00 00 00 00  00 00 00 00  58 14 00 50 
      Offset 030:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 040:  00 00 00 00  00 00 00 00  A8 02 00 00  00 10 00 00 
      Offset 050:  00 10 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 060:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  00 00 00 08  00 00 00 00  00 00 00 00  00 CC FF 08 
      Offset 090:  00 50 FF 01  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0A0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 

    BFF D04 F02:  Intel IMC Channel 0 Rank Registers
                  
      Offset 000:  86 80 22 2C  06 00 00 00  04 00 00 06  00 00 80 00 
      Offset 010:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  00 00 00 00  00 00 00 00  00 00 00 00  58 14 00 50 
      Offset 030:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 040:  07 00 00 00  07 00 00 00  07 00 00 00  07 00 00 00 
      Offset 050:  07 00 00 00  07 00 00 00  07 00 00 00  07 00 00 00 
      Offset 060:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  00 00 00 00  01 00 00 00  00 00 00 00  01 00 00 00 
      Offset 090:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0A0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 

    BFF D04 F03:  Intel IMC Channel 0 Thermal Control
                  
      Offset 000:  86 80 23 2C  06 00 00 00  04 00 00 06  00 00 80 00 
      Offset 010:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  00 00 00 00  00 00 00 00  00 00 00 00  58 14 00 50 
      Offset 030:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 040:  00 00 00 00  00 00 00 00  04 00 00 00  00 00 00 00 
      Offset 050:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 060:  00 00 00 00  00 01 FF 04  00 00 00 00  00 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  FF FF FF FF  00 40 00 00  00 00 00 00  00 00 00 00 
      Offset 090:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0A0:  00 00 00 00  01 00 00 00  01 00 00 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 

    BFF D05 F00:  Intel IMC Channel 1 Control Registers
                  
      Offset 000:  86 80 28 2C  06 00 00 00  04 00 00 06  00 00 80 00 
      Offset 010:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  00 00 00 00  00 00 00 00  00 00 00 00  58 14 00 50 
      Offset 030:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 040:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 050:  00 00 00 00  00 00 00 00  31 7C 3F 06  40 01 00 00 
      Offset 060:  D0 18 90 00  00 00 00 00  01 00 00 00  0C 00 00 00 
      Offset 070:  28 19 42 08  48 04 00 00  00 00 00 00  03 00 00 00 
      Offset 080:  58 33 23 1B  10 B5 00 00  36 CD 24 00  3C FA E3 01 
      Offset 090:  23 02 90 32  90 1A 40 60  F0 3D 01 00  50 50 A1 03 
      Offset 0A0:  00 00 00 00  00 00 01 01  04 04 01 01  01 02 05 09 
      Offset 0B0:  05 06 05 09  FF FF AF 0D  C0 11 00 00  40 10 00 00 
      Offset 0C0:  10 04 08 00  04 01 02 00  10 08 07 00  00 08 00 00 
      Offset 0D0:  0F 0F 00 00  2D 00 00 00  03 20 00 00  00 00 00 00 
      Offset 0E0:  10 04 00 00  00 01 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 

    BFF D05 F01:  Intel IMC Channel 1 Address Registers
                  
      Offset 000:  86 80 29 2C  06 00 00 00  04 00 00 06  00 00 80 00 
      Offset 010:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  00 00 00 00  00 00 00 00  00 00 00 00  58 14 00 50 
      Offset 030:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 040:  00 00 00 00  00 00 00 00  A8 02 00 00  00 10 00 00 
      Offset 050:  00 10 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 060:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  00 00 00 08  00 00 00 00  00 00 00 00  00 CC FF 08 
      Offset 090:  00 50 FF 01  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0A0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 

    BFF D05 F02:  Intel IMC Channel 1 Rank Registers
                  
      Offset 000:  86 80 2A 2C  06 00 00 00  04 00 00 06  00 00 80 00 
      Offset 010:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  00 00 00 00  00 00 00 00  00 00 00 00  58 14 00 50 
      Offset 030:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 040:  07 00 00 00  07 00 00 00  07 00 00 00  07 00 00 00 
      Offset 050:  07 00 00 00  07 00 00 00  07 00 00 00  07 00 00 00 
      Offset 060:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  00 00 00 00  01 00 00 00  00 00 00 00  01 00 00 00 
      Offset 090:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0A0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 

    BFF D05 F03:  Intel IMC Channel 1 Thermal Control
                  
      Offset 000:  86 80 2B 2C  06 00 00 00  04 00 00 06  00 00 80 00 
      Offset 010:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  00 00 00 00  00 00 00 00  00 00 00 00  58 14 00 50 
      Offset 030:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 040:  00 00 00 00  00 00 00 00  04 00 00 00  00 00 00 00 
      Offset 050:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 060:  00 00 00 00  00 01 FF 04  00 00 00 00  00 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  FF FF FF FF  00 40 00 00  00 00 00 00  00 00 00 00 
      Offset 090:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0A0:  00 00 00 00  01 00 00 00  01 00 00 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 

    BFF D06 F00:  Intel IMC Channel 2 Control Registers
                  
      Offset 000:  86 80 30 2C  06 00 00 00  04 00 00 06  00 00 80 00 
      Offset 010:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  00 00 00 00  00 00 00 00  00 00 00 00  58 14 00 50 
      Offset 030:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 040:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 050:  00 00 00 00  00 00 00 00  31 7C 3F 06  40 01 00 00 
      Offset 060:  D0 18 90 00  00 00 00 00  01 00 00 00  0C 00 00 00 
      Offset 070:  28 19 42 08  48 04 00 00  00 00 00 00  03 00 00 00 
      Offset 080:  58 33 23 1B  10 B5 00 00  36 CD 24 00  3C FA E3 01 
      Offset 090:  23 02 90 32  90 1A 40 60  F0 3D 01 00  50 50 A1 03 
      Offset 0A0:  00 00 00 00  00 00 01 01  04 04 01 01  01 02 05 09 
      Offset 0B0:  05 06 05 09  FF FF AF 0D  C0 11 00 00  40 10 00 00 
      Offset 0C0:  10 04 08 00  04 01 02 00  10 08 07 00  00 08 00 00 
      Offset 0D0:  0F 0F 00 00  2D 00 00 00  03 20 00 00  00 00 00 00 
      Offset 0E0:  10 04 00 00  00 01 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 

    BFF D06 F01:  Intel IMC Channel 2 Address Registers
                  
      Offset 000:  86 80 31 2C  06 00 00 00  04 00 00 06  00 00 80 00 
      Offset 010:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  00 00 00 00  00 00 00 00  00 00 00 00  58 14 00 50 
      Offset 030:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 040:  00 00 00 00  00 00 00 00  A8 02 00 00  00 10 00 00 
      Offset 050:  00 10 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 060:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  00 00 00 08  00 78 FF 00  00 00 00 00  00 D8 FF 08 
      Offset 090:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0A0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 

    BFF D06 F02:  Intel IMC Channel 2 Rank Registers
                  
      Offset 000:  86 80 32 2C  06 00 00 00  04 00 00 06  00 00 80 00 
      Offset 010:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  00 00 00 00  00 00 00 00  00 00 00 00  58 14 00 50 
      Offset 030:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 040:  07 00 00 00  07 00 00 00  07 00 00 00  07 00 00 00 
      Offset 050:  07 00 00 00  07 00 00 00  07 00 00 00  07 00 00 00 
      Offset 060:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  00 00 00 00  01 00 00 00  00 00 00 00  01 00 00 00 
      Offset 090:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0A0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 

    BFF D06 F03:  Intel IMC Channel 2 Thermal Control
                  
      Offset 000:  86 80 33 2C  06 00 00 00  04 00 00 06  00 00 80 00 
      Offset 010:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 020:  00 00 00 00  00 00 00 00  00 00 00 00  58 14 00 50 
      Offset 030:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 040:  00 00 00 00  00 00 00 00  04 00 00 00  00 00 00 00 
      Offset 050:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 060:  00 00 00 00  00 01 FF 04  00 00 00 00  00 00 00 00 
      Offset 070:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 080:  FF FF FF FF  00 40 00 00  00 00 00 00  00 00 00 00 
      Offset 090:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0A0:  00 00 00 00  01 00 00 00  01 00 00 00  00 00 00 00 
      Offset 0B0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0C0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0D0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0E0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 
      Offset 0F0:  00 00 00 00  00 00 00 00  00 00 00 00  00 00 00 00 


--------[ Debug - Video BIOS ]------------------------------------------------------------------------------------------

    C000:0000  U.i.K7400.L.w.VIDEO ......$...IBM VGA Compatible......,.07/21/08
    C000:0040  ..................4.C......o..........."..j......PMIDl.o.......
    C000:0080  .....3b.M...|.......;.......................-.....p...@.@...1...
    C000:00C0  ....Q......`....".......................HWEAASUS EN9800GT BIOS V
    C000:0100  er 62.92.53.00.AS01...DJH.X..................EN9800GT........Ver
    C000:0140  sion 62.92.53.00.00 ...Copyright (C) 1996-2008 NVIDIA Corp......
    C000:0180  ........G92 Board - 03930004...............Chip Rev   ..........
    C000:01C0  ................................................PCIR............
    C000:0200  i.......HYB$..BIT......E2.....B.....C.....D.....A.....I.....L...
    C000:0240  ..M.....N.....P.....S.....T.....U.....V.....c.....x...#.d...&.i.
    C000:0280  &.(...N.6...d............S.b..................\\............@..L
    C000:02C0  .. ..~...6.L.R.j.6.T.L...x............u...e...M.......&...9...BG
    C000:0300  .....P=..W.(6..J.#..#.....n..............S.b.....&.-...07/16/08.
    C000:0340  ........................Q.J.....~.~........... .........Q.J.....
    C000:0380  ~.~.,.......1.x...O.5.x.o.......G.....L.......Q...Q.........w...
    C000:03C0  x.x.s...x.x...a.x.....f.k.k.k.......k.n.....q.k...t.d.-.z.x.J.z.


------------------------------------------------------------------------------------------------------------------------

The names of actual companies and products mentioned herein may be the trademarks of their respective owners.
