info.txt logfile of random's system information tool 1.10 2016-04-18 16:32:56 ======MBR====== 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ninstall list====== 3DMark Demo-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/231350 7-Zip 15.07 beta (x64)-->C:\Program Files\7-Zip\Uninstall.exe Adobe Flash Player 20 NPAPI-->C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_20_0_0_306_Plugin.exe -maintain plugin Age of Empires® III: Complete Collection-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/105450 AIDA64 5.50.3600-->"C:\Program Files (x86)\AIDA64\unins000.exe" Assassins Creed Syndicate-->"D:\Games\Assassins Creed Syndicate\unins000.exe" Banished-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/242920 Battle.net-->"C:\ProgramData\Battle.net\Agent\Blizzard Uninstaller.exe" --lang=enUS --uid=battle.net --displayname="Battle.net" Battlefield 3™-->"C:\Program Files (x86)\Common Files\EAInstaller\Battlefield 3\Cleanup.exe" uninstall_game -autologging Borderlands 2-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/49520 Call of Duty: Black Ops III-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/311210 CAM-->MsiExec.exe /I{6284C491-E97C-4492-B8D5-15A80B744063} CCleaner-->"C:\Program Files\CCleaner\uninst.exe" CEVO CS:GO Client Beta version 2.0-->"D:\Games\CSGO Client Beta\unins000.exe" Cheat Engine 6.4-->"C:\Program Files (x86)\Cheat Engine 6.4\unins000.exe" Corsair Hydro Series 7289 USB Device (Driver Removal)-->C:\Program Files (x86)\Silabs\MCU\USBXpress2\DriverUninstaller.exe "USBXpress\HYDROS7289&1B1C&0C02" Corsair Link 4-->"C:\ProgramData\Package Cache\{17d466ef-c3fb-4bcc-8763-08f07ba700a2}\CLink4Installer.exe" /modify Corsair Link 4-->MsiExec.exe /X{2D0D4D3E-A86C-482F-988C-E421DDD8206E} Corsair Link(TM) USB Dongle (Driver Removal)-->C:\Program Files (x86)\Silabs\MCU\USBXpress\DriverUninstaller.exe "USBXpress\SIUSBXP&1B1C&1C00" Cossacks: European Wars-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/4880 Counter-Strike: Global Offensive-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/730 CrystalDiskInfo 6.7.5-->"C:\Program Files (x86)\CrystalDiskInfo\unins000.exe" Curse-->MsiExec.exe /X{39258ACA-B9D9-418C-ACE2-D874436BD88D} Dead Island Riptide-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/216250 Dead Island-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/91310 Dead Realm-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/352460 Devil May Cry 3: Special Edition-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/6550 Diablo III-->"C:\ProgramData\Battle.net\Agent\Blizzard Uninstaller.exe" --lang=enUS --uid=diablo3_enus --displayname="Diablo III" Dishonored-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/205100 Dungeon Defenders II-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/236110 Dying Light-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/239140 Empire: Total War-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/10500 Far Cry 4-->"D:\Games\Far Cry 4\unins000.exe" foobar2000 v1.3.8-->"C:\Program Files (x86)\foobar2000\uninstall.exe" _?=C:\Program Files (x86)\foobar2000 Futuremark SystemInfo-->MsiExec.exe /X{185D7B00-8600-4716-A619-D8CBE689974B} Google Chrome-->"C:\Program Files (x86)\Google\Chrome\Application\49.0.2623.112\Installer\setup.exe" --uninstall --multi-install --chrome --system-level --verbose-logging Google Update Helper-->MsiExec.exe /I{60EC980A-BDA2-4CB6-A427-B07A5498B4CA} Grand Theft Auto V-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/271590 IIS 10.0 Express-->MsiExec.exe /X{7A28A2B0-458B-4A58-84AC-C90D2D4B79FB} IIS Express Application Compatibility Database for x64-->%windir%\system32\sdbinst.exe -u "C:\WINDOWS\AppPatch\Custom\Custom64\{08274920-8908-45c2-9258-8ad67ff77b09}.sdb" IIS Express Application Compatibility Database for x86-->%windir%\system32\sdbinst.exe -u "C:\WINDOWS\AppPatch\Custom\{ad846bae-d44b-4722-abad-f7420e08bcd9}.sdb" InstallShieldHiRezCurrent-->"C:\Program Files (x86)\InstallShield Installation Information\{9433FC1C-7405-433C-A26D-81076293BBCE}\setup.exe" -runfromtemp -l0x0409 -removeonly Intel(R) Processor Graphics-->"C:\Program Files (x86)\Intel\Intel(R) Processor Graphics\Uninstall\setup.exe" -uninstall Java 8 Update 73-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83218073F0} League of Legends-->msiexec.exe /x {DB179A5E-BDE5-4565-AE14-AA10C64C0572} League of Legends-->MsiExec.exe /X{DB179A5E-BDE5-4565-AE14-AA10C64C0572} Lightshot-5.3.0.0-->"C:\Program Files (x86)\Skillbrains\lightshot\unins000.exe" Malwarebytes Anti-Malware version 2.2.1.1043-->"C:\Program Files (x86)\Malwarebytes Anti-Malware\unins000.exe" Medieval II: Total War-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/4700 Microsoft .NET Framework 4.5.1 Multi-Targeting Pack-->MsiExec.exe /X{6A0C6700-EA93-372C-8871-DCCF13D160A4} Microsoft .NET Framework 4.6.1 Developer Pack-->"C:\ProgramData\Package Cache\{cb2c12b3-4bbd-487c-8a02-2af811a76cba}\NDP461-DevPack-KB3105179-ENU.exe" /uninstall Microsoft .NET Framework 4.6.1 SDK-->MsiExec.exe /X{2F0ECC80-B9E4-4485-8083-CD32F22ABD92} Microsoft .NET Framework 4.6.1 Targeting Pack (ENU)-->MsiExec.exe /X{8EEB28EE-5141-411C-9CF0-9952264FE4AF} Microsoft .NET Framework 4.6.1 Targeting Pack-->MsiExec.exe /X{8BC3EEC9-090F-4C53-A8DA-1BEC913040F9} Microsoft Help Viewer 2.2-->msiexec.exe /X{BFC7ED5C-03D7-366C-A768-CFF97F0A4170} Microsoft Help Viewer 2.2-->MsiExec.exe /X{BFC7ED5C-03D7-366C-A768-CFF97F0A4170} Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} Microsoft SQL Server 2014 Management Objects -->MsiExec.exe /I{2774595F-BC2A-4B12-A25B-0C37A37049B0} Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{710f4c1c-cc18-4c49-8cbf-51240c89a1a2} Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d} Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{837b34e3-7c30-493c-8f6a-2b0f04e2912c} Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17-->MsiExec.exe /X{8220EEFE-38CD-377E-8595-13398D740ACE} Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022-->MsiExec.exe /X{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4} Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17-->MsiExec.exe /X{9A25302D-30C0-39D9-BD6F-21E6EC160475} Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219-->MsiExec.exe /X{1D8E6291-B0D5-35EC-8441-6616F567A0F7} Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219-->MsiExec.exe /X{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5} Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030-->"C:\ProgramData\Package Cache\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}\vcredist_x64.exe" /uninstall Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030-->MsiExec.exe /X{37B8F9C7-03FB-3253-8781-2517C99D7C00} Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030-->MsiExec.exe /X{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97} Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501-->"C:\ProgramData\Package Cache\{050d4fc8-5d48-4b8f-8972-47c82c46020f}\vcredist_x64.exe" /uninstall Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501-->"C:\ProgramData\Package Cache\{f65db027-aff3-4070-886a-0d87064aabb1}\vcredist_x86.exe" /uninstall Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005-->MsiExec.exe /X{929FBD26-9020-399B-9A7A-751D61F0B942} Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005-->MsiExec.exe /X{A749D8E6-B613-3BE3-8F5F-045C84EBA29B} Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005-->MsiExec.exe /X{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185} Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005-->MsiExec.exe /X{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E} Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23026-->"C:\ProgramData\Package Cache\{e46eca4f-393b-40df-9f49-076faf788d83}\VC_redist.x64.exe" /uninstall Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23026-->"C:\ProgramData\Package Cache\{74d0e5db-b326-4dae-a6b2-445b9de1836e}\VC_redist.x86.exe" /uninstall Microsoft Visual C++ 2015 x64 Additional Runtime - 14.0.23026-->MsiExec.exe /X{BC958BD2-5DAC-3862-BB1A-C1BE0790438D} Microsoft Visual C++ 2015 x64 Minimum Runtime - 14.0.23026-->MsiExec.exe /X{0D3E9E15-DE7A-300B-96F1-B4AF12B96488} Microsoft Visual C++ 2015 x86 Additional Runtime - 14.0.23026-->MsiExec.exe /X{BE960C1C-7BAD-3DE6-8B1A-2616FE532845} Microsoft Visual C++ 2015 x86 Minimum Runtime - 14.0.23026-->MsiExec.exe /X{A2563E55-3BEC-3828-8D67-E5E8B9E8B675} Microsoft Visual Studio 2015 Shell (Minimum) Interop Assemblies-->MsiExec.exe /I{08A73E96-1340-3A49-B502-87C42205380F} Microsoft XNA Framework Redistributable 4.0 Refresh-->MsiExec.exe /I{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F} Middle-earth: Shadow of Mordor-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/241930 Minecraft-->MsiExec.exe /X{1C16BCA3-EBC1-49F6-8623-8FBFB9CCC872} Mirror's Edge-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/17410 Mozilla Firefox 42.0 (x86 nl)-->"C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe" Mozilla Maintenance Service-->"C:\Program Files (x86)\Mozilla Maintenance Service\uninstall.exe" MSI Afterburner 4.1.1-->"C:\Program Files (x86)\MSI Afterburner\uninstall.exe" Napoleon: Total War-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/34030 NCSOFT Game Launcher-->C:\Program Files (x86)\NCWest\NCLauncher\Uninstall.exe Need for Speed™ Most Wanted-->"C:\Program Files (x86)\Common Files\EAInstaller\Need for Speed(TM) Most Wanted\Cleanup.exe" uninstall_game -autologging -keepMaintenanceLog Need for Speed™ The Run-->"C:\Program Files (x86)\Common Files\EAInstaller\Need for Speed(TM) The Run\Cleanup.exe" uninstall_game -autologging Need for Speed™-->"C:\Program Files (x86)\Common Files\EAInstaller\Need for Speed\Cleanup.exe" uninstall_game -autologging Notepad++-->C:\Program Files (x86)\Notepad++\uninstall.exe NVIDIA GeForce Experience 2.11.2.55-->"C:\WINDOWS\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\InstallerCore\NVI2.DLL",UninstallPackage Display.GFExperience NVIDIA Graphics Driver 364.72-->"C:\WINDOWS\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\InstallerCore\NVI2.DLL",UninstallPackage Display.Driver NVIDIA HD Audio Driver 1.3.34.4-->"C:\WINDOWS\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\InstallerCore\NVI2.DLL",UninstallPackage HDAudio.Driver NVIDIA PhysX System Software 9.15.0428-->"C:\WINDOWS\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\InstallerCore\NVI2.DLL",UninstallPackage Display.PhysX Origin-->C:\Program Files (x86)\Origin\OriginUninstall.exe Out There Somewhere-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/263980 PAYDAY 2-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/218620 PlaysTV-->"C:\Program Files (x86)\PlaysTV\uninstall.exe" Prerequisites for SSDT -->MsiExec.exe /I{21373064-AD95-48DB-A32E-0D9E08EF7355} Punch Club-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/394310 PunkBuster Services-->D:\Games\Battlefield 3\pbsvc.exe -u qksee-->C:\Program Files (x86)\qksee\uninstall.exe RaidCall-->C:\Program Files (x86)\RaidCall.RU\uninst.exe Razer Surround-->"C:\ProgramData\Razer\Synapse\ProductUpdates\Uninstallers\Razer Surround\Razer Surround_Uninstaller.exe" /S Razer Synapse-->MsiExec.exe /I{0D78BEE2-F8FF-4498-AF1A-3FF81CED8AC6} Realtek High Definition Audio Driver-->C:\Program Files\Realtek\Audio\HDA\RtlUpd64.exe -r -m -nrg2709 Rocket League-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/252950 Rockstar Games Social Club-->C:\Program Files\Rockstar Games\Social Club\uninstallRGSCRedistributable.exe Rome: Total War-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/4760 RuneScape Launcher 1.2.7-->MsiExec.exe /X{FA52A2D0-298E-4D40-8BB7-39928627EA6A} SimCity™-->"C:\Program Files (x86)\Common Files\EAInstaller\SimCity\Cleanup.exe" uninstall_game -autologging Skype™ 7.18-->MsiExec.exe /X{FC965A47-4839-40CA-B618-18F486F042C6} SMITE-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/386360 StarCraft II-->"C:\ProgramData\Battle.net\Agent\Blizzard Uninstaller.exe" --lang=enUS --uid=s2_engb --displayname="StarCraft II" Stardew Valley-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/413150 Steam-->C:\Program Files (x86)\Steam\uninstall.exe System Requirements Lab Detection-->MsiExec.exe /X{477F9862-44AD-4D8F-A469-EB799E5C695A} TeamSpeak 3 Client-->"D:\Teamspeak 3\uninstall.exe" Terraria-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/105600 TI Connect™ CE-->MsiExec.exe /X{E22A8EDD-B273-443C-B2C1-782AEA6D746E} Torchlight II-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/200710 Total War Battles: SHOGUN-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/217060 Total War: ROME II - Emperor Edition-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/214950 Total War: SHOGUN 2-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/34330 Uplay-->C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\Uninstall.exe Viking: Battle for Asgard-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/211160 Virtual Audio Cable 4.10-->C:\Program Files\Virtual Audio Cable\setup64.exe -u VLC media player-->C:\Program Files (x86)\VideoLAN\VLC\uninstall.exe Vulkan Run Time Libraries 1.0.3.0-->C:\Program Files (x86)\VulkanRT\1.0.3.0\UninstallVulkanRT.exe Vulkan Run Time Libraries 1.0.5.1-->C:\Program Files (x86)\VulkanRT\1.0.5.1\UninstallVulkanRT.exe Warframe-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/230410 Watch_Dogs-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/243470 Windows Driver Package - Corsair Components, Inc. (SIUSBXP) USB (10/30/2015 3.6)-->C:\PROGRA~1\DIFX\D29FE547208FE130\dpinst.exe /u C:\WINDOWS\System32\DriverStore\FileRepository\hydros7289.inf_amd64_0bdf95d7c867ab27\hydros7289.inf WinRAR 5.31 (64-bit)-->C:\Program Files\WinRAR\uninstall.exe World of Warcraft-->"C:\ProgramData\Battle.net\Agent\Blizzard Uninstaller.exe" --lang=enUS --uid=wow_enus --displayname="World of Warcraft" ======Hosts File====== 127.0.0.1 down.baidu2016.com 127.0.0.1 123.sogou.com 127.0.0.1 www.czzsyzgm.com 127.0.0.1 www.czzsyzxl.com 127.0.0.1 union.baidu2019.com ======System event log====== Computer Name: GG_Glacier Event Code: 7001 Message: The Computer Browser service depends on the Workstation service which failed to start because of the following error: The service cannot be started, either because it is disabled or because it has no enabled devices associated with it. Record Number: 163 Source Name: Service Control Manager Time Written: 20151206174734.515791-000 Event Type: Error User: Computer Name: GG_Glacier Event Code: 7000 Message: The BstHdDrv service failed to start due to the following error: The system cannot find the file specified. Record Number: 159 Source Name: Service Control Manager Time Written: 20151206174733.563860-000 Event Type: Error User: Computer Name: GG_Glacier Event Code: 7030 Message: The Printer Extensions and Notifications service is marked as an interactive service. However, the system is configured to not allow interactive services. This service may not function properly. Record Number: 93 Source Name: Service Control Manager Time Written: 20151206174634.376867-000 Event Type: Error User: Computer Name: GG_Glacier Event Code: 7023 Message: The Network List Service service terminated with the following error: The device is not ready. Record Number: 90 Source Name: Service Control Manager Time Written: 20151206174606.271330-000 Event Type: Error User: Computer Name: GG_Glacier Event Code: 7023 Message: The iphlpsvc service terminated with the following error: The service cannot be started, either because it is disabled or because it has no enabled devices associated with it. Record Number: 27 Source Name: Service Control Manager Time Written: 20151206174434.115963-000 Event Type: Error User: =====Application event log===== Computer Name: GG_Glacier Event Code: 4104 Message: Failed trying to get the state of the cluster node: .The error code returned: 0x8007085A Record Number: 35 Source Name: Microsoft-Windows-MSDTC Client 2 Time Written: 20151206174741.509918-000 Event Type: Error User: Computer Name: GG_Glacier Event Code: 4104 Message: Failed trying to get the state of the cluster node: .The error code returned: 0x8007085A Record Number: 33 Source Name: Microsoft-Windows-MSDTC 2 Time Written: 20151206174741.469705-000 Event Type: Error User: Computer Name: GG_Glacier Event Code: 4104 Message: Failed trying to get the state of the cluster node: GG_GLACIER.The error code returned: 0x8007085A Record Number: 32 Source Name: Microsoft-Windows-MSDTC Client 2 Time Written: 20151206174741.441544-000 Event Type: Warning User: Computer Name: GG_Glacier Event Code: 4104 Message: Failed trying to get the state of the cluster node: .The error code returned: 0x8007085A Record Number: 31 Source Name: Microsoft-Windows-MSDTC Client 2 Time Written: 20151206174741.433999-000 Event Type: Error User: Computer Name: GG_Glacier Event Code: 1534 Message: Profile notification of event Create for component {D63AA156-D534-4BAC-9BF1-55359CF5EC30} failed, error code is Het systeem kan het opgegeven pad niet vinden. . Record Number: 14 Source Name: Microsoft-Windows-User Profiles Service Time Written: 20151206174535.247287-000 Event Type: Warning User: NT AUTHORITY\SYSTEM =====Security event log===== Computer Name: GG_Glacier Event Code: 4797 Message: An attempt was made to query the existence of a blank password for an account. Subject: Security ID: S-1-5-21-1576354919-2841432403-4279176456-1001 Account Name: Gamegear Account Domain: GG_GLACIER Logon ID: 0x5810152 Additional Information: Caller Workstation: GG_GLACIER Target Account Name: Gast Target Account Domain: GG_Glacier Record Number: 22245 Source Name: Microsoft-Windows-Security-Auditing Time Written: 20160203145459.958853-000 Event Type: Audit Success User: Computer Name: GG_Glacier Event Code: 4797 Message: An attempt was made to query the existence of a blank password for an account. Subject: Security ID: S-1-5-21-1576354919-2841432403-4279176456-1001 Account Name: Gamegear Account Domain: GG_GLACIER Logon ID: 0x5810152 Additional Information: Caller Workstation: GG_GLACIER Target Account Name: DefaultAccount Target Account Domain: GG_Glacier Record Number: 22244 Source Name: Microsoft-Windows-Security-Auditing Time Written: 20160203145459.957623-000 Event Type: Audit Success User: Computer Name: GG_Glacier Event Code: 4797 Message: An attempt was made to query the existence of a blank password for an account. Subject: Security ID: S-1-5-21-1576354919-2841432403-4279176456-1001 Account Name: Gamegear Account Domain: GG_GLACIER Logon ID: 0x5810152 Additional Information: Caller Workstation: GG_GLACIER Target Account Name: Administrator Target Account Domain: GG_Glacier Record Number: 22243 Source Name: Microsoft-Windows-Security-Auditing Time Written: 20160203145459.956997-000 Event Type: Audit Success User: Computer Name: GG_Glacier Event Code: 4798 Message: A user's local group membership was enumerated. Subject: Security ID: S-1-5-21-1576354919-2841432403-4279176456-1001 Account Name: Gamegear Account Domain: GG_GLACIER Logon ID: 0x5810152 User: Security ID: S-1-5-21-1576354919-2841432403-4279176456-1001 Account Name: Gamegear Account Domain: GG_Glacier Process Information: Process ID: 0xdb4 Process Name: C:\Windows\explorer.exe Record Number: 22242 Source Name: Microsoft-Windows-Security-Auditing Time Written: 20160203145442.600289-000 Event Type: Audit Success User: Computer Name: GG_Glacier Event Code: 4797 Message: An attempt was made to query the existence of a blank password for an account. Subject: Security ID: S-1-5-21-1576354919-2841432403-4279176456-1001 Account Name: Gamegear Account Domain: GG_GLACIER Logon ID: 0x5810152 Additional Information: Caller Workstation: GG_GLACIER Target Account Name: Gast Target Account Domain: GG_Glacier Record Number: 22241 Source Name: Microsoft-Windows-Security-Auditing Time Written: 20160203145442.597223-000 Event Type: Audit Success User: ======Environment variables====== "ComSpec"=%SystemRoot%\system32\cmd.exe "OS"=Windows_NT "PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC "PROCESSOR_ARCHITECTURE"=AMD64 "TEMP"=%SystemRoot%\TEMP "TMP"=%SystemRoot%\TEMP "USERNAME"=SYSTEM "windir"=%SystemRoot% "NUMBER_OF_PROCESSORS"=4 "PROCESSOR_LEVEL"=6 "PROCESSOR_IDENTIFIER"=Intel64 Family 6 Model 60 Stepping 3, GenuineIntel "PROCESSOR_REVISION"=3c03 "Path"=C:\ProgramData\Oracle\Java\javapath;C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem;C:\WINDOWS\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\Skype\Phone\;C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem;C:\WINDOWS\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common "PSModulePath"=%SystemRoot%\system32\WindowsPowerShell\v1.0\Modules\ "VS140COMNTOOLS"=D:\x86\Common7\Tools\ -----------------EOF-----------------